search3
    Microsoft Latest Updates To Manage Patches
    Latest Tech news Right in

    YOUR INBOX!

    Receive News Alerts, Special Info and other offers!
    We Respect your Privacy. Your Information will not be shared.

    Microsoft Latest Updates To Manage Patches

    344
    Shubham Mehta | Apr 21, 2020 | 552 Views | 0 Comments
    Microsoft Latest Updates To Manage Patches

    In today’s time while we are up against a global crisis and most professionals are working remotely from home. That is where patch management will not go as smoothly & easily as it may seem. Considering this Microsoft released its latest batch of software security updates for all supported versions of its Windows. This update supports all operating systems and other products that patch 113 new security vulnerabilities, 96 of which are important in severity and 17 of them are critical.


    Patch Exploitation With Zero Days


    Now the interesting fact is that there have been 4 security flaws in this recent update that Microsoft has just released. These include:-


    • Resides in the Adobe Font Library used by Windows. This is something Microsoft itself shred across the globe last month as early security warning for millions of users. This was tracked as a remote code (CVE-2020-1020) that looks for the existing vulnerabilities in Microsoft Windows that may occur when Windows Adobe Type Manager Library deals with specially-crafted in an inappropriate manner.
    • Another remote code was executed i.e. (CVE-2020-0938) which was also in Adobe Type Manager Library. This tends to get triggered when parsing a malicious Open Type Font.
    • Is the elevation of privilege vulnerability (CVE-2020-1027) in Windows kernel.
    • This impacts the scripting engine on the Internet Explorer version 11 & 9 where the cyber attacker has planted a memory corruption bug (CVE-2020-0968) that allows these attackers to remotely take charge of the targetted computer where they just open a specially crafted website using a vulnerable web browser.

    Some bugs patched this month


    There have been some more bugs with Microsoft that were discovered this month. It has been seen that there is an important elevation of privilege vulnerability (CVE-2020-0935) which is found in OneDrive of Windows desktop.


    There is another flaw that s being caused by CVE-2020-0910 and is now taken up as a critical and affects Windows Hyper-V. This allows a guest virtual machine that has the ability to compromise hypervisor escaping from a guest virtual machine (VM)to the host or may escape from one guest VM to another guest VM.


    Apart from the critical flaws Microsoft patched this month affect Chakra scripting engine, Microsoft Dynamics 365 Business, graphic components, codecs library media foundation and VBScript where all these are led to a remote code executed attack.



    This content is brought to you by Mercury Solutions Limited, one of the best IT Training Company in India. Mehar Ahluwalia, the founder, with a vision of making the professionals’ career more fulfilling, is dedicated to delivering world-class IT Training programs and Certifications to the global participants.
    Tags : microsoft latest updates

    Recommended Posts

     

    Mercury Solutions Ltd. https://bit.ly/2H3ANjF is rated 4.6 stars by www.facebook.com/mercurysol based on 18 reviews.