Content Modification: Updates for Kev Content published 2024-09-16 (4)

Total New Fixlets: 8
Total Updated Fixlets: 1711
Total Fixlets in Site: 2577
Total CVEs Covered: 743
Release Date: 2024-09-16

Updated Fixlets (most updates are minor data additions done by CISA that are refected here) :

10870    Microsoft Windows Server Message Block (SMBv1) Remote Code Execution Vulnerability - Windows Server 2012 
2680    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows 7 SP1 
19070    Adobe Flash Player Memory Corruption Vulnerability - Any Version of Linux 
10880    Microsoft Windows NTFS Privilege Escalation Vulnerability - Windows Server 2012 
27280    Microsoft Streaming Service Proxy Privilege Escalation Vulnerability - Windows Server 2022 
27290    Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability - Windows Server 2022 
27300    Microsoft Streaming Service Proxy Privilege Escalation Vulnerability - Windows 11 
10920    Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability - Windows Server 2012 
2730    Microsoft Graphics Device Interface (GDI) Privilege Escalation Vulnerability - Windows 7 SP1 
27310    Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability - Windows 11 
10930    Microsoft Windows SMB Remote Code Execution Vulnerability - Windows Server 2012 
2740    Microsoft SMBv1 Remote Code Execution Vulnerability - Windows 7 SP1 
10940    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows Server 2012 
2750    Microsoft Windows Graphics Device Interface (GDI) Remote Code Execution Vulnerability - Windows 7 SP1 
27330    Android OS Privilege Escalation Vulnerability - Any Version of Android 
10950    Microsoft Internet Explorer ASLR Bypass Vulnerability - Windows Server 2012 
2760    Microsoft Internet Explorer Privilege Escalation Vulnerability - Windows 7 SP1 
27340    Adobe Acrobat and Reader Use-After-Free Vulnerability - Any Version of Windows 
19150    IBM InfoSphere BigInsights Invalid Input Vulnerability - Any Version of Linux 
2770    Microsoft Windows SMBv1 Information Disclosure Vulnerability - Windows 7 SP1 
27350    Atlassian Confluence Data Center and Server Broken Access Control Vulnerability - Any Version of Linux 
10970    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows Server 2012 
27360    Adobe Acrobat and Reader Use-After-Free Vulnerability - Any Version of MacOS 
19170    Webmin Command Injection Vulnerability - Any Version of Linux 
27370    Microsoft WordPad Information Disclosure Vulnerability - Windows 10 
10990    Microsoft Windows CLFS Driver Privilege Escalation Vulnerability - Windows Server 2012 
27380    Microsoft WordPad Information Disclosure Vulnerability - Windows Server 2008 SP2 
11000    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2012 
2810    Microsoft Windows Print Spooler Privilege Escalation Vulnerability - Windows 7 SP1 
11010    Microsoft Windows Remote Code Execution Vulnerability - Windows Server 2012 
27400    Microsoft WordPad Information Disclosure Vulnerability - Windows Server 2019 
11020    Microsoft Windows Graphic Component Privilege Escalation Vulnerability - Windows Server 2012 
2830    Microsoft SMBv1 Server Remote Code Execution Vulnerability - Windows 7 SP1 
27410    Microsoft WordPad Information Disclosure Vulnerability - Windows Server 2016 
2840    Microsoft Windows COM+ Event System Service Privilege Escalation Vulnerability - Windows 7 SP1 
27420    Microsoft WordPad Information Disclosure Vulnerability - Windows Server 2012 R2 
27430    Microsoft WordPad Information Disclosure Vulnerability - Windows Server 2012 
19240    Linux Kernel Integer Overflow Vulnerability - Any Version of Linux 
2860    Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability - Windows 7 SP1 
27440    Microsoft WordPad Information Disclosure Vulnerability - Windows Server 2022 
19250    Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability - Any Version of Linux 
11060    Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability - Windows Server 2012 
27450    Microsoft WordPad Information Disclosure Vulnerability - Windows 11 
11070    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2012 
11080    Microsoft XML Core Services Information Disclosure Vulnerability - Windows Server 2012 
2890    Microsoft Windows Spoofing Vulnerability - Windows 7 SP1 
27470    CWP Control Web Panel OS Command Injection Vulnerability - Any Version of CentOS 
2900    Microsoft Windows Remote Code Execution Vulnerability - Windows 7 SP1 
11100    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2012 
11110    Microsoft Windows TS WebProxy Directory Traversal Vulnerability - Windows Server 2012 
19310    Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability - Any Version of Linux 
11120    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2012 
11130    Microsoft Windows Open Type Font Remote Code Execution Vulnerability - Windows Server 2012 
11140    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2012 
27530    Roundcube Webmail Persistent Cross-Site Scripting (XSS) Vulnerability - Any Operating System 
11150    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2012 
27540    Trend Micro Apex Central Arbitrary File Upload Vulnerability - Any Version of Windows 
19350    Adobe Acrobat and Reader Heap-based Buffer Overflow Vulnerability - Any Version of MacOS 
11160    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows Server 2012 
2970    Microsoft ATM Font Driver Privilege Escalation Vulnerability - Windows 7 SP1 
19360    Adobe Reader and Acrobat Memory Corruption Vulnerability - Any Version of MacOS 
11170    Microsoft SMBv1 Remote Code Execution Vulnerability - Windows Server 2012 
19370    Adobe Acrobat and Reader Unspecified Vulnerability - Any Version of MacOS 
11180    Microsoft Windows Win32k Privilege Escalation Vulnerability - Windows Server 2012 
19380    Adobe Acrobat and Reader Use-After-Free Vulnerability - Any Version of MacOS 
11190    Microsoft Windows Print Spooler Privilege Escalation Vulnerability - Windows Server 2012 
11200    Microsoft Active Directory Domain Services Privilege Escalation Vulnerability - Windows Server 2012 
3010    Microsoft Internet Explorer Messaging API Information Disclosure Vulnerability - Windows 7 SP1 
27590    Atlassian Confluence Data Center and Server Improper Authorization Vulnerability - Any Operating System 
11210    Microsoft Windows Universal Plug and Play (UPnP) Service Privilege Escalation Vulnerability - Windows Server 2012 
19410    Adobe Flash Player Arbitrary Code Execution Vulnerability - Any Version of MacOS 
11220    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Server 2012 
19420    Adobe Flash Player Use-After-Free Vulnerability - Any Version of MacOS 
11230    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2012 
3040    Microsoft IME Japanese Privilege Escalation Vulnerability - Windows 7 SP1 
19430    Microsoft Silverlight Runtime Remote Code Execution Vulnerability - Any Version of MacOS 
11240    Microsoft Windows User Profile Service Privilege Escalation Vulnerability - Windows Server 2012 
3050    Microsoft Windows MSHTML Platform Remote Code Execution Vulnerability - Windows 7 SP1 
27630    PHP FastCGI Process Manager (FPM) Buffer Overflow Vulnerability - Any Version of Windows 
11250    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Server 2012 
3060    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows 7 SP1 
27640    PHP FastCGI Process Manager (FPM) Buffer Overflow Vulnerability - Any Version of Linux 
19450    Mozilla Firefox Use-After-Free Vulnerability - Any Version of MacOS 
3070    Microsoft Internet Explorer Information Disclosure Vulnerability - Windows 7 SP1 
27650    PHP FastCGI Process Manager (FPM) Buffer Overflow Vulnerability - Any Version of MacOS 
3080    Microsoft Windows Background Intelligent Transfer Service (BITS) Improper Privilege Management Vulnerability - Windows 7 SP1 
27660    Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability - Windows 10 
19470    Adobe Flash Player Use-After-Free Vulnerability - Any Version of MacOS 
11280    Microsoft Internet Explorer Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3090    Microsoft Windows Privilege Escalation Vulnerability - Windows 7 SP1 
27670    Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability - Windows 10 
11290    Microsoft Windows Print Spooler Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3100    Microsoft Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
27680    Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability - Windows 10 
11300    Microsoft Windows Object Linking & Embedding (OLE) Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3110    Microsoft Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
27690    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows 10 
19500    Adobe Flash Player and AIR Use-After-Free Vulnerability - Any Version of MacOS 
3120    Microsoft Windows Print Spooler Privilege Escalation Vulnerability - Windows 7 SP1 
19510    Adobe Flash Player Remote Code Execution Vulnerability - Any Version of MacOS 
3130    Microsoft Windows Installer Privilege Escalation Vulnerability - Windows 7 SP1 
3140    Microsoft Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
11340    Microsoft Internet Explorer Type Confusion Vulnerability - Windows Server 2008 R2 SP1 
3150    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows 7 SP1 
27730    Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability - Windows Server 2016 
11350    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3160    Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability - Windows 7 SP1 
27740    Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability - Windows Server 2016 
19550    Adobe Reader and Acrobat Memory Corruption Vulnerability - Any Version of MacOS 
11360    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
3170    Microsoft Windows User Profile Service Privilege Escalation Vulnerability - Windows 7 SP1 
27750    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2016 
19560    Apache CouchDB Insecure Default Initialization of Resource Vulnerability - Any Version of MacOS 
11370    Microsoft Windows Code Injection Vulnerability - Windows Server 2008 R2 SP1 
3180    Microsoft Windows Server Message Block (SMBv1) Remote Code Execution Vulnerability - Windows 7 SP1 
27760    Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability - Windows Server 2019 
11380    Microsoft Internet Explorer Information Disclosure Vulnerability - Windows Server 2008 R2 SP1 
3190    Microsoft Windows NTFS Privilege Escalation Vulnerability - Windows 7 SP1 
27770    Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability - Windows Server 2019 
19580    Oracle JRE Sandbox Bypass Vulnerability - Any Version of MacOS 
11390    Microsoft Internet Explorer and Edge Information Disclosure Vulnerability - Windows Server 2008 R2 SP1 
27780    Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability - Windows Server 2019 
11400    Microsoft Internet Explorer Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
27790    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2019 
3220    Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability - Windows 7 SP1 
27800    Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability - Windows Server 2008 SP2 
3230    Microsoft Windows SMB Remote Code Execution Vulnerability - Windows 7 SP1 
19620    Veeam Backup & Replication Remote Code Execution Vulnerability - Any Version of MacOS 
11430    Microsoft Windows Local Security Authority (LSA) Spoofing Vulnerability - Windows Server 2008 R2 SP1 
3240    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows 7 SP1 
27820    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2008 SP2 
11440    Microsoft Remote Desktop Services Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3250    Microsoft Internet Explorer ASLR Bypass Vulnerability - Windows 7 SP1 
19640    Adobe Flash Player Unspecified Vulnerability - Any Version of MacOS 
11450    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Server 2008 R2 SP1 
11460    Microsoft Internet Explorer Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3270    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows 7 SP1 
19660    Mozilla Firefox Security Feature Bypass Vulnerability - Any Version of MacOS 
11470    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
11480    Microsoft Windows Graphics Device Interface (GDI) Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3290    Microsoft Windows CLFS Driver Privilege Escalation Vulnerability - Windows 7 SP1 
3300    Microsoft Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
19690    TIBCO JasperReports Server Information Disclosure Vulnerability - Any Version of MacOS 
11500    Microsoft Kerberos Key Distribution Center (KDC) Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3310    Microsoft Windows Remote Code Execution Vulnerability - Windows 7 SP1 
27890    Microsoft Word Malformed Object Pointer Vulnerability - Word 
11510    Microsoft MSHTML Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
19710    Adobe Acrobat and Reader Double Free Vulnerability - Any Version of MacOS 
11520    Microsoft Windows Scripting Engine Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
3330    Microsoft Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
27910    Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability - Windows Server 2022 
11530    Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
27920    Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability - Windows Server 2022 
19730    Mozilla Firefox and Thunderbird Denial-of-Service Vulnerability - Any Version of MacOS 
27930    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2022 
19740    Adobe Acrobat and Reader Universal 3D Memory Corruption Vulnerability - Any Version of MacOS 
11550    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
3360    Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability - Windows 7 SP1 
27940    Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability - Windows Server 2022 
11560    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
3370    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows 7 SP1 
27950    Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability - Windows 11 
3380    Microsoft XML Core Services Information Disclosure Vulnerability - Windows 7 SP1 
27960    Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability - Windows 11 
11580    Microsoft Internet Explorer Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3390    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows 7 SP1 
27970    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows 11 
19780    Mozilla Firefox Information Disclosure Vulnerability - Any Version of MacOS 
11590    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows Server 2008 R2 SP1

This topic was automatically closed after 30 days. New replies are no longer allowed.