Content Modification: Updates for Kev Content published 2024-09-16 (5)

Total New Fixlets: 8
Total Updated Fixlets: 1711
Total Fixlets in Site: 2577
Total CVEs Covered: 743
Release Date: 2024-09-16

Updated Fixlets (most updates are minor data additions done by CISA that are refected here) :

3400    Microsoft Windows TS WebProxy Directory Traversal Vulnerability - Windows 7 SP1 
27980    Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability - Windows 11 
19790    Adobe Acrobat and Reader Stack-Based Buffer Overflow Vulnerability - Any Version of MacOS 
3410    Microsoft Windows Open Type Font Remote Code Execution Vulnerability - Windows 7 SP1 
3420    Microsoft Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
28000    ownCloud graphapi Information Disclosure Vulnerability - Any Version of Linux 
3430    Microsoft Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
11630    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
3440    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows 7 SP1 
3450    Microsoft SMBv1 Remote Code Execution Vulnerability - Windows 7 SP1 
3460    Microsoft Windows Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
3470    Microsoft Windows Print Spooler Privilege Escalation Vulnerability - Windows 7 SP1 
3480    Microsoft Windows Universal Plug and Play (UPnP) Service Privilege Escalation Vulnerability - Windows 7 SP1 
3490    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows 7 SP1 
11690    Microsoft Graphics Device Interface (GDI) Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3500    Microsoft Windows Media Center Remote Code Execution Vulnerability - Windows 7 SP1 
19890    Adobe Reader and Acrobat Input Validation Vulnerability - Any Version of MacOS 
11700    Microsoft SMBv1 Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3510    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows 7 SP1 
11710    Microsoft Windows Graphics Device Interface (GDI) Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3520    Microsoft Win32k Privilege Escalation Vulnerability - Windows 7 SP1 
11720    Microsoft Internet Explorer Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3530    Microsoft Windows User Profile Service Privilege Escalation Vulnerability - Windows 7 SP1 
28110    Apache Superset Insecure Default Initialization of Resource Vulnerability - Any Operating System 
11730    Microsoft Active Directory Domain Services Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3540    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows 7 SP1 
19930    Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability - Any Version of MacOS 
11740    Microsoft Windows SMBv1 Information Disclosure Vulnerability - Windows Server 2008 R2 SP1 
19950    Adobe Reader and Acrobat Arbitrary Code Execution Vulnerability - Any Version of MacOS 
19960    Adobe Acrobat and Reader Universal 3D Remote Code Execution Vulnerability - Any Version of MacOS 
3580    Microsoft Windows Transaction Manager Privilege Escalation Vulnerability - Windows Vista SP2 
3590    Microsoft Internet Explorer Privilege Escalation Vulnerability - Windows Vista SP2 
19980    Oracle JRE Unspecified Vulnerability - Any Version of MacOS 
11800    Microsoft SMBv1 Server Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
20000    Oracle Java SE Unspecified Vulnerability - Any Version of MacOS 
20010    Grafana Authentication Bypass Vulnerability - Any Version of MacOS 
3630    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Vista SP2 
3640    Microsoft Windows Object Linking & Embedding (OLE) Remote Code Execution Vulnerability - Windows Vista SP2 
11840    Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3650    Microsoft ATM Font Driver Privilege Escalation Vulnerability - Windows Vista SP2 
28230    Laravel Deserialization of Untrusted Data Vulnerability - Any Operating System 
20040    PHP-CGI Query String Parameter Vulnerability - Any Version of MacOS 
3670    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Vista SP2 
11870    Microsoft Windows Spoofing Vulnerability - Windows Server 2008 R2 SP1 
20070    Adobe Flash Player Arbitrary Code Execution Vulnerability - Any Version of MacOS 
3690    Microsoft Internet Explorer Remote Code Execution Vulnerability - Windows Vista SP2 
20080    Adobe Reader Buffer Overflow Vulnerability - Any Version of MacOS 
11890    Microsoft Windows Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3700    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Vista SP2 
3710    Microsoft Internet Explorer Messaging API Information Disclosure Vulnerability - Windows Vista SP2 
3720    Microsoft Graphics Component Memory Corruption Vulnerability - Windows Vista SP2 
20110    Adobe Acrobat and Reader Use-After-Free Vulnerability - Any Version of MacOS 
3730    Microsoft IME Japanese Privilege Escalation Vulnerability - Windows Vista SP2 
3740    Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability - Windows Vista SP2 
20130    Adobe Flash Player Use-After-Free Vulnerability - Any Version of MacOS 
3750    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Vista SP2 
3760    Microsoft XML Core Services Information Disclosure Vulnerability - Windows Vista SP2 
11960    Microsoft ATM Font Driver Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3770    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Vista SP2 
20160    Adobe Acrobat and Reader, Flash Player Unspecified Vulnerability - Any Version of MacOS 
3780    Microsoft Win32k Privilege Escalation Vulnerability - Windows Vista SP2 
20170    Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability - Any Version of MacOS 
3790    Microsoft Internet Explorer Information Disclosure Vulnerability - Windows Vista SP2 
3800    Microsoft Windows TS WebProxy Directory Traversal Vulnerability - Windows Vista SP2 
12000    Microsoft Internet Explorer Messaging API Information Disclosure Vulnerability - Windows Server 2008 R2 SP1 
3810    Microsoft Graphics Device Interface (GDI) Privilege Escalation Vulnerability - Windows Vista SP2 
3820    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Vista SP2 
20210    Adobe Flash Player Remote Code Execution Vulnerability - Any Version of MacOS 
3830    Microsoft SMBv1 Remote Code Execution Vulnerability - Windows Vista SP2 
20220    Adobe Flash Player Use-After-Free Vulnerability - Any Version of MacOS 
12030    Microsoft IME Japanese Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3840    Microsoft Win32k Privilege Escalation Vulnerability - Windows Vista SP2 
20230    Adobe Acrobat and Reader Buffer Overflow Vulnerability - Any Version of MacOS 
12040    Microsoft Windows MSHTML Platform Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
3850    Microsoft Internet Explorer Information Disclosure Vulnerability - Windows Vista SP2 
12050    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
3860    Microsoft Internet Explorer and Edge Information Disclosure Vulnerability - Windows Vista SP2 
12060    Microsoft Internet Explorer Information Disclosure Vulnerability - Windows Server 2008 R2 SP1 
3870    Microsoft Windows Code Injection Vulnerability - Windows Vista SP2 
12070    Microsoft Windows Background Intelligent Transfer Service (BITS) Improper Privilege Management Vulnerability - Windows Server 2008 R2 SP1 
3880    Microsoft Windows Graphics Device Interface (GDI) Remote Code Execution Vulnerability - Windows Vista SP2 
12080    Microsoft Windows Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3890    Microsoft Internet Explorer Privilege Escalation Vulnerability - Windows Vista SP2 
28470    Spreadsheet::ParseExcel Remote Code Execution Vulnerability - Any Version of Windows 
12090    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3900    Microsoft Windows Open Type Font Remote Code Execution Vulnerability - Windows Vista SP2 
28480    Spreadsheet::ParseExcel Remote Code Execution Vulnerability - Any Version of Linux 
12100    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3910    Microsoft Win32k Privilege Escalation Vulnerability - Windows Vista SP2 
28490    Atlassian Confluence Data Center and Server Template Injection Vulnerability - Any Operating System 
20300    Adobe Flash Player Integer Overflow Vulnerability - Any Version of MacOS 
3920    Microsoft Windows SMBv1 Information Disclosure Vulnerability - Windows Vista SP2 
20310    Artifex Ghostscript Type Confusion Vulnerability - Any Version of MacOS 
12120    Microsoft Windows Installer Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3930    Microsoft Win32k Privilege Escalation Vulnerability - Windows Vista SP2 
12130    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3940    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Vista SP2 
20330    TIBCO JasperReports Library Directory Traversal Vulnerability - Any Version of MacOS 
12140    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
20340    Oracle JRE Unspecified Vulnerability - Any Version of MacOS 
3960    Microsoft SMBv1 Remote Code Execution Vulnerability - Windows Vista SP2 
12160    Microsoft Windows User Profile Service Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3970    Microsoft Windows Server Message Block (SMBv1) Remote Code Execution Vulnerability - Windows Vista SP2 
12170    Microsoft Windows Server Message Block (SMBv1) Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
20370    Oracle JRE Remote Code Execution Vulnerability - Any Version of MacOS 
12180    Microsoft Windows NTFS Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
3990    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Vista SP2 
4010    Microsoft SMBv1 Server Remote Code Execution Vulnerability - Windows Vista SP2 
12210    Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
20410    Adobe Reader and Acrobat Use-After-Free Vulnerability - Any Version of MacOS 
12220    Microsoft Windows SMB Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
4030    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Vista SP2 
28610    Linux Kernel Race Condition Vulnerability - Ubuntu 
12230    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
4040    Microsoft Windows SMB Remote Code Execution Vulnerability - Windows Vista SP2 
28620    Linux Kernel Privilege Escalation Vulnerability - Ubuntu 
20430    Oracle Java SE Sandbox Bypass Vulnerability - Any Version of MacOS 
12240    Microsoft Internet Explorer ASLR Bypass Vulnerability - Windows Server 2008 R2 SP1 
4050    Microsoft Windows Media Center Remote Code Execution Vulnerability - Windows Vista SP2 
28630    Red Hat Polkit Out-of-Bounds Read and Write Vulnerability - Ubuntu 
4060    Microsoft Internet Explorer ASLR Bypass Vulnerability - Windows Vista SP2 
28640    Sudo Heap-Based Buffer Overflow Vulnerability - Ubuntu 
12260    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows Server 2008 R2 SP1 
4070    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Vista SP2 
28660    Linux Kernel Use-After-Free Vulnerability - Ubuntu 
20470    Oracle Java SE and Java SE Embedded Remote Code Execution Vulnerability - Any Version of MacOS 
4090    Microsoft Win32k Privilege Escalation Vulnerability - Windows Vista SP2 
28670    Linux Kernel Privilege Escalation Vulnerability - Ubuntu 
12290    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
4100    Microsoft Windows Remote Code Execution Vulnerability - Windows Vista SP2 
12300    Microsoft Windows Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
4110    Microsoft Windows Graphics Device Interface (GDI) Privilege Escalation Vulnerability - Windows Vista SP2 
28690    Linux Kernel Race Condition Vulnerability - Ubuntu 
4120    Microsoft Kerberos Key Distribution Center (KDC) Privilege Escalation Vulnerability - Windows Vista SP2 
28700    Linux Kernel Privilege Escalation Vulnerability - Ubuntu 
12320    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
4130    Microsoft Windows Remote Code Execution Vulnerability - Windows Vista SP2 
4140    Microsoft Windows Authenticode Signature Verification Remote Code Execution Vulnerability - Windows Vista SP2 
4150    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Vista SP2 
28730    Linux Kernel Privilege Escalation Vulnerability - Debian 
4160    Microsoft Windows Transaction Manager Privilege Escalation Vulnerability - Windows Server 2008 SP2 
28740    Red Hat Polkit Out-of-Bounds Read and Write Vulnerability - Debian 
20550    Oracle Java SE Integrity Check Vulnerability - Any Version of MacOS 
12360    Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
4170    Microsoft Internet Explorer Privilege Escalation Vulnerability - Windows Server 2008 SP2 
12370    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
4180    Microsoft Windows Print Spooler Remote Code Execution Vulnerability - Windows Server 2008 SP2 
12380    Microsoft XML Core Services Information Disclosure Vulnerability - Windows Server 2008 R2 SP1 
4190    Microsoft Windows Object Linking & Embedding (OLE) Remote Code Execution Vulnerability - Windows Server 2008 SP2 
28770    Linux Kernel Use-After-Free Vulnerability - Debian 
28780    Linux Kernel Privilege Escalation Vulnerability - Debian 
20590    Microsoft Office Outlook Security Feature Bypass Vulnerability - Any Version of MacOS 
12400    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
28790    Linux Kernel Race Condition Vulnerability - Debian 
20600    Adobe Flash Player Arbitrary Code Execution Vulnerability - Any Version of MacOS 
12410    Microsoft Windows TS WebProxy Directory Traversal Vulnerability - Windows Server 2008 R2 SP1 
4220    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 SP2 
12420    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
4230    Microsoft Internet Explorer Memory Corruption Vulnerability - Windows Server 2008 SP2 
28810    Roundcube Webmail Persistent Cross-Site Scripting (XSS) Vulnerability - Any Operating System 
12430    Microsoft Windows Open Type Font Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
4240    Microsoft Windows Code Injection Vulnerability - Windows Server 2008 SP2 
28820    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2016 
20630    Adobe Flash Player Memory Corruption Vulnerability - Any Version of MacOS 
12440    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
4250    Microsoft Internet Explorer Information Disclosure Vulnerability - Windows Server 2008 SP2 
28830    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2019 
12450    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2008 R2 SP1 
4260    Microsoft Internet Explorer and Edge Information Disclosure Vulnerability - Windows Server 2008 SP2 
28840    Microsoft Windows Internet Shortcut Files Security Feature Bypass Vulnerability - Windows Server 2019 
20650    Mozilla Firefox Use-After-Free Vulnerability - Any Version of MacOS

This topic was automatically closed after 30 days. New replies are no longer allowed.