Content Modification: Updates for Kev Content published 2024-09-16 (9)

Total New Fixlets: 8
Total Updated Fixlets: 1711
Total Fixlets in Site: 2577
Total CVEs Covered: 743
Release Date: 2024-09-16

Updated Fixlets (most updates are minor data additions done by CISA that are refected here) :

22800    MinIO Information Disclosure Vulnerability - Any Version of Linux 
6420    Microsoft Win32k Privilege Escalation Vulnerability - Windows 10 
31000    Microsoft XML Core Services Memory Corruption Vulnerability - XML Core Services 5.0 
22810    Jenkins Script Security Plugin Sandbox Bypass Vulnerability - Any Version of Linux 
6430    Microsoft Windows Privilege Escalation Vulnerability - Windows 10 
31010    Microsoft PowerPoint Buffer Overflow Vulnerability - PowerPoint Viewer 
6440    Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability - Windows 10 
31020    Microsoft Windows Remote Code Execution Vulnerability - Windows Server 2008 Gold 
6450    Microsoft Windows Update Medic Service Privilege Escalation Vulnerability - Windows 10 
31030    Microsoft Windows Kernel Exception Handler Vulnerability - Windows Server 2008 Gold 
6460    Microsoft Windows Graphic Component Privilege Escalation Vulnerability - Windows 10 
31040    Microsoft Windows Kernel Exception Handler Vulnerability - Windows Vista Gold 
22850    Microsoft Excel Featheader Record Memory Corruption Vulnerability - Any Version of MacOS 
14660    Ruby on Rails Directory Traversal Vulnerability - Any Operating System 
6470    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows 10 
31050    Microsoft Windows Improper Input Validation Vulnerability - Windows Vista Gold 
22860    Microsoft Office Buffer Overflow Vulnerability - Any Version of MacOS 
14670    Ruby on Rails Directory Traversal Vulnerability - Any Operating System 
6480    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows 10 
31060    Microsoft Office Outlook Privilege Escalation Vulnerability - Outlook 
31070    Microsoft Windows Remote Code Execution Vulnerability - Windows Vista SP 
6500    Microsoft Windows Advanced Local Procedure Call (ALPC) Privilege Escalation Vulnerability - Windows 10 
22890    Microsoft Silverlight Information Disclosure Vulnerability - Any Version of MacOS 
6510    Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability - Windows 10 
31090    Microsoft Windows MSHTML Platform Spoofing Vulnerability - Windows Server 2012 R2 
22900    MinIO Information Disclosure Vulnerability - Any Version of MacOS 
6520    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows 10 
31100    Microsoft Windows MSHTML Platform Spoofing Vulnerability - Windows Server 2016 
6530    Microsoft XML Core Services Information Disclosure Vulnerability - Windows 10 
31110    Microsoft Windows MSHTML Platform Spoofing Vulnerability - Windows Server 2019 
22920    Microsoft Office Memory Corruption Vulnerability - Any Version of MacOS 
6540    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows 10 
31120    Microsoft Windows MSHTML Platform Spoofing Vulnerability - Windows 10 
22930    Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution Vulnerability - Windows 10 
6550    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows 10 
31130    Microsoft Windows MSHTML Platform Spoofing Vulnerability - Windows Server 2008 SP2 
22940    Microsoft Edge Memory Corruption Vulnerability - Windows 10 
6560    Microsoft Windows Open Type Font Remote Code Execution Vulnerability - Windows 10 
31140    Microsoft Windows Hyper-V Privilege Escalation Vulnerability - Windows Server 2022 
22950    Microsoft Edge Memory Corruption Vulnerability - Windows 10 
6570    Microsoft Win32k Privilege Escalation Vulnerability - Windows 10 
31150    Microsoft Windows MSHTML Platform Spoofing Vulnerability - Windows Server 2022 
6580    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows 10 
22970    Microsoft Office and WordPad Remote Code Execution Vulnerability - Windows Server 2008 SP2 
14780    GIGABYTE Multiple Products Code Execution Vulnerability - Any Version of Windows 
6590    Microsoft Win32k Privilege Escalation Vulnerability - Windows 10 
31170    Microsoft Windows Hyper-V Privilege Escalation Vulnerability - Windows 11 
6600    Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability - Windows 10 
31180    Microsoft Windows MSHTML Platform Spoofing Vulnerability - Windows 11 
22990    Microsoft Office and WordPad Remote Code Execution Vulnerability - Windows Server 2008 R2 SP1 
6610    Microsoft SMBv1 Remote Code Execution Vulnerability - Windows 10 
31190    OSGeo GeoServer GeoTools Eval Injection Vulnerability - Any Version of Windows 
14810    GIGABYTE Multiple Products Privilege Escalation Vulnerability - Any Version of Windows 
6620    Microsoft Windows Win32k Privilege Escalation Vulnerability - Windows 10 
31200    Adobe Commerce and Magento Open Source Improper Restriction of XML External Entity Reference (XXE) Vulnerability - Any Operating System 
14820    GIGABYTE Multiple Products Privilege Escalation Vulnerability - Any Version of Windows 
6630    Microsoft Windows Print Spooler Privilege Escalation Vulnerability - Windows 10 
14830    GIGABYTE Multiple Products Unspecified Vulnerability - Any Version of Windows 
6640    Microsoft Windows SAM Local Privilege Escalation Vulnerability - Windows 10 
23030    Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution Vulnerability - Windows Server 2016 
6650    Microsoft Windows Universal Plug and Play (UPnP) Service Privilege Escalation Vulnerability - Windows 10 
23040    Microsoft Edge Memory Corruption Vulnerability - Windows Server 2016 
6660    Microsoft Win32k Privilege Escalation Vulnerability - Windows 10 
31240    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Server 2008 SP2 
23050    Microsoft Edge Memory Corruption Vulnerability - Windows Server 2016 
6670    Microsoft Windows User Profile Service Privilege Escalation Vulnerability - Windows 10 
14870    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows 10 
6680    Microsoft GDI Remote Code Execution Vulnerability - Windows 10 
31260    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Vista SP2 
14880    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2019 
6690    Microsoft Internet Explorer Remote Code Execution Vulnerability - Windows 10 
31270    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows 7 
23080    Microsoft Office and WordPad Remote Code Execution Vulnerability - Windows Vista SP2 
14890    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2016 
6700    Microsoft Win32k Privilege Escalation Vulnerability - Windows 10 
31280    Microsoft Internet Explorer Use-After-Free Vulnerability - Windows Server 2008 R2 
23090    Microsoft Exchange Server Remote Code Execution Vulnerability - Exchange Server 2010 
6710    Microsoft Defender SmartScreen Security Feature Bypass Vulnerability - Windows Server 2019 
23100    Microsoft Exchange Server Remote Code Execution Vulnerability - Exchange Server 2016 
6720    Microsoft Windows AppX Deployment Server Privilege Escalation Vulnerability - Windows Server 2019 
31300    Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability - Windows Server 2012 R2 
23110    Microsoft Exchange Server Information Disclosure - Exchange Server 2016 
6730    Microsoft Windows Print Spooler Remote Code Execution Vulnerability - Windows Server 2019 
31310    Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability - Windows Server 2012 
23120    Microsoft Exchange Server Remote Code Execution Vulnerability - Exchange Server 2019 
6740    Microsoft Windows Kernel Information Disclosure Vulnerability - Windows Server 2019 
31320    Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability - Windows Server 2016 
23130    Microsoft Exchange Server Information Disclosure - Exchange Server 2019 
6750    Microsoft Internet Explorer Information Disclosure Vulnerability - Windows Server 2019 
31330    Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability - Windows 10 
23140    Microsoft Exchange Server Remote Code Execution Vulnerability - Exchange Server 2013 
14950    Microsoft Word Memory Corruption Vulnerability - Any Version of MacOS 
6760    Microsoft Internet Explorer Type Confusion Vulnerability - Windows Server 2019 
31340    Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability - Windows Server 2008 SP2 
23150    Microsoft Exchange Server Information Disclosure - Exchange Server 2013 
14960    Microsoft Office Memory Corruption Vulnerability - Any Version of MacOS 
6770    Microsoft Windows CryptoAPI Spoofing Vulnerability - Windows Server 2019 
31350    Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability - Windows Server 2008 R2 SP1 
14970    Microsoft Office Use-After-Free Vulnerability - Any Version of MacOS 
6780    Microsoft Windows Runtime Remote Code Execution Vulnerability - Windows Server 2019 
31360    Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability - Windows 7 SP1 
14980    Microsoft PowerPoint Memory Corruption Vulnerability - Any Version of MacOS 
6790    Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability - Windows Server 2019 
31370    Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability - Windows 8.1 
6800    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2019 
31380    Microsoft Windows Scripting Engine Memory Corruption Vulnerability - Windows Server 2012 R2 
15000    Microsoft Office Security Feature Bypass Vulnerability - Any Version of MacOS 
6810    Microsoft Windows Scripting Languages Remote Code Execution Vulnerability - Windows Server 2019 
6820    Microsoft Windows Local Security Authority (LSA) Spoofing Vulnerability - Windows Server 2019 
31400    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2016 
15020    Microsoft Office and WordPad Remote Code Execution Vulnerability - Any Version of MacOS 
6830    Microsoft Windows AppX Deployment Extensions Privilege Escalation Vulnerability - Windows Server 2019 
6840    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2019 
31420    Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability - Windows Server 2016 
6850    Microsoft Windows Installer Privilege Escalation Vulnerability - Windows Server 2019 
31430    Microsoft Windows Scripting Engine Memory Corruption Vulnerability - Windows Server 2016 
15050    Microsoft Office Buffer Overflow Vulnerability - Any Version of MacOS 
6860    Microsoft MSHTML Remote Code Execution Vulnerability - Windows Server 2019 
31440    Microsoft Windows Power Dependency Coordinator Privilege Escalation Vulnerability - Windows Server 2019 
6870    Microsoft Windows AppX Deployment Service Privilege Escalation Vulnerability - Windows Server 2019 
31450    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2019 
15070    Microsoft Excel Security Feature Bypass - Any Version of MacOS 
6880    Microsoft Windows Scripting Engine Memory Corruption Vulnerability - Windows Server 2019 
31460    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows Server 2019 
15080    Microsoft Office Stack-based Buffer Overflow Vulnerability - Any Version of MacOS 
6890    Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability - Windows Server 2019 
31470    Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability - Windows Server 2019 
6900    Microsoft Windows Client Server Runtime Subsystem (CSRSS) Privilege Escalation Vulnerability - Windows Server 2019 
31480    Microsoft Windows Scripting Engine Memory Corruption Vulnerability - Windows Server 2019 
15100    Microsoft Office Memory Corruption Vulnerability - Any Version of MacOS 
6910    Microsoft Windows User Profile Service Privilege Escalation Vulnerability - Windows Server 2019 
6920    Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability - Windows Server 2019 
31500    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows 10 
15120    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2022 
6930    Microsoft Windows LSA Spoofing Vulnerability - Windows Server 2019 
6940    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2019 
31520    Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability - Windows 10 
15140    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows 11 
6950    Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability - Windows Server 2019 
31530    Microsoft Windows Scripting Engine Memory Corruption Vulnerability - Windows 10 
15150    Microsoft Office Object Record Corruption Vulnerability - Any Version of MacOS 
6960    Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability - Windows Server 2019 
31540    Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability - Windows Server 2008 SP2 
15160    Drupal Core Remote Code Execution Vulnerability - Any Operating System 
6970    Microsoft Windows Print Spooler Remote Code Execution Vulnerability - Windows Server 2019 
15170    Adobe BlazeDS Information Disclosure Vulnerability - Any Operating System 
6980    Microsoft Windows Error Reporting (WER) Privilege Escalation Vulnerability - Windows Server 2019 
15180    WordPress Social Warfare Plugin Cross-Site Scripting (XSS) Vulnerability - Any Operating System 
6990    Microsoft Windows DNS Server Remote Code Execution Vulnerability - Windows Server 2019 
31570    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows Server 2022 
7000    Microsoft Active Directory Domain Services Privilege Escalation Vulnerability - Windows Server 2019 
7010    Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability - Windows Server 2019 
31590    Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability - Windows Server 2022 
7020    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2019 
31600    Microsoft Windows Scripting Engine Memory Corruption Vulnerability - Windows Server 2022 
15220    PEAR Archive_Tar Improper Link Resolution Vulnerability - Any Operating System 
7030    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2019 
31610    Microsoft Windows Power Dependency Coordinator Privilege Escalation Vulnerability - Windows 11 
7040    Microsoft Windows Print Spooler Privilege Escalation Vulnerability - Windows Server 2019 
31620    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability - Windows 11 
15240    WSO2 Multiple Products Unrestrictive Upload of File Vulnerability - Any Operating System 
7050    Microsoft Windows COM+ Event System Service Privilege Escalation Vulnerability - Windows Server 2019 
31630    Microsoft Windows Kernel Privilege Escalation Vulnerability - Windows 11 
7060    Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability - Windows Server 2019 
31640    Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability - Windows 11 
15260    Apache Solr VelocityResponseWriter Plug-In Remote Code Execution Vulnerability - Any Operating System 
7070    Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability - Windows Server 2019 
31650    Microsoft Windows Scripting Engine Memory Corruption Vulnerability - Windows 11 
7080    Microsoft Win32k Privilege Escalation Vulnerability - Windows Server 2019 
7090    Microsoft Windows Spoofing Vulnerability - Windows Server 2019