نوشته شده توسط : jiajiasnow

The November 2018 Patch Tuesday rollout includes patches for no less than 62 vulnerabilities and zero less than 12 turn out to be rated as Critical.

Which means IT admins should prioritize the deployment of patches resolving these flaws, as well as one of the highlights can be a public disclosure vulnerability in Windows 10.

Detailed in CVE-2018-8566, the matter also exists in Windows Server 2016 and Windows Server 2019, and it's a burglar alarm Feature Bypass in BitLocker that are going to allow an attacker to access information which could otherwise be encrypted.

"To exploit the vulnerability, an opponent must gain physical access towards target system a lot of next system reboot. The safety update fixes the vulnerability by ensuring Windows resumes BitLocker Device Encryption," Microsoft explains, adding that even so the flaw has actually been publicly disclosed, it's unaware of any exploits around the world in the wild.

"Windows 7 zero-day"

Windows 7, Windows Server 2008, and Windows Server 2008 R2 have a zero-day vulnerability that belongs to them detailed in CVE-2018-8589.

This aspect, it's an Elevation of Privilege bug in Win32k.sys might allow cybercriminals for running arbitrary code across the system and be able to gain rights to put on programs or create new accounts with administrator rights.

"To exploit this vulnerability, an opponent would first will have to log on to the ac unit. An attacker could then manage a specially crafted application which will exploit the vulnerability and command over an affected system," the software giant says.

This occasion, Microsoft says that the bug has already been being exploited and recommends patching immediately.

Needless to say, you will also find security updates for Microsoft's browsers - Microsoft Edge and Internet Explorer - and critical vulnerabilities are fixed here too.

Windows 10 users can patch systems by downloading cumulative updates, despite the fact that security fixes for Windows 7 and Windows 8.1 are in the monthly rollups.





:: بازدید از این مطلب : 721
|
امتیاز مطلب : 0
|
تعداد امتیازدهندگان : 0
|
مجموع امتیاز : 0
تاریخ انتشار : چهار شنبه 23 آبان 1397 | نظرات ()
مطالب مرتبط با این پست
لیست
می توانید دیدگاه خود را بنویسید


نام
آدرس ایمیل
وب سایت/بلاگ
:) :( ;) :D
;)) :X :? :P
:* =(( :O };-
:B /:) =DD :S
-) :-(( :-| :-))
نظر خصوصی

 کد را وارد نمایید:

آپلود عکس دلخواه: