Today is Microsoft's June 2021 Patch Tuesday, and with it comes fixes for seven zero-day vulnerabilities and a total of 50 flaws, so Windows admins will be scrambling to get devices secured.
Microsoft has fixed 50 vulnerabilities with today's update, with five classified as Critical and forty-five as Important.
For information about the non-security Windows updates, you can read about today's
Windows 10 KB5003637 & KB5003635 cumulative updates.
Seven zero-day vulnerabilities fixedAs part of today's Patch Tuesday, Microsoft has fixed seven zero-day vulnerabilities, with six of them known to be exploited in the past.
The six actively exploited zero-day vulnerabilities are:
•
CVE-2021-31955 - Windows Kernel Information Disclosure Vulnerability
•
CVE-2021-31956 - Windows NTFS Elevation of Privilege Vulnerability
•
CVE-2021-33739 - Microsoft DWM Core Library Elevation of Privilege Vulnerability
•
CVE-2021-33742 - Windows MSHTML Platform Remote Code Execution Vulnerability
•
CVE-2021-31199 - Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
•
CVE-2021-31201 - Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
In addition, the '
CVE-2021-31968 - Windows Remote Desktop Services Denial of Service Vulnerability' was publicly disclosed but not seen in attacks.
Kaspersky discovered two of the zero-day vulnerabilities, so we will likely see a report coming soon explaining how they were used.
Recent updates from other companiesOther vendors who released updates in June include:
•
Adobe released security updates for ten products.
•
Android's June security updates were
released yesterday.
•
Cisco released security updates for numerous products this month.
•
SAP released its June 2021 security updates.
The June 2021 Patch Tuesday Security UpdatesBelow is the full list of resolved vulnerabilities and released advisories in the June 2021 Patch Tuesday updates. To access the full description of each vulnerability and the systems that it affects, you can view the
full report here.




source