2023-04-19 17:00:00
Microsoft fixes 97 security flaws all at once. An update that must be installed immediately!
Security updates should always be installed as soon as possible. When you see it arriving on your smartphone or computer, it is important to install it to correct a particular flaw or bug in the security of your device. If you have a PChowever, the operation is particularly important at the moment since the latest update contains approximately 100 fixes, including one for an actively exploited flaw.
Microsoft fixes 97 security flaws in one fell swoop
The update deployed by Microsoft corrects no less than 97 security vulnerabilities. All are not of the same severity: seven of them are however stamped as “Critical”, the others being “Important”. Also note that it is not possible to select which ones you install, but it is good to know the most serious ones.
Thus, with this patch, no less than 45 remote code execution flaws are fixed – these flaws allow malicious people to execute code on your machine – and 20 privilege elevation flaws – which allow malicious people to gain access to system functions normally reserved for administrators -.
Here is the complete list:
- 45 remote code execution flaws
- 20 escalation of privilege vulnerabilities
- 10 information disclosure loopholes
- 9 denial of service flaws
- 8 Security Bypass Flaws
- 6 spoofing flaws
That being said, one of them is particularly serious: CVE-2023-28252. Microsoft has confirmed that this flaw is zero-day and that it is actively exploited, which means that malicious people are already taking advantage of it to attack users. The Redmond firm explains that “an attacker who successfully exploits this vulnerability can obtain system privileges”, in other words, he takes control of your PC.
Although we rarely know who exploits these kinds of vulnerabilities, in this specific case, the information is known. Cybersecurity firm Kaspersky has identified a group using the flaw to carry out ransomware-type attacks on businesses in Asia, the Middle East and North America. Even the CISA (Cybersecurity and Infrastructure Security Agency) has asked its agencies to install this update by May 2.
To install the latest security update to fix these 97 vulnerabilities, go to Start > Settings > Windows Update (Windows 11) or Start > Settings > Update & Security > Windows Update (Windows 10) .
1681935267
#Update #Immediately