Security News > 2020 > February > Microsoft Addresses Active Attacks, Air-Gap Danger with 99 Patches

Microsoft Addresses Active Attacks, Air-Gap Danger with 99 Patches
2020-02-11 22:06

Microsoft has issued one of its largest Patch Tuesday updates for the shortest month of the year, addressing 99 security vulnerabilities across a range of products.

The update includes a patch for the zero-day memory-corruption vulnerability disclosed in late January that's under active attack.

There were 41 vulnerabilities fixed in the Chromium-based Edge version that were technically not part of Patch Tuesday - which brings the total number of bugs fixed by Microsoft this week to 140.

Two critical remote code-execution vulnerabilities in Remote Desktop were patched, and are likely to be exploited, according to Microsoft.

"The normal updates still apply. OS, browsers, and Office will resolve most of your vulnerabilities from the Microsoft side. SQL and Exchange Admins do get a bit of extra work this month as both of those products are included in the updates released[but with] a couple of patches per system you can take the teeth out of the majority of the risk this month."


News URL

https://threatpost.com/microsoft-active-attacks-air-gap-99-patches/152807/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Microsoft 724 806 4714 4721 3646 13887