Security News > 2020 > June > Microsoft squishes 129 bugs with Patch Tuesday updates
The lion's share of the bugs are rated important, but there are 11 CVEs rated critical.
These are all bugs affecting Windows 10, and many also affected the latest 2004 build.
There were also some other non-critical CVEs that it didn't release separate security updates for, including the batch's only bug rated with moderate severity: CVE-2020-1195.
Instead of patches, Microsoft fixed these bugs with product updates.
APSB20-32 fixes three critical bugs in its Framemaker product for Windows: a memory corruption issue and two out-of-bounds write bugs.
News URL
https://nakedsecurity.sophos.com/2020/06/11/microsoft-squishes-129-bugs-with-patch-tuesday-updates/
Related news
- Microsoft December 2024 Patch Tuesday fixes 1 exploited zero-day, 71 flaws (source)
- Microsoft holds last Patch Tuesday of the year with 72 gifts for admins (source)
- Patch Tuesday: Microsoft Patches One Actively Exploited Vulnerability, Among Others (source)
- What Is Patch Tuesday? Microsoft’s Monthly Update Explained (source)
- Microsoft says premature patch could make Windows Recall forget how to work (source)
- December 2024 Patch Tuesday forecast: The secure future initiative impact (source)
- Week in review: Veeam Service Provider Console flaws fixed, Patch Tuesday forecast (source)
- Microsoft Fixes 72 Flaws, Including Patch for Actively Exploited CLFS Vulnerability (source)
- January 2025 Patch Tuesday forecast: Changes coming in cybersecurity guidance (source)
- Week in review: Exploited Ivanti Connect Secure zero-day, Patch Tuesday forecast (source)
Related Vulnerability
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-05-21 | CVE-2020-1195 | Improper Input Validation vulnerability in Microsoft Edge An elevation of privilege vulnerability exists in Microsoft Edge (Chromium-based) when the Feedback extension improperly validates input, aka 'Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability'. | 5.9 |