Security News > 2021 > November > Microsoft November 2021 Patch Tuesday fixes 6 zero-days, 55 flaws

Microsoft November 2021 Patch Tuesday fixes 6 zero-days, 55 flaws
2021-11-09 18:30

Today is Microsoft's November 2021 Patch Tuesday, and with it comes fixes for six zero-day vulnerabilities and a total of 55 flaws.

The actively exploited vulnerabilities are for Microsoft Exchange and Excel, with the Exchange zero-day used as part of the Tianfu hacking contest.

Microsoft has fixed 55 vulnerabilities with today's update, with six classified as Critical and 49 as Important.

November's Patch Tuesday includes fixes for six zero-day vulnerabilities, two actively exploited against Microsoft Exchange and Microsoft Excel.

The Microsoft Excel CVE-2021-42292 was discovered by the Microsoft Threat Intelligence Center and has been actively used in malicious attacks.

Below is the complete list of resolved vulnerabilities and released advisories in the November 2021 Patch Tuesday updates.


News URL

https://www.bleepingcomputer.com/news/microsoft/microsoft-november-2021-patch-tuesday-fixes-6-zero-days-55-flaws/

Related Vulnerability

DATE CVE VULNERABILITY TITLE RISK
2021-11-10 CVE-2021-42292 Unspecified vulnerability in Microsoft products
Microsoft Excel Security Feature Bypass Vulnerability
local
low complexity
microsoft
7.8

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Microsoft 473 68 2214 4928 253 7463