Security News > 2022 > January > Microsoft starts 2022 with big bundle fixes for 96 security bugs in its software

For its first Patch Tuesday of 2022, Redmond has bestowed 96 new CVEs affecting its Windows products.
If you include 24 Chromium CVEs published earlier this month and now addressed in Microsoft's Edge browser, in addition to two CVEs in open source projects, you get 122 fixes that need to be applied.
Of the 96 Windows CVEs and the two open source fixes, nine are rated Critical and 89 are rated Important.
Dustin Childs, with the Zero Day Initiative, calls attention to yet another Microsoft Exchange critical remote code execution flaw, which like several recent Exchange bugs has been flagged by.
Security biz CyberArk believes some attention should be paid to the vulnerability, rated Important, in Windows Remote Desktop Services that the company discovered and disclosed to Microsoft.
Alongside its patch notifications, Microsoft said it is revising how it shares information through its Security Update Guide.
News URL
https://go.theregister.com/feed/www.theregister.com/2022/01/12/january_patch_tuesday/
Related news
- URGENT: Microsoft Patches 57 Security Flaws, Including 6 Actively Exploited Zero-Days (source)
- Patch Tuesday: Microsoft Fixes 57 Security Flaws – Including Active Zero-Days (source)
- AI agents swarm Microsoft Security Copilot (source)
- After Detecting 30B Phishing Attempts, Microsoft Adds Even More AI to Its Security Copilot (source)
- Android Malware Exploits a Microsoft-Related Security Blind Spot to Avoid Detection (source)
- Week in review: Chrome sandbox escape 0-day fixed, Microsoft adds new AI agents to Security Copilot (source)
- April 2025 Patch Tuesday forecast: More AI security introduced by Microsoft (source)
- Google's got a hot cloud infosec startup, a new unified platform — and its eye on Microsoft's $20B+ security biz (source)
- Microsoft: Windows 'inetpub' folder created by security fix, don’t delete (source)
- Widespread Microsoft Entra lockouts tied to new security feature rollout (source)