Security News > 2024 > February > Microsoft Outlook December updates trigger ICS security alerts

Microsoft is investigating an issue that triggers Outlook security alerts when trying to open.
ICS calendar files after installing December 2023 Patch Tuesday Office security updates.
Microsoft 365 users affected by this issue report seeing dialog boxes warning them that "Microsoft Office has identified a potential security concern" and that "This location may be unsafe" when double-clicking ICS files saved locally.
The company also revealed that the security warning will be displayed after deploying a security update that patches the CVE-2023-35636 Microsoft Outlook information disclosure vulnerability.
Microsoft says Outlook apps can't connect to Outlook.com.
Microsoft fixes connection issue affecting Outlook email apps.
News URL
Related news
- Microsoft shares workaround for Windows security update issues (source)
- Windows 10 KB5051974 update force installs new Microsoft Outlook app (source)
- Microsoft fixes Outlook drag-and-drop broken by Windows updates (source)
- Microsoft script updates bootable media for BlackLotus bootkit fixes (source)
- New Microsoft script updates Windows media with bootkit malware fixes (source)
- Critical RCE bug in Microsoft Outlook now exploited in attacks (source)
- Microsoft Edge update adds AI-powered Scareware Blocker (source)
- Zimbra Releases Security Updates for SQL Injection, Stored XSS, and SSRF Vulnerabilities (source)
- Microsoft rolls out BIOS update that fixes ASUS blue screen issues (source)
- Qualcomm pledges 8 years of security updates for Android kit using its chips (YMMV) (source)
Related Vulnerability
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-12 | CVE-2023-35636 | Unspecified vulnerability in Microsoft products Microsoft Outlook Information Disclosure Vulnerability | 0.0 |