The updates released last night by Microsoft on June's Patch Tuesday fix a total of 94 security vulnerabilities in the company's software.
As we reported today, Microsoft also released three updates for Windows XP, and Windows Server 2003. This is the second time the company has updated these operating systems since April 2014, when it stopped supporting them.
The company also patched a new vulnerability that affects all versions of Windows, including Windows 10. CVE-2017-8543 , which attackers are already aware of, allows them to gain complete control of a system via SMB in the Windows Search service.
Also fixed is the CVE-2017-8464, which allows attackers to take control of a system, as well as CVE-2017-8527, a vulnerability in the Windows graphic font engine that can be exploited with a malicious font file.
Microsoft Edge and Internet Explorer, the two browsers included with Windows 10, were also updated with multiple patches for a number of vulnerabilities with yesterday's Patch Tuesday: CVE-2017-8498, CVE-2017-8530, and CVE-2017-8523. These security flaws have already been publicly disclosed, but Microsoft says it is not aware of any attacks attempting to exploit them.
Overall, the products being updated today are Internet Explorer, Microsoft Edge, Windows (all versions, including Windows XP), Microsoft Office services and Web applications, Silverlight, Skype for Business, Lync, and Adobe Flash Player as part of browsers.
Of the 94 vulnerabilities Microsoft patched this month, at least 27 of them address remote code execution flaws that could be used by attackers to take control of a system.
So it is important to update your systems immediately.
