HomeUpdatesMicrosoft Patch Tuesday January 2024: Fixes 49 vulnerabilities

Microsoft Patch Tuesday January 2024: Fixes 49 vulnerabilities

Microsoft released its first Patch Tuesday of the year (January 2024) yesterday, bringing fixes for 49 vulnerabilities . 12 of them allow remote code execution. Only two were classified as critical: one bypasses security features in Windows Kerberos and the other is in Hyper-V and allows remote code execution.

Microsoft Patch Tuesday January

In the list below, you can see the types of vulnerabilities being fixed this month:

  • 12 vulnerabilities that allow remote code execution
  • 11 vulnerabilities that allow information disclosure
  • 10 vulnerabilities that allow for escalation of privileges
  • 7 vulnerabilities that allow bypassing security features
  • 6 vulnerabilities that allow denial-of-service attacks
  • 3 spoofing vulnerabilities

The total number of 49 flaws does not include 4 Microsoft Edge bugs that were fixed on January 5th.

See also: AI Engine: Vulnerability in WordPress plugin puts 50,000 sites at risk

Important vulnerabilities fixed in Microsoft Patch Tuesday January

It's worth noting that this month, no zero-day vulnerabilities were fixed, meaning vulnerabilities that were actively used in attacks or were publicly disclosed before the updates were released. However, some of the vulnerabilities are more important and interesting than others.

For example, Microsoft fixed a code execution vulnerability in Office Remote, tracked as CVE-2024-20677 , that allows threat actors to create malicious Office documents with embedded FBX 3D model files to execute code remotely

See also: Ivanti: Warns of critical vulnerability in EPM software

“A security vulnerability exists in FBX that could lead to remote code execution. To mitigate this vulnerability, the ability to import FBX files has been disabled in Word, Excel, PowerPoint, and Outlook for Windows and Mac,” Microsoft’s security bulletin explains.

Microsoft Patch Tuesday January 2024: Fixes 49 vulnerabilities

“Versions of Office that had this feature enabled will no longer have access to it. This includes Office 2019, Office 2021, Office LTSC for Mac 2021, and Microsoft 365.“.

Additionally, a critical flaw in Windows Kerberos (CVE-2024-20674) was also fixed. It would have allowed an attacker to bypass the authentication feature.

See also: CISA warns of vulnerabilities in Chrome and Excel

Microsoft Patch Tuesday January 2024: All the vulnerabilities fixed

In the table below, you can see all the vulnerabilities that Microsoft is patching this month:

TagsCVE IDCVE TitleSeverity
.NET and Visual StudioCVE-2024-0057NET, .NET Framework, and Visual Studio Security Feature Bypass VulnerabilityImportant
.NET Core & Visual StudioCVE-2024-20672.NET Core and Visual Studio Denial of Service VulnerabilityImportant
.NET FrameworkCVE-2024-21312.NET Framework Denial of Service VulnerabilityImportant
Azure Storage MoverCVE-2024-20676Azure Storage Mover Remote Code Execution VulnerabilityImportant
Microsoft Bluetooth DriverCVE-2024-21306Microsoft Bluetooth Driver Spoofing VulnerabilityImportant
Microsoft DevicesCVE-2024-21325Microsoft Printer Metadata Troubleshooter Tool Remote Code Execution VulnerabilityImportant
Microsoft Edge (Chromium-based)CVE-2024-0222Chromium: CVE-2024-0222 Use after free in ANGLEUnknown
Microsoft Edge (Chromium-based)CVE-2024-0223Chromium: CVE-2024-0223 Heap buffer overflow in ANGLEUnknown
Microsoft Edge (Chromium-based)CVE-2024-0224Chromium: CVE-2024-0224 Use after free in WebAudioUnknown
Microsoft Edge (Chromium-based)CVE-2024-0225Chromium: CVE-2024-0225 Use after free in WebGPUUnknown
Microsoft Identity ServicesCVE-2024-21319Microsoft Identity Denial of service vulnerabilityImportant
Microsoft OfficeCVE-2024-20677Microsoft Office Remote Code Execution VulnerabilityImportant
Microsoft Office SharePointCVE-2024-21318Microsoft SharePoint Server Remote Code Execution VulnerabilityImportant
Microsoft Virtual Hard DriveCVE-2024-20658Microsoft Virtual Hard Disk Elevation of Privilege VulnerabilityImportant
Remote Desktop ClientCVE-2024-21307Remote Desktop Client Remote Code Execution VulnerabilityImportant
SQL ServerCVE-2024-0056Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass VulnerabilityImportant
SQLiteCVE-2022-35737MITER: CVE-2022-35737 SQLite allows an array-bounds overflowImportant
Unified Extensible Firmware InterfaceCVE-2024-21305Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass VulnerabilityImportant
Visual StudioCVE-2024-20656Visual Studio Elevation of Privilege VulnerabilityImportant
Windows AllJoyn APICVE-2024-20687Microsoft AllJoyn API Denial of Service VulnerabilityImportant
Windows Authentication MethodsCVE-2024-20674Windows Kerberos Security Feature Bypass VulnerabilityCritical
Windows BitLockerCVE-2024-20666BitLocker Security Feature Bypass VulnerabilityImportant
Windows Cloud Files Mini Filter DriverCVE-2024-21310Windows Cloud Files Mini Filter Driver Elevation of Privilege VulnerabilityImportant
Windows Collaborative Translation FrameworkCVE-2024-20694Windows CoreMessaging Information Disclosure VulnerabilityImportant
Windows Common Log File System DriverCVE-2024-20653Microsoft Common Log File System Elevation of Privilege VulnerabilityImportant
Windows Cryptographic ServicesCVE-2024-20682Windows Cryptographic Services Remote Code Execution VulnerabilityImportant
Windows Cryptographic ServicesCVE-2024-21311Windows Cryptographic Services Information Disclosure VulnerabilityImportant
Windows Group PolicyCVE-2024-20657Windows Group Policy Elevation of Privilege VulnerabilityImportant
Windows Hyper-VCVE-2024-20699Windows Hyper-V Denial of Service VulnerabilityImportant
Windows Hyper-VCVE-2024-20700Windows Hyper-V Remote Code Execution VulnerabilityCritical
Windows KernelCVE-2024-20698Windows Kernel Elevation of Privilege VulnerabilityImportant
Windows Kernel-Mode DriversCVE-2024-21309Windows Kernel-Mode Driver Elevation of Privilege VulnerabilityImportant
Windows LibarchiveCVE-2024-20697Windows Library Remote Code Execution VulnerabilityImportant
Windows LibarchiveCVE-2024-20696Windows Library Remote Code Execution VulnerabilityImportant
Windows Local Security Authority Subsystem Service (LSASS)CVE-2024-20692Microsoft Local Security Authority Subsystem Service Information Disclosure VulnerabilityImportant
Windows Message QueuingCVE-2024-20660Microsoft Message Queuing Information Disclosure VulnerabilityImportant
Windows Message QueuingCVE-2024-20664Microsoft Message Queuing Information Disclosure VulnerabilityImportant
Windows Message QueuingCVE-2024-20680Windows Message Queuing Client (MSMQC) Information DisclosureImportant
Windows Message QueuingCVE-2024-20663Windows Message Queuing Client (MSMQC) Information DisclosureImportant
Windows Message QueuingCVE-2024-21314Microsoft Message Queuing Information Disclosure VulnerabilityImportant
Windows Message QueuingCVE-2024-20661Microsoft Message Queuing Denial of Service VulnerabilityImportant
Windows Nearby SharingCVE-2024-20690Windows Nearby Sharing Spoofing VulnerabilityImportant
Windows ODBC DriverCVE-2024-20654Microsoft ODBC Driver Remote Code Execution VulnerabilityImportant
Windows Online Certificate Status Protocol (OCSP) SnapInCVE-2024-20662Windows Online Certificate Status Protocol (OCSP) Information Disclosure VulnerabilityImportant
Windows Online Certificate Status Protocol (OCSP) SnapInCVE-2024-20655Microsoft Online Certificate Status Protocol (OCSP) Remote Code Execution VulnerabilityImportant
Windows ScriptingCVE-2024-20652Windows HTML Platforms Security Feature Bypass VulnerabilityImportant
Windows Server Key Distribution ServiceCVE-2024-21316Windows Server Key Distribution Service Security Feature BypassImportant
Windows Subsystem for LinuxCVE-2024-20681Windows Subsystem for Linux Elevation of Privilege VulnerabilityImportant
Windows TCP/IPCVE-2024-21313Windows TCP/IP Information Disclosure VulnerabilityImportant
Windows ThemesCVE-2024-20691Windows Themes Information Disclosure VulnerabilityImportant
Windows ThemesCVE-2024-21320Windows Themes Spoofing VulnerabilityImportant
Windows Win32 Kernel SubsystemCVE-2024-20686Win32k Elevation of Privilege VulnerabilityImportant
Windows Win32KCVE-2024-20683Win32k Elevation of Privilege VulnerabilityImportant

Microsoft Patch Tuesday is a practice followed by Microsoft, where on the second Tuesday of each month it releases updates and fixes for its operating systems , programs, and applications. These updates typically include security fixes, performance improvements, and new features.

The purpose of Microsoft Patch Tuesday is to provide Microsoft users with the best possible user experience by fixing issues and ensuring the security of their systems. Microsoft Patch Tuesday is important for several reasons. First, security updates help protect systems from security vulnerabilities and malware. These updates fix known security issues and strengthen the resilience of systems against attacks.

Source: www.bleepingcomputer.com

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS