Microsoft September 2025 Patch Tuesday addresses 81 vulnerabilities, including two zero-days
Summary
Hide ▲
Show ▼
Microsoft's November 2025 Patch Tuesday addressed 63 vulnerabilities, including one actively exploited zero-day vulnerability (CVE-2025-62215), a critical Remote Code Execution flaw (CVE-2025-60724), and several other notable vulnerabilities. The updates also included fixes for multiple elevation of privilege, remote code execution, information disclosure, denial-of-service, and spoofing vulnerabilities. Microsoft has released the first extended security update (ESU) for Windows 10, advising users to upgrade to Windows 11 or enroll in the ESU program. The KB5068781 update, the first Windows 10 extended security update since the operating system reached end of support on October 14, 2025, includes fixes for 63 flaws and one actively exploited elevation-of-privilege vulnerability. The September 2025 Patch Tuesday addressed 80 vulnerabilities, including 13 critical vulnerabilities. The updates fixed a range of issues, including privilege escalation, remote code execution, information disclosure, and denial-of-service vulnerabilities. The patches also covered a critical flaw in Azure Networking and addressed a new lateral movement technique dubbed BitLockMove. Additionally, security updates were released by multiple vendors, including Adobe, Cisco, Google, and others. The September 2025 update included 38 elevation of privilege (EoP) vulnerabilities. The two zero-day vulnerabilities were CVE-2025-55234 in Windows SMB Server and CVE-2024-21907 in Microsoft SQL Server. The SMB vulnerability was exploited through relay attacks, while the SQL Server flaw involved improper handling of exceptional conditions in Newtonsoft.Json. The updates also included hardening features for SMB Server to mitigate relay attacks, with recommendations for administrators to enable auditing to assess compatibility issues. The KB5065429 cumulative update for Windows 10 22H2 and 21H2 included fourteen fixes or changes, addressing unexpected UAC prompts and severe lag and stuttering issues with NDI streaming software. The update enabled auditing SMB client compatibility for SMB Server signing and SMB Server EPA, and included an opt-in feature for administrators to allow outbound network traffic from Windows 10 devices.
Timeline
-
11.11.2025 20:45 6 articles · 6d ago
Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws
The November 2025 Patch Tuesday includes fixes for 29 Elevation of Privilege Vulnerabilities, 2 Security Feature Bypass Vulnerabilities, 16 Remote Code Execution Vulnerabilities, 11 Information Disclosure Vulnerabilities, 3 Denial of Service Vulnerabilities, and 2 Spoofing Vulnerabilities. The actively exploited zero-day vulnerability is CVE-2025-62215, a Windows Kernel Elevation of Privilege Vulnerability with a CVSS score of 7.0. CVE-2025-62215 is a race-condition and double-free flaw that enables a locally accessible, low-privileged attacker to corrupt kernel memory and escalate to system privileges. The attack requires local code execution or local access and successful timing of a race, which is complex and fragile and typically needs pool grooming and concurrent threads. The attacker only needs low privileges and no other user interaction. When chained with other vulnerabilities, the CVE becomes a critical threat, potentially enabling server compromise, mass credential exposure, lateral movement, and ransomware deployment. The update also addresses CVE-2025-60724, a critical Remote Code Execution (RCE) flaw in the GDI+ Windows graphics component with a CVSS score of 9.8. CVE-2025-60724 can be triggered by uploading a file to a public-facing web application, making any system that processes user-supplied documents at risk. The update also includes fixes for CVE-2025-60704, a high-severity privilege escalation flaw in Windows Kerberos, codenamed CheckSum by researchers. The update also addresses CVE-2025-62220, a vulnerability affecting Windows Subsystem for Linux GUI, enabling Remote Code Execution with a CVSS score of 8.8. The update also includes fixes for CVE-2025-60719, CVE-2025-62213, and CVE-2025-62217, vulnerabilities affecting the Windows Ancillary Function Driver of WinSock, enabling privilege escalation with a CVSS score of 7.0 each.
Show sources
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
10.09.2025 14:14 3 articles · 2mo ago
Microsoft highlights upcoming end-of-life for Windows 10 and MFA for Azure
The update highlights the upcoming end-of-life date for Windows 10 and the next phase of mandatory multifactor authentication (MFA) for Azure, both scheduled for October. The update includes fixes for 12 vulnerabilities in Microsoft's Chromium-based Edge browser, including a security bypass bug (CVE-2025-53791). The update addresses two privilege escalation vulnerabilities in Windows BitLocker (CVE-2025-54911 and CVE-2025-54912) and a security flaw in Newtonsoft.Json (CVE-2024-21907) affecting SQL Server. The update also addresses four previously patched BitLocker vulnerabilities collectively called BitUnlocker.
Show sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
09.09.2025 23:48 7 articles · 2mo ago
Microsoft highlights upcoming end-of-life for Windows 10 and MFA for Azure
Microsoft released an out-of-band update (KB5071959) to address an issue in the Windows 10 Consumer Extended Security Update (ESU) enrollment process. The KB5071959 update resolves an issue where the enrollment wizard may fail during enrollment, allowing consumer devices to successfully enroll in ESU using the ESU wizard.
Show sources
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
09.09.2025 20:43 9 articles · 2mo ago
Microsoft September 2025 Patch Tuesday addresses 81 vulnerabilities, including two zero-days
The September 2025 Patch Tuesday addresses 80 vulnerabilities, including 13 critical vulnerabilities. The updates fix a range of issues, including privilege escalation, remote code execution, information disclosure, and denial-of-service vulnerabilities. The patches also cover a critical flaw in Azure Networking and address a new lateral movement technique dubbed BitLockMove. The update includes fixes for 12 vulnerabilities in Microsoft's Chromium-based Edge browser, including a security bypass bug (CVE-2025-53791). The update addresses two privilege escalation vulnerabilities in Windows BitLocker (CVE-2025-54911 and CVE-2025-54912) and a security flaw in Newtonsoft.Json (CVE-2024-21907) affecting SQL Server. The update also addresses four previously patched BitLocker vulnerabilities collectively called BitUnlocker. Microsoft has released the final non-security preview update for Windows 10, version 22H2, which includes fixes for the out-of-box experience and SMBv1 protocol connectivity. The update improves the servicing stack, updating Windows 10 22H2 systems to build 19045.6396. It also addresses an issue causing non-admin users to receive unexpected User Account Control (UAC) prompts and fixes delays or uneven audio and video performance issues with Network Device Interface (NDI) streaming. The update includes fixes and quality improvements from the KB5065429 cumulative update, enabling support for IT administrators to deploy hardening measures for SMB.
Show sources
- Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days — www.bleepingcomputer.com — 09.09.2025 20:43
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
Information Snippets
-
Microsoft's September 2025 Patch Tuesday addresses 81 vulnerabilities.
First reported: 09.09.2025 20:434 sources, 7 articlesShow sources
- Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days — www.bleepingcomputer.com — 09.09.2025 20:43
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The updates include fixes for two publicly disclosed zero-day vulnerabilities.
First reported: 09.09.2025 20:434 sources, 7 articlesShow sources
- Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days — www.bleepingcomputer.com — 09.09.2025 20:43
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Nine critical vulnerabilities are addressed, including five remote code execution flaws.
First reported: 09.09.2025 20:433 sources, 3 articlesShow sources
- Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days — www.bleepingcomputer.com — 09.09.2025 20:43
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-55234 is an elevation of privilege vulnerability in Windows SMB Server exploited through relay attacks.
First reported: 09.09.2025 20:434 sources, 6 articlesShow sources
- Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days — www.bleepingcomputer.com — 09.09.2025 20:43
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2024-21907 is a vulnerability in Newtonsoft.Json affecting Microsoft SQL Server, involving improper handling of exceptional conditions.
First reported: 09.09.2025 20:434 sources, 6 articlesShow sources
- Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days — www.bleepingcomputer.com — 09.09.2025 20:43
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The patches include hardening features for SMB Server to mitigate relay attacks.
First reported: 09.09.2025 20:434 sources, 7 articlesShow sources
- Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days — www.bleepingcomputer.com — 09.09.2025 20:43
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Administrators are recommended to enable auditing on SMB servers to assess compatibility issues with hardening features.
First reported: 09.09.2025 20:434 sources, 7 articlesShow sources
- Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days — www.bleepingcomputer.com — 09.09.2025 20:43
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The KB5065429 cumulative update for Windows 10 22H2 and 21H2 includes fourteen fixes or changes.
First reported: 09.09.2025 20:573 sources, 6 articlesShow sources
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update addresses unexpected UAC prompts and severe lag and stuttering issues with NDI streaming software.
First reported: 09.09.2025 20:573 sources, 6 articlesShow sources
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Windows 10 22H2 will be updated to build 19045.6332, and Windows 10 21H2 to build 19044.6332.
First reported: 09.09.2025 20:573 sources, 4 articlesShow sources
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update enables auditing SMB client compatibility for SMB Server signing and SMB Server EPA.
First reported: 09.09.2025 20:573 sources, 5 articlesShow sources
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update includes an opt-in feature for administrators to allow outbound network traffic from Windows 10 devices.
First reported: 09.09.2025 20:573 sources, 6 articlesShow sources
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Windows Backup for Organizations is now generally available.
First reported: 09.09.2025 20:573 sources, 3 articlesShow sources
- Windows 10 KB5065429 update includes 14 changes and fixes — www.bleepingcomputer.com — 09.09.2025 20:57
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The September 2025 update includes 38 elevation of privilege (EoP) vulnerabilities.
First reported: 09.09.2025 23:484 sources, 6 articlesShow sources
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-55234 is an elevation of privilege vulnerability with a CVSS score of 8.8.
First reported: 09.09.2025 23:483 sources, 5 articlesShow sources
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-54918 in Windows NT LAN Manager (NTLM) is marked as critical and has a CVSS score of 8.8.
First reported: 09.09.2025 23:483 sources, 5 articlesShow sources
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-54111 and CVE-2025-54913 are EoP vulnerabilities in Windows UI XAML.
First reported: 09.09.2025 23:483 sources, 5 articlesShow sources
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-55232 in the Microsoft High Performance Compute (HPC) Pack has a CVSS score of 9.8.
First reported: 09.09.2025 23:483 sources, 5 articlesShow sources
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-54916 in Windows NTFS has a CVSS score of 7.8 and can be exploited through SMB or local parsing routines.
First reported: 09.09.2025 23:483 sources, 5 articlesShow sources
- EoP Flaws Again Lead Microsoft Patch Day — www.darkreading.com — 09.09.2025 23:48
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The September 2025 Patch Tuesday addresses 80 vulnerabilities, including one publicly disclosed flaw.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Eight vulnerabilities are rated Critical, and 72 are rated Important.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
None of the vulnerabilities have been exploited in the wild as zero-days.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Thirty-eight of the disclosed flaws are related to privilege escalation.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update includes fixes for 12 vulnerabilities in Microsoft's Chromium-based Edge browser.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update addresses a security bypass bug (CVE-2025-53791) in the Edge browser.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update includes a critical flaw in Azure Networking (CVE-2025-54914) with a CVSS score of 10.0.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update addresses two privilege escalation vulnerabilities in Windows BitLocker (CVE-2025-54911 and CVE-2025-54912).
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update addresses a security flaw in Newtonsoft.Json (CVE-2024-21907) affecting SQL Server.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update addresses four previously patched BitLocker vulnerabilities collectively called BitUnlocker.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update addresses a new lateral movement technique dubbed BitLockMove.
First reported: 10.09.2025 00:212 sources, 4 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Security updates have been released by multiple vendors, including Adobe, Cisco, Google, and others.
First reported: 10.09.2025 00:213 sources, 5 articlesShow sources
- Microsoft Fixes 80 Flaws — Including SMB PrivEsc and Azure CVSS 10.0 Bugs — thehackernews.com — 10.09.2025 14:14
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft has released the final non-security preview update for Windows 10, version 22H2.
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update includes fixes for the out-of-box experience and SMBv1 protocol connectivity.
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
KB5066198 addresses a known issue impacting SMBv1 shares over the NetBIOS over TCP/IP (NetBT) networking protocol.
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update resolves an issue with Windows Autopilot and the Enrollment Status Page (ESP) during the Out-of-Box Experience (OOBE).
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update improves the servicing stack, updating Windows 10 22H2 systems to build 19045.6396.
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update includes fixes and quality improvements from the KB5065429 cumulative update.
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update enables support for IT administrators to deploy hardening measures for SMB.
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update addresses an issue causing non-admin users to receive unexpected User Account Control (UAC) prompts.
First reported: 10.09.2025 00:213 sources, 5 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The update fixes delays or uneven audio and video performance issues with Network Device Interface (NDI) streaming.
First reported: 10.09.2025 00:213 sources, 5 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft will stop providing security updates for Windows 10 after October 14, 2025.
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The Extended Security Updates (ESU) program is available for Windows 10 users to delay the switch to Windows 11.
First reported: 10.09.2025 00:213 sources, 5 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Individual customers in the European Economic Area (EEA) can enroll in the ESU program for free.
First reported: 10.09.2025 00:213 sources, 5 articlesShow sources
- Microsoft releases the final Windows 10 22H2 preview update — www.bleepingcomputer.com — 26.09.2025 16:32
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The September 2025 Patch Tuesday addresses 80 vulnerabilities, including 13 critical vulnerabilities.
First reported: 10.09.2025 00:212 sources, 3 articlesShow sources
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-54918 in Windows NTLM is exploitable over the network or the Internet, allowing attackers to gain SYSTEM-level privileges.
First reported: 10.09.2025 00:212 sources, 3 articlesShow sources
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-55234 in Windows SMB client is a publicly disclosed vulnerability that can be exploited through relay attacks.
First reported: 10.09.2025 00:212 sources, 3 articlesShow sources
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-54916 in Windows NTFS can lead to remote code execution, requiring an attacker to run code on the host or convince a user to run a malicious file.
First reported: 10.09.2025 00:212 sources, 3 articlesShow sources
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Nearly half of the vulnerabilities fixed by Microsoft this month are privilege escalation flaws.
First reported: 10.09.2025 00:212 sources, 3 articlesShow sources
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Google fixed two zero-day vulnerabilities in Android on September 3, 2025.
First reported: 10.09.2025 00:213 sources, 4 articlesShow sources
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Apple patched its seventh zero-day of the year, used in an advanced spyware campaign targeting Apple devices.
First reported: 10.09.2025 00:212 sources, 3 articlesShow sources
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft will discontinue free security updates for Windows 10 computers in October 2025.
First reported: 10.09.2025 00:212 sources, 3 articlesShow sources
- Microsoft Patch Tuesday, September 2025 Edition — krebsonsecurity.com — 10.09.2025 00:21
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft's November 2025 Patch Tuesday addresses 63 vulnerabilities, including one actively exploited zero-day vulnerability.
First reported: 11.11.2025 20:455 sources, 6 articlesShow sources
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The November 2025 Patch Tuesday includes fixes for 29 Elevation of Privilege Vulnerabilities, 2 Security Feature Bypass Vulnerabilities, 16 Remote Code Execution Vulnerabilities, 11 Information Disclosure Vulnerabilities, 3 Denial of Service Vulnerabilities, and 2 Spoofing Vulnerabilities.
First reported: 11.11.2025 20:455 sources, 6 articlesShow sources
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The actively exploited zero-day vulnerability is CVE-2025-62215, a Windows Kernel Elevation of Privilege Vulnerability.
First reported: 11.11.2025 20:455 sources, 6 articlesShow sources
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft has released the first extended security update (ESU) for Windows 10, advising users to upgrade to Windows 11 or enroll in the ESU program.
First reported: 11.11.2025 20:455 sources, 6 articlesShow sources
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft released an out-of-band update to fix a bug preventing enrollments in the ESU program.
First reported: 11.11.2025 20:455 sources, 6 articlesShow sources
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Other vendors who released updates or advisories in November 2025 include Adobe, Cisco, Google, Fortinet, Ivanti, runC, QNAP, SAP, and Samsung.
First reported: 11.11.2025 20:454 sources, 5 articlesShow sources
- Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws — www.bleepingcomputer.com — 11.11.2025 20:45
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft released the KB5068781 update, the first Windows 10 extended security update since the operating system reached end of support on October 14, 2025.
First reported: 11.11.2025 21:095 sources, 5 articlesShow sources
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Consumers can enroll in the ESU program by paying $30, using 1,000 Microsoft reward points, or using Windows Backup to synchronize their Windows settings with their Microsoft account.
First reported: 11.11.2025 21:095 sources, 5 articlesShow sources
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Individual customers in the European Economic Area (EEA) can enroll in the ESU program for free by logging in to Windows 10 with a Microsoft account or pay $30 to continue using a local account.
First reported: 11.11.2025 21:095 sources, 5 articlesShow sources
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Business customers can use the ESU program for a total of three years, bringing the total cost per device to $427.
First reported: 11.11.2025 21:095 sources, 5 articlesShow sources
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft released an emergency fix to resolve a bug that prevented some devices from enrolling in the ESU program.
First reported: 11.11.2025 21:095 sources, 5 articlesShow sources
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
After installing the KB5068781 update, Windows 10 ESU will be updated to build 19045.6575 and Windows 10 Enterprise LTSC 2021 will be updated to build 19044.6575.
First reported: 11.11.2025 21:095 sources, 5 articlesShow sources
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The KB5068781 update resolves a bug that erroneously stated Windows 10 LTSC devices have reached end of support, even though they receive support until January 2027.
First reported: 11.11.2025 21:095 sources, 5 articlesShow sources
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The KB5068781 update includes Microsoft's Patch Tuesday security updates, which fix 63 flaws and one actively exploited elevation-of-privilege vulnerability.
First reported: 11.11.2025 21:095 sources, 5 articlesShow sources
- Microsoft releases KB5068781 — The first Windows 10 extended security update — www.bleepingcomputer.com — 11.11.2025 21:09
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 is an actively exploited Windows Kernel Elevation of Privilege Vulnerability with a CVSS score of 7.5.
First reported: 11.11.2025 22:234 sources, 4 articlesShow sources
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60724 is a critical Remote Code Execution (RCE) flaw in the GDI+ Windows graphics component with a CVSS score of 9.8.
First reported: 11.11.2025 22:234 sources, 4 articlesShow sources
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60704 is a medium-severity elevation-of-privilege bug affecting Windows Kerberos, dubbed CheckSum by researchers.
First reported: 11.11.2025 22:234 sources, 4 articlesShow sources
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62220 is a vulnerability affecting Windows Subsystem for Linux GUI, enabling Remote Code Execution with a CVSS score of 8.8.
First reported: 11.11.2025 22:234 sources, 4 articlesShow sources
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60719, CVE-2025-62213, and CVE-2025-62217 are vulnerabilities affecting the Windows Ancillary Function Driver of WinSock, enabling privilege escalation with a CVSS score of 7.0 each.
First reported: 11.11.2025 22:234 sources, 4 articlesShow sources
- Patch Now: Microsoft Flags Zero-Day & Critical Zero-Click Bugs — www.darkreading.com — 11.11.2025 22:23
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 is a race-condition and double-free flaw that enables a locally accessible, low-privileged attacker to corrupt kernel memory and escalate to system privileges.
First reported: 12.11.2025 12:153 sources, 3 articlesShow sources
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 requires local code execution or local access and successful timing of a race, which is complex and fragile and typically needs pool grooming and concurrent threads.
First reported: 12.11.2025 12:153 sources, 3 articlesShow sources
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 can be chained with other vulnerabilities to become a critical threat, potentially enabling server compromise, mass credential exposure, lateral movement, and ransomware deployment.
First reported: 12.11.2025 12:153 sources, 3 articlesShow sources
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60724 is a critical RCE bug impacting the GDI+ (Graphics Device Interface) library, a core Windows component used for rendering 2D graphics, images, and text.
First reported: 12.11.2025 12:153 sources, 3 articlesShow sources
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60724 can be triggered by uploading a file to a public-facing web application, making any system that processes user-supplied documents at risk.
First reported: 12.11.2025 12:153 sources, 3 articlesShow sources
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft released an out-of-band update (KB5071959) to address an issue in the Windows 10 Consumer Extended Security Update (ESU) enrollment process.
First reported: 12.11.2025 12:153 sources, 3 articlesShow sources
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The KB5071959 update resolves an issue where the enrollment wizard may fail during enrollment, allowing consumer devices to successfully enroll in ESU using the ESU wizard.
First reported: 12.11.2025 12:153 sources, 3 articlesShow sources
- Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday — www.infosecurity-magazine.com — 12.11.2025 12:15
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 is a privilege escalation flaw in Windows Kernel with a CVSS score of 7.0.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 is exploited through a race condition in Windows Kernel.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 allows an attacker to elevate privileges locally.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 requires local code execution or local access and successful timing of a race condition.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62215 can be chained with other vulnerabilities to become a critical threat.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60724 is a heap-based buffer overflow flaw in Microsoft's Graphics Component with a CVSS score of 9.8.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-62220 is a heap-based buffer overflow flaw in Windows Subsystem for Linux GUI with a CVSS score of 8.8.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60704 is a high-severity privilege escalation flaw in Windows Kerberos with a CVSS score of 7.5.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60704 is codenamed CheckSum by Silverfort.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60704 allows an attacker to gain administrator privileges.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60704 is exploited through an adversary-in-the-middle (AitM) attack.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
CVE-2025-60704 allows an attacker to impersonate arbitrary users and gain control over an entire domain.
First reported: 12.11.2025 12:212 sources, 2 articlesShow sources
- Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack — thehackernews.com — 12.11.2025 12:21
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
Microsoft released an out-of-band update (KB5071959) to address an issue in the Windows 10 Consumer Extended Security Update (ESU) enrollment process.
First reported: 16.11.2025 23:471 source, 1 articleShow sources
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
-
The KB5071959 update resolves an issue where the enrollment wizard may fail during enrollment, allowing consumer devices to successfully enroll in ESU using the ESU wizard.
First reported: 16.11.2025 23:471 source, 1 articleShow sources
- Microsoft Patch Tuesday, November 2025 Edition — krebsonsecurity.com — 16.11.2025 23:47
Similar Happenings
Microsoft Releases Emergency Update for Windows 10 ESU Enrollment Bug
Microsoft has issued an emergency out-of-band update (KB5071959) to fix a bug preventing Windows 10 users from enrolling in the Extended Security Updates (ESU) program. This update resolves an issue in the ESU enrollment wizard that caused failures during the enrollment process. Once installed, users can successfully enroll their devices and receive ongoing security updates. Windows 10 reached end-of-support on October 14, 2025, making ESU enrollment crucial for continued security updates. The ESU program costs $30 for home users and $61 per device per year for enterprises, with escalating costs for multi-year commitments.
Windows 10 update bug triggers incorrect end-of-support alerts
A bug in the October 2025 Windows 10 updates triggers incorrect end-of-support alerts on systems running Windows 10 Enterprise LTSC 2021, Windows 10 IoT Enterprise LTSC 2021, and Windows 10 22H2 enrolled in the Extended Security Updates program. The bug causes affected devices to display 'Your version of Windows has reached the end of support' messages, despite the systems still being under active support or security coverage. Microsoft has deployed a cloud configuration update to correct the erroneous message, but some devices may not receive it due to connectivity or configuration issues. IT administrators can use Known Issue Rollback (KIR) to remove the incorrect messages on enterprise-managed devices. Microsoft released the first Windows 10 extended security update (KB5068781) on November 11, 2025, to address the bug for all customers enrolled in the Extended Security Updates (ESU) program. However, the KB5068781 update is failing to install with 0x800f0922 errors on devices with corporate licensing, and Microsoft is currently investigating the issue.
Privilege Escalation Vulnerability in Linux Kernel Exploited in Ransomware Attacks
A high-severity privilege escalation flaw in the Linux kernel (CVE-2024-1086) is being exploited in ransomware attacks. Disclosed in January 2024, the vulnerability allows attackers with local access to escalate privileges to root level. It affects multiple major Linux distributions, including Debian, Ubuntu, Fedora, and Red Hat. The flaw was introduced in February 2014 and fixed in January 2024. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) confirmed the exploitation in ransomware campaigns and added the vulnerability to its Known Exploited Vulnerabilities (KEV) catalog in May 2024. Federal agencies were ordered to secure their systems by June 20, 2024. Mitigations include blocking 'nf_tables', restricting access to user namespaces, or loading the Linux Kernel Runtime Guard (LKRG) module.
Active Exploitation of Critical Microsoft WSUS Flaw
A critical vulnerability in Microsoft Windows Server Update Service (WSUS), CVE-2025-59287, is being actively exploited in the wild. This flaw, with a CVSS score of 9.8, allows attackers to drop malicious payloads and execute arbitrary commands on infected hosts. The vulnerability affects WSUS versions 3.32.x and was discovered by Eye Security and Huntress. The Cybersecurity and Infrastructure Security Agency (CISA) has ordered U.S. government agencies to patch the flaw, which was added to the Known Exploited Vulnerabilities catalog. Organizations using WSUS are advised to apply the out-of-band security updates provided by Microsoft to mitigate the risk of exploitation. The flaw was originally patched by Microsoft as part of its Patch Tuesday updates, but attackers have since weaponized it to deploy .NET executables and Base64-encoded PowerShell scripts. Shadowserver is tracking over 2,800 WSUS instances with default ports exposed online. The vulnerability is a deserialization of untrusted data flaw that allows unauthenticated attackers to achieve remote code execution with system privileges by sending malicious encrypted cookies to the GetCookie() endpoint. A compromised WSUS server could potentially be used to distribute malicious updates to the entire network of client computers, making it particularly dangerous for large enterprises. Huntress advised isolating network access to WSUS and blocking inbound traffic to TCP ports 8530 and 8531 as remediation steps. The out-of-band (OOB) security update KB5070881 for CVE-2025-59287 broke hotpatching on some Windows Server 2025 devices. Microsoft has released a new update, KB5070893, to address the issue without disrupting hotpatching. Administrators are advised to install this update to maintain hotpatching functionality.
Critical WSUS RCE Vulnerability Exploited in the Wild
A critical remote code execution (RCE) vulnerability (CVE-2025-59287) in Windows Server Update Service (WSUS) is being actively exploited in the wild. The flaw allows attackers to run malicious code with SYSTEM privileges on Windows servers with the WSUS Server role enabled. Microsoft has released out-of-band patches for all affected Windows Server versions. Cybersecurity firms have observed exploitation attempts and the presence of publicly available proof-of-concept exploit code. The vulnerability is considered potentially wormable between WSUS servers and poses a significant risk to organizations. The flaw concerns a case of deserialization of untrusted data in WSUS. The vulnerability was discovered and reported by security researchers MEOW, f7d8c52bec79e42795cf15888b85cbad, and Markus Wulftange with CODE WHITE GmbH. CISA and NSA, along with international partners, have issued guidance to secure Microsoft Exchange Server instances, including recommendations to restrict administrative access, implement multi-factor authentication, and enforce strict transport security configurations. The agencies advise decommissioning end-of-life on-premises or hybrid Exchange servers after transitioning to Microsoft 365. Sophos reported threat actors exploiting the vulnerability to harvest sensitive data from U.S. organizations across various industries, with at least 50 victims identified. The exploitation activity was first detected on October 24, 2025, a day after Microsoft issued the update. Attackers use Base64-encoded PowerShell commands to exfiltrate data to a webhook[.]site endpoint. Michael Haag of Splunk noted an alternate attack chain involving the Microsoft Management Console binary (mmc.exe) to trigger cmd.exe execution.