Diamond Member Pelican Press 0 Posted February 12 Diamond Member Share Posted February 12 This is the hidden content, please Sign In or Sign Up This is the hidden content, please Sign In or Sign Up ’s February 2025 Patch Tuesday corrects 57 bugs, three critical This is the hidden content, please Sign In or Sign Up followed up its massive January Patch Tuesday update containing fixes for 159 vulnerabilities with a more modest crop this month. This time, it released fixes for 57 new This is the hidden content, please Sign In or Sign Up in its This is the hidden content, please Sign In or Sign Up , three of which are critical. Dustin Childs of the This is the hidden content, please Sign In or Sign Up described one of the vulnerabilities as unprecedented in the wild. This is a Windows storage elevation of privilege (EOP) vulnerability, This is the hidden content, please Sign In or Sign Up . In a blog post, Childs said: “This is … a type of bug we haven’t seen exploited publicly. The vulnerability allows an attacker to delete targeted files. How does this lead to privilege escalation? My colleague Simon Zuckerbraun This is the hidden content, please Sign In or Sign Up . While we’ve seen similar issues in the past, this does appear to be the first time the technique has been exploited in the wild. It’s also likely paired with a code execution bug to completely take over a system. Test and deploy this quickly.” In Computer Weekly’s sister title SearchWindowsServer, This is the hidden content, please Sign In or Sign Up two new This is the hidden content, please Sign In or Sign Up vulnerabilities that This is the hidden content, please Sign In or Sign Up has fixed in this Patch Tuesday, including the EOP that Childs highlighted. “The first new zero-day is a Windows Ancillary Function Driver for WinSock elevation-of-privilege vulnerability (CVE-2025-21418) rated important with a CVSS ( This is the hidden content, please Sign In or Sign Up ) score of 7.8. This bug affects all currently supported Windows desktop and server systems,” he wrote. The second new zero-day is the storage EOP vulnerability (CVE-2025-21391) that Childs commented on, to which Walat added: “To exploit the vulnerability, the attacker only needs local access to the network with low privileges. If successful, the attacker can delete files on a system to This is the hidden content, please Sign In or Sign Up and possibly perform other actions, such as elevating their privileges.” Childs also picked out This is the hidden content, please Sign In or Sign Up , a Windows Lightweight Directory Access Protocol (LDAP) This is the hidden content, please Sign In or Sign Up vulnerability. “This vulnerability allows a remote, unauthenticated attacker to run their code on an affected system simply by sending a maliciously crafted request to the target,” he wrote. “Since there’s no user interaction involved, that makes this bug wormable between affected LDAP servers. This is the hidden content, please Sign In or Sign Up lists this as ‘exploitation likely’, so even though this may be unlikely, I would treat this as an impending exploitation. Test and deploy the patch quickly.” In the CVE notes to this “critical” vulnerability, which has a CVSS rating of 8.1, This is the hidden content, please Sign In or Sign Up stated: “An unauthenticated attacker could send a specially crafted request to a vulnerable LDAP server. Successful exploitation could result in a buffer overflow which could be leveraged to achieve remote code execution.” There are also several This is the hidden content, please Sign In or Sign Up Excel bug fixes in this update, including This is the hidden content, please Sign In or Sign Up , an RCE vulnerability. “This is one of several Excel fixes where the Preview Pane is an attack vector, which is confusing as This is the hidden content, please Sign In or Sign Up also notes that user interaction is required,” said Childs. “They also note that multiple patches are required to address this vulnerability fully. This likely can be exploited either by opening a malicious Excel file or previewing a malicious attachment in This is the hidden content, please Sign In or Sign Up . Either way, make sure you get all the needed patches tested and deployed.” This vulnerability is one of six Excel flaws that This is the hidden content, please Sign In or Sign Up corrected this month, in what proved to be a relatively light This is the hidden content, please Sign In or Sign Up . This is the hidden content, please Sign In or Sign Up #Microsofts #February #Patch #Tuesday #corrects #bugs #critical This is the hidden content, please Sign In or Sign Up This is the hidden content, please Sign In or Sign Up Link to comment https://hopzone.eu/forums/topic/215926-microsoft%E2%80%99s-february-2025-patch-tuesday-corrects-57-bugs-three-critical/ Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now