All About Microsoft Windows And Technology !!!

Microsoft Patch Tuesday Updates for Windows 11 and 10 (May 2024)

Microsoft addresses 59 CVEs in its May 2024 Patch Tuesday release with one critical vulnerability and three zero-day vulnerabilities, two of which were exploited in the wild.

In the latest edition of Microsoft Patch Tuesday Update May 2024, Microsoft has taken significant steps to enhance the security of its systems by addressing a total of 60 vulnerabilities. Among them, one is rated Critical, 59 are rated Important, and one is rated Moderate in severity. Also there are two zero-day flaws that are already being exploited by attackers.

  • CVE-2024-30040: This is a high-severity security feature bypass vulnerability in the Windows MSHTML platform that received an 8.8 CVSS score. The flaw could allow attackers to deceive users into opening a harmful file and then bypass OLE mitigations in Microsoft 365 and Microsoft Office to execute malicious code.
  • CVE-2024-30051: This elevation of privilege flaw in Windows DWM Core Library received a 7.8 CVSS score. The security vulnerability could let local attackers gain system privileges on the target system and take complete ownership of the device.
  • CVE-2024-30044: This is a remote code execution (RCE) vulnerability in SharePoint Server. It could let an unauthenticated hacker with site owner permissions inject and execute arbitrary code in the context of SharePoint Server.
  • CVE-2024-30033: This is an important rated elevation of privileges vulnerability in the Windows Search Service. An attacker could exploit this bug to system-level privileges and perform unauthorized actions.
  • CVE-2024-30018: This is another important-rated elevation of privileges vulnerability in the Windows Kernel with a 7.8 CVSS score. The security flaw enables hackers to bypass security protections and potentially take full control of the target system.

All this little world is corrected through various cumulative updates

You can search for Windows updates and hit the check for updates button to get the latest Windows updates installed on your device.

Windows 11 KB5037771 Download

Microsoft Patch Tuesday Update May 2024

The May edition of Microsoft Patch Tuesday encompasses a wide range of updates aimed at addressing vulnerabilities across various components and applications. Key areas receiving patches include Microsoft Office and Components, Microsoft Azure Kubernetes Service, Microsoft Dynamics, Microsoft Windows Codecs Library, Visual Studio Code, Windows Cloud Files Mini Filter Driver, and more.

For windows 11 and windows 10

For the client OS, KB5037771 for Windows 11 version 23H2 advances the build number to 22631.593. And KB5037768 for Windows 10 22H2 bumps to OS build 19045.4412.

Addresses a known issue that might cause your VPN connection to fail. This occurs after you install the update dated April 9, 2024, or later.

This update resolves several critical issues. It addresses an increase in NTLM authentication traffic that might affect domain controllers (DC). It also fixes failures in Virtual Secure Mode (VSM) scenarios, which include VPN, Windows Hello, Credential Guard, and Key Guard. Additionally, it resolves an issue with Server Message Block (SMB) clients failing to make SMB Multichannel connections, resulting in slow file transfers.

These updates are crucial for enhancing the security and stability of Microsoft’s ecosystem, including Edge Chromium-based products, by patching potential vulnerabilities and mitigating security risks.

You can read the complete changelog here KB5037771 and KB5037768

Here are the direct links for a download and a manual installation.

If you are looking to download Windows 10 ISO, you can get it from here.

Also read:

You might also like
Leave a comment

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Accept Read More