Posts by Adam Bunn

7 min Patch Tuesday

Patch Tuesday - September 2021

Microsoft has fixed a total of 60 vulnerabilities this month, including two publicly disclosed 0-days. Here’s three big things you can go patch right now.

6 min Patch Tuesday

Patch Tuesday - August 2021

Hot off the press, it’s another issue of the Patch Tuesday blog! While the number of vulnerabilities is low this month, there are a number of high risk items administrators will want to patch right away including a few that will require additional remediation steps. This Patch Tuesday also includes updates for three vulnerabilities that were publicly disclosed earlier this month. Let’s jump in. Windows Elevation of Privilege Vulnerability aka HiveNightmare/SeriousSAM https://msrc.microsoft.com/

9 min Vulnerability Management

Patch Tuesday - July 2021

Microsoft has patched another 117 CVEs [https://msrc.microsoft.com/update-guide/releaseNote/2021-Jul], returning to volumes seen in early 2021 and most of 2020. It would appear that the recent trend of approximately 50 vulnerability fixes per month was not indicative of a slowing pace. This month there were 13 vulnerabilities rated Critical with nearly the rest being rated Important. Thankfully, none of the updates published today require additional steps to remediate, so administrators should b

5 min Vulnerability Management

Patch Tuesday - June 2021

It is another low volume Patch Tuesday this month as Microsoft releases fixes for 50 vulnerabilities. This should not diminish the importance of speedily applying the updates. 6 of the vulnerabilities being patched this month are 0-days under active exploitation (CVE-2021-31955 [https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31955], CVE-2021-31956 [https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31956], CVE-2021-33739 [https://msrc.microsoft.com/updat

5 min Patch Tuesday

Patch Tuesday - May 2021

Here we are again with another installment of Patch Tuesday. When compared to the past few months this one feels a bit light both in severity and number of vulnerabilities addressed. Microsoft has only released patches for 55 CVEs this month, less than half of the usual volume, with only 4 of them being scored as critical. Let's dive into the details. HTTP Protocol Stack Remote Code Execution Vulnerability - CVE-2021-31166 [https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-

9 min Patch Tuesday

Patch Tuesday - April 2021

Patch Tuesday is here again and there are more Exchange updates to apply! A total of 114 vulnerabilities were fixed this month with more than half of them affecting all versions of Windows, with about half of them being remote code execution bugs, and about a fifth of them being rated as critical by Microsoft. Let's dive in! New Exchange Server Patches Available If you were only going to patch one thing today, please let it be this. Exchange Server has been a hot topic since the vulnerabilities

9 min Vulnerability Management

Patch Tuesday - March 2021

Another Patch Tuesday (2021-Mar [https://msrc.microsoft.com/update-guide/releaseNote/2021-Mar]) is upon us and with this month comes a whopping 122 CVEs.  As usual Windows tops the list of the most patched product. However, this month it’s browser vulnerabilities taking the second place, outnumbering Office vulnerabilities 3:1! Lastly, the Exchange Server vulnerabilities this month are not to be ignored as more than half of them have been seen exploited in the wild. Vulnerability Breakdown by S