Chromium: CVE-2024-12694 Use after free in Compositing

Posted on Thursday December 19, 2024

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024) for more information.

 

CVE-2024-43594 Microsoft System Center Elevation of Privilege Vulnerability

Posted on Wednesday December 18, 2024

Corrected CVE title and Vulnerability Family to specify System Center as the affected product line. Corrected Fixed Build Numbers and Download links in the Security Updates table. Added FAQs explaining which customers are affected and the mitigation actions required. This is an informational change only.

 

CVE-2024-49147 Microsoft Update Catalog Elevation of Privilege Vulnerability

Posted on Thursday December 12, 2024

Deserialization of untrusted data in Microsoft Update Catalog allows an unauthorized attacker to elevate privileges on the website’s webserver.

 

Chromium: CVE-2024-12381 Type Confusion in V8

Posted on Thursday December 12, 2024

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024 ) for more information.

 

Chromium: CVE-2024-12382 Use after free in Translate

Posted on Thursday December 12, 2024

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024 ) for more information.

 

CVE-2024-49071 Windows Defender Information Disclosure Vulnerability

Posted on Thursday December 12, 2024

Improper authorization of an index that contains sensitive information from a Global Files search in Windows Defender allows an authorized attacker to disclose information over a network.

 

Page:   1...262728293031323334...93

Celebrating 35+ Years

Managed Internet Connections

Contact Us

Support Ends for Windows 10 22H2, Windows Server 2012 R2, Exchange 2013, Office 2016