[BESAdmin-Announcements] Content Modification: Updates for Kev Content published 2025-01-06
Announcements for BES Administrators
besadmin-announcements at bigmail.bigfix.com
Mon Jan 6 09:17:36 PST 2025
Total New Fixlets: 2
Total Updated Fixlets: 68
Total Fixlets in Site: 2777
Total CVEs Covered: 789
Release Date: 2025-01-06
New Fixlets:
12800 Apache Tomcat Remote Code Execution Vulnerability - Any
Version of Windows
35360 Apache Tomcat Remote Code Execution Vulnerability - Any
Version of Linux
Updated Fixlets:
26880 Google Chromium WebP Heap-Based Buffer Overflow Vulnerability
- Any Version of Windows
14210 Microsoft Malware Protection Engine Improper Restriction of
Operations Vulnerability - Any Version of Windows
32260 HTTP/2 Rapid Reset Attack Vulnerability - Windows 10
29700 Microsoft Windows Print Spooler Privilege Escalation
Vulnerability - Windows Server 2012
6790 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows Server 2019
21510 Microsoft Exchange Server Server-Side Request Forgery
Vulnerability - Exchange Server 2016
10120 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows Server 2012
13830 Microsoft Windows LSA Spoofing Vulnerability - Windows 11
7050 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows Server 2019
29710 Microsoft Windows Print Spooler Privilege Escalation
Vulnerability - Windows Server 2012 R2
9230 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows Server 2012 R2
5520 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows 10
6160 Microsoft Active Directory Domain Services Privilege Escalation
Vulnerability - Windows 10
6930 Microsoft Windows LSA Spoofing Vulnerability - Windows Server
2019
30610 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows Server 2008 R2
7700 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows Server 2016
13460 Microsoft Windows LSA Spoofing Vulnerability - Windows Server
2022
32400 HTTP/2 Rapid Reset Attack Vulnerability - Windows 11
31760 Google Chromium V8 Type Confusion Vulnerability - Any Version
of Linux
2840 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows 7 SP1
29720 Microsoft Windows Print Spooler Privilege Escalation
Vulnerability - Windows Server 2016
10520 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows Server 2012
13850 Microsoft Active Directory Domain Services Privilege
Escalation Vulnerability - Windows 11
8220 Microsoft Active Directory Domain Services Privilege Escalation
Vulnerability - Windows Server 2016
13980 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows 11
27040 Google Chromium WebP Heap-Based Buffer Overflow Vulnerability
- Any Version of MacOS
4640 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows Server 2008 SP2
1440 Microsoft Windows LSA Spoofing Vulnerability - Windows 8.1
29730 Microsoft Windows Print Spooler Privilege Escalation
Vulnerability - Windows Server 2019
31780 Google Chromium V8 Type Confusion Vulnerability - Any Version
of MacOS
21540 Microsoft Exchange Server Remote Code Execution Vulnerability
- Exchange Server 2019
1830 Microsoft Active Directory Domain Services Privilege Escalation
Vulnerability - Windows 8.1
13480 Microsoft Active Directory Domain Services Privilege
Escalation Vulnerability - Windows Server 2022
29740 Microsoft Windows Print Spooler Privilege Escalation
Vulnerability - Windows 10
21680 Microsoft Exchange Server Server-Side Request Forgery
Vulnerability - Exchange Server 2013
5940 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows 10
13620 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows Server 2022
29750 Microsoft Windows Print Spooler Privilege Escalation
Vulnerability - Windows 8.1
2490 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows 7 SP1
7230 Microsoft Active Directory Domain Services Privilege Escalation
Vulnerability - Windows Server 2019
32190 HTTP/2 Rapid Reset Attack Vulnerability - Windows Server 2016
7870 Microsoft Windows LSA Spoofing Vulnerability - Windows Server
2016
29760 Microsoft Windows Print Spooler Privilege Escalation
Vulnerability - Windows Server 2022
13890 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows 11
1610 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows 8.1
21450 Microsoft Exchange Server Remote Code Execution Vulnerability
- Exchange Server 2016
30540 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows Server 2008 R2
29770 Microsoft Windows Print Spooler Privilege Escalation
Vulnerability - Windows 11
1230 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows 8.1
9040 Microsoft Windows LSA Spoofing Vulnerability - Windows Server
2012 R2
26960 Google Chromium WebP Heap-Based Buffer Overflow Vulnerability
- Any Version of Linux
14930 WhatsApp Cross-Site Scripting Vulnerability - Any Version of
MacOS
32340 HTTP/2 Rapid Reset Attack Vulnerability - Windows Server 2022
30550 Microsoft Windows LSA Spoofing Vulnerability - Windows Server
2008 R2
5720 Microsoft Windows LSA Spoofing Vulnerability - Windows 10
10330 Microsoft Windows LSA Spoofing Vulnerability - Windows Server
2012
13530 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows Server 2022
32220 HTTP/2 Rapid Reset Attack Vulnerability - Windows Server 2019
21600 Microsoft Exchange Server Server-Side Request Forgery
Vulnerability - Exchange Server 2019
14180 Microsoft Defender Remote Code Execution Vulnerability - Any
Version of Windows
4460 Microsoft Windows LSA Spoofing Vulnerability - Windows Server
2008 SP2
2670 Microsoft Windows LSA Spoofing Vulnerability - Windows 7 SP1
8050 Microsoft Windows COM+ Event System Service Privilege
Escalation Vulnerability - Windows Server 2016
8820 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code
Execution Vulnerability - Windows Server 2012 R2
9460 Microsoft Active Directory Domain Services Privilege Escalation
Vulnerability - Windows Server 2012 R2
32120 HTTP/2 Rapid Reset Attack Vulnerability - Any Version of
Windows
31740 Google Chromium V8 Type Confusion Vulnerability - Any Version
of Windows
21630 Microsoft Exchange Server Remote Code Execution Vulnerability
- Exchange Server 2013
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://bigmail.bigfix.com/pipermail/besadmin-announcements/attachments/20250106/af6803f8/attachment.html>
More information about the Besadmin-announcements
mailing list