Microsoft August 2023 Patch Tuesday warns of 2 zero-days, 87 flaws Cybernoz August 8, 2023 Posted in Bleeping ComputerShare: XFacebookPinterestRedditVKDiggLinkedinMix TagCVE IDCVE TitleSeverity.NET CoreCVE-2023-38178.NET Core and Visual Studio Denial of Service VulnerabilityImportant.NET CoreCVE-2023-35390.NET and Visual Studio Remote Code Execution VulnerabilityImportant.NET FrameworkCVE-2023-36873.NET Framework Spoofing VulnerabilityImportantASP .NETCVE-2023-38180.NET and Visual Studio Denial of Service VulnerabilityImportantASP.NETCVE-2023-36899ASP.NET Elevation of Privilege VulnerabilityImportantASP.NET and Visual StudioCVE-2023-35391ASP.NET Core SignalR and Visual Studio Information Disclosure VulnerabilityImportantAzure ArcCVE-2023-38176Azure Arc-Enabled Servers Elevation of Privilege VulnerabilityImportantAzure DevOpsCVE-2023-36869Azure DevOps Server Spoofing VulnerabilityImportantAzure HDInsightsCVE-2023-38188Azure Apache Hadoop Spoofing VulnerabilityImportantAzure HDInsightsCVE-2023-35393Azure Apache Hive Spoofing VulnerabilityImportantAzure HDInsightsCVE-2023-35394Azure HDInsight Jupyter Notebook Spoofing VulnerabilityImportantAzure HDInsightsCVE-2023-36881Azure Apache Ambari Spoofing VulnerabilityImportantAzure HDInsightsCVE-2023-36877Azure Apache Oozie Spoofing VulnerabilityImportantDynamics Business Central ControlCVE-2023-38167Microsoft Dynamics Business Central Elevation Of Privilege VulnerabilityImportantMarinerCVE-2023-35945UnknownUnknownMemory Integrity System Readiness Scan ToolADV230004Memory Integrity System Readiness Scan Tool Defense in Depth UpdateModerateMicrosoft DynamicsCVE-2023-35389Microsoft Dynamics 365 On-Premises Remote Code Execution VulnerabilityImportantMicrosoft Edge (Chromium-based)CVE-2023-38157Microsoft Edge (Chromium-based) Security Feature Bypass VulnerabilityModerateMicrosoft Edge (Chromium-based)CVE-2023-4068Chromium: CVE-2023-4068 Type Confusion in V8UnknownMicrosoft Edge (Chromium-based)CVE-2023-4072Chromium: CVE-2023-4072 Out of bounds read and write in WebGLUnknownMicrosoft Edge (Chromium-based)CVE-2023-4071Chromium: CVE-2023-4071 Heap buffer overflow in VisualsUnknownMicrosoft Edge (Chromium-based)CVE-2023-4073Chromium: CVE-2023-4073 Out of bounds memory access in ANGLEUnknownMicrosoft Edge (Chromium-based)CVE-2023-4075Chromium: CVE-2023-4075 Use after free in CastUnknownMicrosoft Edge (Chromium-based)CVE-2023-4074Chromium: CVE-2023-4074 Use after free in Blink Task SchedulingUnknownMicrosoft Edge (Chromium-based)CVE-2023-4076Chromium: CVE-2023-4076 Use after free in WebRTCUnknownMicrosoft Edge (Chromium-based)CVE-2023-4077Chromium: CVE-2023-4077 Insufficient data validation in ExtensionsUnknownMicrosoft Edge (Chromium-based)CVE-2023-4078Chromium: CVE-2023-4078 Inappropriate implementation in ExtensionsUnknownMicrosoft Edge (Chromium-based)CVE-2023-4070Chromium: CVE-2023-4070 Type Confusion in V8UnknownMicrosoft Edge (Chromium-based)CVE-2023-4069Chromium: CVE-2023-4069 Type Confusion in V8UnknownMicrosoft Exchange ServerCVE-2023-38185Microsoft Exchange Server Remote Code Execution VulnerabilityImportantMicrosoft Exchange ServerCVE-2023-35388Microsoft Exchange Server Remote Code Execution VulnerabilityImportantMicrosoft Exchange ServerCVE-2023-35368Microsoft Exchange Remote Code Execution VulnerabilityImportantMicrosoft Exchange ServerCVE-2023-38181Microsoft Exchange Server Spoofing VulnerabilityImportantMicrosoft Exchange ServerCVE-2023-38182Microsoft Exchange Server Remote Code Execution VulnerabilityImportantMicrosoft Exchange ServerCVE-2023-21709Microsoft Exchange Server Elevation of Privilege VulnerabilityImportantMicrosoft OfficeADV230003Microsoft Office Defense in Depth UpdateModerateMicrosoft OfficeCVE-2023-36897Visual Studio Tools for Office Runtime Spoofing VulnerabilityImportantMicrosoft Office ExcelCVE-2023-36896Microsoft Excel Remote Code Execution VulnerabilityImportantMicrosoft Office ExcelCVE-2023-35371Microsoft Office Remote Code Execution VulnerabilityImportantMicrosoft Office OutlookCVE-2023-36893Microsoft Outlook Spoofing VulnerabilityImportantMicrosoft Office OutlookCVE-2023-36895Microsoft Outlook Remote Code Execution VulnerabilityCriticalMicrosoft Office SharePointCVE-2023-36891Microsoft SharePoint Server Spoofing VulnerabilityImportantMicrosoft Office SharePointCVE-2023-36894Microsoft SharePoint Server Information Disclosure VulnerabilityImportantMicrosoft Office SharePointCVE-2023-36890Microsoft SharePoint Server Information Disclosure VulnerabilityImportantMicrosoft Office SharePointCVE-2023-36892Microsoft SharePoint Server Spoofing VulnerabilityImportantMicrosoft Office VisioCVE-2023-35372Microsoft Office Visio Remote Code Execution VulnerabilityImportantMicrosoft Office VisioCVE-2023-36865Microsoft Office Visio Remote Code Execution VulnerabilityImportantMicrosoft Office VisioCVE-2023-36866Microsoft Office Visio Remote Code Execution VulnerabilityImportantMicrosoft TeamsCVE-2023-29328Microsoft Teams Remote Code Execution VulnerabilityCriticalMicrosoft TeamsCVE-2023-29330Microsoft Teams Remote Code Execution VulnerabilityCriticalMicrosoft WDAC OLE DB provider for SQLCVE-2023-36882Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityImportantMicrosoft WindowsCVE-2023-20569AMD: CVE-2023-20569 Return Address PredictorImportantMicrosoft Windows Codecs LibraryCVE-2023-38170HEVC Video Extensions Remote Code Execution VulnerabilityImportantReliability Analysis Metrics Calculation EngineCVE-2023-36876Reliability Analysis Metrics Calculation (RacTask) Elevation of Privilege VulnerabilityImportantRole: Windows Hyper-VCVE-2023-36908Windows Hyper-V Information Disclosure VulnerabilityImportantSQL ServerCVE-2023-38169Microsoft OLE DB Remote Code Execution VulnerabilityImportantTablet Windows User InterfaceCVE-2023-36898Tablet Windows User Interface Application Core Remote Code Execution VulnerabilityImportantWindows Bluetooth A2DP driverCVE-2023-35387Windows Bluetooth A2DP driver Elevation of Privilege VulnerabilityImportantWindows Cloud Files Mini Filter DriverCVE-2023-36904Windows Cloud Files Mini Filter Driver Elevation of Privilege VulnerabilityImportantWindows Common Log File System DriverCVE-2023-36900Windows Common Log File System Driver Elevation of Privilege VulnerabilityImportantWindows Cryptographic ServicesCVE-2023-36907Windows Cryptographic Services Information Disclosure VulnerabilityImportantWindows Cryptographic ServicesCVE-2023-36906Windows Cryptographic Services Information Disclosure VulnerabilityImportantWindows DefenderCVE-2023-38175Microsoft Windows Defender Elevation of Privilege VulnerabilityImportantWindows Fax and Scan ServiceCVE-2023-35381Windows Fax Service Remote Code Execution VulnerabilityImportantWindows Group PolicyCVE-2023-36889Windows Group Policy Security Feature Bypass VulnerabilityImportantWindows HTML PlatformCVE-2023-35384Windows HTML Platforms Security Feature Bypass VulnerabilityImportantWindows KernelCVE-2023-35359Windows Kernel Elevation of Privilege VulnerabilityImportantWindows KernelCVE-2023-38154Windows Kernel Elevation of Privilege VulnerabilityImportantWindows KernelCVE-2023-35382Windows Kernel Elevation of Privilege VulnerabilityImportantWindows KernelCVE-2023-35386Windows Kernel Elevation of Privilege VulnerabilityImportantWindows KernelCVE-2023-35380Windows Kernel Elevation of Privilege VulnerabilityImportantWindows LDAP – Lightweight Directory Access ProtocolCVE-2023-38184Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution VulnerabilityImportantWindows Message QueuingCVE-2023-36909Microsoft Message Queuing Denial of Service VulnerabilityImportantWindows Message QueuingCVE-2023-35376Microsoft Message Queuing Denial of Service VulnerabilityImportantWindows Message QueuingCVE-2023-38172Microsoft Message Queuing Denial of Service VulnerabilityImportantWindows Message QueuingCVE-2023-35385Microsoft Message Queuing Remote Code Execution VulnerabilityCriticalWindows Message QueuingCVE-2023-35383Microsoft Message Queuing Information Disclosure VulnerabilityImportantWindows Message QueuingCVE-2023-36913Microsoft Message Queuing Information Disclosure VulnerabilityImportantWindows Message QueuingCVE-2023-35377Microsoft Message Queuing Denial of Service VulnerabilityImportantWindows Message QueuingCVE-2023-38254Microsoft Message Queuing Denial of Service VulnerabilityImportantWindows Message QueuingCVE-2023-36911Microsoft Message Queuing Remote Code Execution VulnerabilityCriticalWindows Message QueuingCVE-2023-36910Microsoft Message Queuing Remote Code Execution VulnerabilityCriticalWindows Message QueuingCVE-2023-36912Microsoft Message Queuing Denial of Service VulnerabilityImportantWindows Mobile Device ManagementCVE-2023-38186Windows Mobile Device Management Elevation of Privilege VulnerabilityImportantWindows Projected File SystemCVE-2023-35378Windows Projected File System Elevation of Privilege VulnerabilityImportantWindows Reliability Analysis Metrics Calculation EngineCVE-2023-35379Reliability Analysis Metrics Calculation Engine (RACEng) Elevation of Privilege VulnerabilityImportantWindows Smart CardCVE-2023-36914Windows Smart Card Resource Management Server Security Feature Bypass VulnerabilityImportantWindows System Assessment ToolCVE-2023-36903Windows System Assessment Tool Elevation of Privilege VulnerabilityImportantWindows Wireless Wide Area Network ServiceCVE-2023-36905Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure VulnerabilityImportant Source link Related Articles Ongoing outage caused by ransomware attack Latitude cyberattack leads to data theft at two service providers Hackers deploy crypto drainers on thousands of WordPress sites Marquis sues SonicWall over backup breach that led to ransomware attack