LandzDown Forum

Security => Security Alerts & Briefings => Topic started by: Corrine on December 12, 2023, 06:44:04 PM

Title: Microsoft December 2023 Security Updates
Post by: Corrine on December 12, 2023, 06:44:04 PM
The Microsoft December 2023 security updates have been released and consist of 29 new patches. In addition, multiple Chromium bugs are being incorporated into the release, bringing the total number of CVEs to 42.

Of the CVEs released, 4 are rated critical and 29 are rated important. At the time of release, none of the CVEs are listed as being under active attack or as publicly known.

The security updates apply to the following products, features and roles: Microsoft Windows and Windows Components; Office and Office Components; Azure, Microsoft Edge (Chromium-based); Windows Defender; Windows DNS and DHCP server; and Microsoft Dynamic.

See the list of KBs at the bottom of the page at December 2023 Security Updates - Release Notes - Security Update Guide - Microsoft (http://'https//msrc.microsoft.com/update-guide/releaseNote/2023-Dec') for information regarding known issues with the security updates as well as the CVEs with FAQs, Mitigations and/or Workarounds. For specific information on Windows 11, versions 23H2 and 22H2, see KB5033375 (https://support.microsoft.com/en-us/topic/windows-11-version-23h2-update-history-59875222-b990-4bd9-932f-91a5954de434). For Windows 10, Version 22H2 see KB5033372 (https://support.microsoft.com/en-us/topic/december-12-2023-kb5033372-os-builds-19044-3803-and-19045-3803-9cea61c6-072b-41f1-8cf2-7c7bfdd12d5c).

IMPORTANT:

Recommended Reading: See Dustin Childs review and analysis in Zero Day Initiative -- The December 2023 Security Update Review (https://www.zerodayinitiative.com/blog/2023/12/12/the-december-2023-security-update-review).