Site icon TheCyberThrone

Microsoft Patch Tuesday – February 2025

Advertisements

Microsoft’s February 2025 Patch Tuesday is a significant update, addressing a total of 55 vulnerabilities, including four zero-day vulnerabilities with two actively exploited in the wild. Here’s a detailed breakdown of these updates, emphasizing the critical and zero-day vulnerabilities:

Zero-Day Vulnerabilities

CVE-2025-21391: Windows Storage Elevation of Privilege Vulnerability

CVE-2025-21418: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2025-21194: Microsoft Surface Security Feature Bypass Vulnerability

CVE-2025-21377: NTLM Hash Disclosure Spoofing Vulnerability

Critical Vulnerabilities

CVE-2025-21376: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

CVE-2025-21387: Microsoft Excel Remote Code Execution Vulnerability

CVE-2025-21388: Microsoft Dynamics 365 Sales Elevation of Privilege Vulnerability

Non-Security Updates

Additional Updates for Office

Mitigation Measures

Microsoft’s February 2025 Patch Tuesday is crucial for maintaining the security and integrity of your systems. Applying these updates promptly will help mitigate the risks associated with these vulnerabilities.

Exit mobile version