Security
Headlines
HeadlinesLatestCVEs

Tag

#dos

Microsoft Patch Tuesday, August 2023 Edition

Microsoft Corp. today issued software updates to plug more than 70 security holes in its Windows operating systems and related products, including a patch that addresses multiple zero-day vulnerabilities currently being exploited in the wild.

Krebs on Security
#vulnerability#windows#microsoft#dos#rce#auth#zero_day#blog
Six critical vulnerabilities included in August’s Microsoft security update

The only vulnerability Microsoft states is being exploited in the wild is CVE-2023-38180, a denial-of-service vulnerability in .NET and Microsoft Visual Studio.

CVE-2023-38180

.NET and Visual Studio Denial of Service Vulnerability

GHSA-rg2c-cfxv-qp6f: Denial of service in jackson-dataformats-text

Those using jackson-dataformats-text to parse TOML data may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack.

CVE-2023-38254

Microsoft Message Queuing Denial of Service Vulnerability

CVE-2023-35377

Microsoft Message Queuing Denial of Service Vulnerability

CVE-2023-38172

Microsoft Message Queuing Denial of Service Vulnerability

CVE-2023-36909

Microsoft Message Queuing Denial of Service Vulnerability

CVE-2023-35376

Microsoft Message Queuing Denial of Service Vulnerability

CVE-2023-36912

Microsoft Message Queuing Denial of Service Vulnerability