Kaspersky ID:
KLA61359
Detect Date:
10/10/2023
Updated:
01/25/2024

Description

Multiple vulnerabilities were found in Microsoft Products (Extended Security Update). Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service, bypass security restrictions, obtain sensitive information, gain privileges.

Below is a complete list of vulnerabilities:

  1. A remote code execution vulnerability in Microsoft Message Queuing can be exploited remotely to execute arbitrary code.
  2. A denial of service vulnerability in Active Template Library can be exploited remotely to cause denial of service.
  3. A security feature bypass vulnerability in Windows Search can be exploited remotely to bypass security restrictions.
  4. An information disclosure vulnerability in Windows TCP/IP can be exploited remotely to obtain sensitive information.
  5. An elevation of privilege vulnerability in Win32k can be exploited remotely to gain privileges.
  6. A remote code execution vulnerability in Layer 2 Tunneling Protocol can be exploited remotely to execute arbitrary code.
  7. An information disclosure vulnerability in Windows Power Management Service can be exploited remotely to obtain sensitive information.
  8. A denial of service vulnerability in Windows TCP/IP can be exploited remotely to cause denial of service.
  9. A remote code execution vulnerability in Windows MSHTML Platform can be exploited remotely to execute arbitrary code.
  10. A denial of service vulnerability in DHCP Server Service can be exploited remotely to cause denial of service.
  11. An information disclosure vulnerability in Windows Remote Desktop Gateway (RD Gateway) can be exploited remotely to obtain sensitive information.
  12. A denial of service vulnerability in Microsoft Message Queuing can be exploited remotely to cause denial of service.
  13. A remote code execution vulnerability in Microsoft WDAC OLE DB provider for SQL Server can be exploited remotely to execute arbitrary code.
  14. An elevation of privilege vulnerability in Windows Kernel can be exploited remotely to gain privileges.
  15. An information disclosure vulnerability in Windows Deployment Services can be exploited remotely to obtain sensitive information.
  16. An information disclosure vulnerability in Active Directory Domain Services can be exploited remotely to obtain sensitive information.
  17. An elevation of privilege vulnerability in Windows Client Server Run-time Subsystem (CSRSS) can be exploited remotely to gain privileges.
  18. An elevation of privilege vulnerability in Windows IIS Server can be exploited remotely to gain privileges.
  19. An elevation of privilege vulnerability in Windows Internet Key Exchange (IKE) Extension can be exploited remotely to gain privileges.
  20. A remote code execution vulnerability in Microsoft DirectMusic can be exploited remotely to execute arbitrary code.
  21. A security feature bypass vulnerability in Windows Mark of the Web can be exploited remotely to bypass security restrictions.
  22. An information disclosure vulnerability in Windows Common Log File System Driver can be exploited remotely to obtain sensitive information.
  23. A remote code execution vulnerability in Microsoft WDAC ODBC Driver can be exploited remotely to execute arbitrary code.
  24. An information disclosure vulnerability in Microsoft WordPad can be exploited remotely to obtain sensitive information.
  25. A remote code execution vulnerability in Windows Media Foundation Core can be exploited remotely to execute arbitrary code.
  26. An elevation of privilege vulnerability in Windows Graphics Component can be exploited remotely to gain privileges.
  27. An elevation of privilege vulnerability in Windows RDP Encoder Mirror Driver can be exploited remotely to gain privileges.
  28. An elevation of privilege vulnerability in Named Pipe File System can be exploited remotely to gain privileges.
  29. An information disclosure vulnerability in Remote Procedure Call can be exploited remotely to obtain sensitive information.
  30. An elevation of privilege vulnerability in Microsoft Resilient File System (ReFS) can be exploited remotely to gain privileges.
  31. A denial of service vulnerability in Windows Deployment Services can be exploited remotely to cause denial of service.
  32. An elevation of privilege vulnerability in Windows Runtime C++ Template Library can be exploited remotely to gain privileges.

Original advisories

Exploitation

Public exploits exist for this vulnerability.

Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.

Related products

CVE list

  • CVE-2023-36582
    high
  • CVE-2023-36585
    critical
  • CVE-2023-35349
    critical
  • CVE-2023-36564
    high
  • CVE-2023-36571
    high
  • CVE-2023-36438
    critical
  • CVE-2023-36732
    critical
  • CVE-2023-36583
    high
  • CVE-2023-36731
    critical
  • CVE-2023-41774
    critical
  • CVE-2023-36724
    high
  • CVE-2023-36590
    high
  • CVE-2023-36602
    critical
  • CVE-2023-36436
    critical
  • CVE-2023-36703
    critical
  • CVE-2023-38166
    critical
  • CVE-2023-29348
    critical
  • CVE-2023-41765
    critical
  • CVE-2023-36743
    critical
  • CVE-2023-36579
    critical
  • CVE-2023-36701
    critical
  • CVE-2023-36577
    critical
  • CVE-2023-36581
    critical
  • CVE-2023-36712
    critical
  • CVE-2023-36567
    critical
  • CVE-2023-41771
    critical
  • CVE-2023-36722
    warning
  • CVE-2023-36729
    critical
  • CVE-2023-41770
    critical
  • CVE-2023-36711
    critical
  • CVE-2023-36570
    high
  • CVE-2023-41766
    critical
  • CVE-2023-36434
    critical
  • CVE-2023-41773
    critical
  • CVE-2023-36697
    critical
  • CVE-2023-36593
    high
  • CVE-2023-36578
    high
  • CVE-2023-36573
    high
  • CVE-2023-36572
    high
  • CVE-2023-36589
    high
  • CVE-2023-36726
    critical
  • CVE-2023-36702
    critical
  • CVE-2023-36575
    high
  • CVE-2023-36707
    critical
  • CVE-2023-36776
    high
  • CVE-2023-36584
    high
  • CVE-2023-36431
    critical
  • CVE-2023-36713
    high
  • CVE-2023-36598
    critical
  • CVE-2023-36574
    high
  • CVE-2023-41769
    critical
  • CVE-2023-36563
    high
  • CVE-2023-36710
    critical
  • CVE-2023-36606
    critical
  • CVE-2023-36594
    critical
  • CVE-2023-36706
    high
  • CVE-2023-36596
    critical
  • CVE-2023-41768
    critical
  • CVE-2023-41767
    critical
  • CVE-2023-36591
    high
  • CVE-2023-36592
    high
  • CVE-2023-36790
    critical

KB list

Read more

Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com

Found an inaccuracy in the description of this vulnerability? Let us know!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Learn more
New Kaspersky!
Your digital life deserves complete protection!
Learn more
Confirm changes?
Your message has been sent successfully.