Skip to main content

A Quiet Patch Tuesday

It’s a quiet November in Microsoft security land, or it would seem to be that way from their advance notice for this week’s monthly Patch Tuesday.

This time around the company is promising just one critical and one important fix.

The critical fix is for an undisclosed vulnerability in Microsoft XML Core Services component in Windows 2000, XP, Server 2003, 2008 and Windows Vista. If exploited it could give an attacker the ability to remotely execute code on a system.

The important flaw, which is in a component in Windows 2000, XP, Server 2003, Server 2008 and Windows Vista, gives attackers the same ability. Again, no details were released, but it’s only deemed important.

Editors' Recommendations

Digital Trends Staff
Digital Trends has a simple mission: to help readers easily understand how tech affects the way they live. We are your…
Apple quietly launches unprecedented price cuts to its best MacBook Pros
The back lid of the MacBook Pro.

Apple's top of the line MacBook Pro 16-inch and 14-inch models are some of the best laptops the company has ever made -- but they're extremely expensive machines that rarely come down in price.

However, Apple has quietly dropped the price on these sought-after laptops with some surprising price cuts.

Read more
Update your Mac now to patch this crucial security flaw
The MacBook Air on a table in front of a window.

Apple just released another critical security update with the zero-day fixes appearing in MacOS Monterey 12.6 and Big Sur 11.7. The vulnerability even affects the iPhone and iPad, requiring an update to iOS 15.7 and iPadOS 15.7 to protect these devices.

This is the eighth zero-day this year, putting Apple on track to beat last year's unfortunate record of 12 zero-day flaws.

Read more
Update Windows now to patch this critical Microsoft Word exploit
Person sitting and using an HP computer with Windows 11.

Microsoft has rolled out security updates as part of its June 2022 Windows updates to address a serious security bug that has targeted programs including Microsoft Word.

The Windows zero-day vulnerability is known as Follina (CVE-2022-30190) by security researchers and is "actively exploited in ongoing attacks," according to Bleeping Computer.

Read more