Microsoft's May 2023 Patch Tuesday addresses critical vulnerabilities and zero-day exploits.

Microsoft's May Patch Tuesday includes 38 security fixes, with six deemed critical. Two of the vulnerabilities have already been exploited by attackers, including a Win32k elevation of privilege flaw and a Secure Boot security feature bypass vulnerability used by the BlackLotus bootkit. A third vulnerability, a Windows OLE Remote Code Execution flaw, has been publicly disclosed. Adobe released one security bulletin for Adobe Substance 3D Painter, while SAP released 25 new and updated security patches, including two Hot News and nine High Priority notes. Android's latest security bulletin resolved 18 flaws, with the most severe requiring user interaction to exploit.
- Two Microsoft Windows bugs under attack, one in Secure Boot with a manual fix The Register
- Microsoft May 2023 Patch Tuesday fixes 3 zero-days, 38 flaws BleepingComputer
- Microsoft Patch Tuesday, May 2023 Edition – Krebs on Security Krebs on Security
- Secure Boot vulnerability causes Patch Tuesday headache for admins ComputerWeekly.com
- Bootkit zero-day fix – is this Microsoft’s most cautious patch ever? Naked Security
Reading Insights
0
16
4 min
vs 5 min read
89%
933 → 100 words
Want the full story? Read the original article
Read on The Register