January 2023 Patch Tuesday

It’s a new year and another edition of patch Tuesday is among us. 

On Tuesday, January 10th, Microsoft released its latest round of patches for various vulnerabilities in its software. This month’s Patch Tuesday includes fixes for several critical vulnerabilities that could allow attackers to execute arbitrary code or cause a denial of service on vulnerable systems.There were total 98 vulnerabilities addressed in this month’s edition of patch Tuesday. 

One of the critical vulnerabilities that made the highlight this week was CVE-2023-21674. CVE-2023-21674 is a vulnerability that affects the Microsoft Windows operating system. This vulnerability is caused by a memory corruption issue in the Windows kernel, which could allow an attacker to execute arbitrary code on a vulnerable system. This could potentially lead to a complete compromise of the affected device.

The vulnerability affects all supported versions of Windows, including Windows 10, Windows 8.1, and Windows 7. An attacker could exploit this vulnerability by crafting a malicious file or website that could trigger the memory corruption issue when opened or visited by a user.

The vulnerability has been assigned a CVSSv3 base score of 9.8, which is considered critical. It can be exploited remotely and does not require any user interaction. It’s important to note that this vulnerability does not have any known public exploit or any indication that it has been actively exploited.

Microsoft has released updates for all affected versions of Windows and it is highly recommended that users apply these updates as soon as possible. The company has also provided a mitigation for the vulnerability that can be applied to affected systems that are unable to install the update.

In addition to Microsoft’s January 2023 Patch Tuesday updates, several other major tech companies have also released updates to address vulnerabilities in their products.

As always, it is important to keep your software up to date to ensure that you are protected against the latest vulnerabilities. Microsoft has released updates for all affected products, and it is highly recommended that users apply these updates as soon as possible.

In addition to applying these updates, it is also important to practice good cybersecurity hygiene to help protect yourself against potential threats. This includes using strong, unique passwords for all of your accounts, avoiding clicking on links or opening attachments in suspicious emails, and keeping your anti-virus software up to date.

By staying vigilant and keeping your software up to date, you can help protect yourself and your organization against the latest cybersecurity threats. Happy patching!

January 2023 Security Updates:

Description
CVEDisclosedExploitedExploitability (old versions)current versionSeverityCVSS Base (AVG)CVSS Temporal (AVG)
.NET Denial of Service Vulnerability
CVE-2023-21538NoNoImportant7.56.5
3D Builder Remote Code Execution Vulnerability
CVE-2023-21780NoNoImportant7.86.8
CVE-2023-21781NoNoImportant7.86.8
CVE-2023-21782NoNoImportant7.86.8
CVE-2023-21784NoNoImportant7.86.8
CVE-2023-21786NoNoImportant7.86.8
CVE-2023-21791NoNoImportant7.86.8
CVE-2023-21793NoNoImportant7.86.8
CVE-2023-21783NoNoImportant7.86.8
CVE-2023-21785NoNoImportant7.86.8
CVE-2023-21787NoNoImportant7.86.8
CVE-2023-21788NoNoImportant7.86.8
CVE-2023-21789NoNoImportant7.86.8
CVE-2023-21790NoNoImportant7.86.8
CVE-2023-21792NoNoImportant7.86.8
Azure Service Fabric Container Elevation of Privilege Vulnerability
CVE-2023-21531NoNoImportant7.06.1
BitLocker Security Feature Bypass Vulnerability
CVE-2023-21563NoNoLess LikelyLess LikelyImportant6.85.9
Event Tracing for Windows Information Disclosure Vulnerability
CVE-2023-21753NoNoImportant5.54.8
CVE-2023-21536NoNoLess LikelyLess LikelyImportant4.74.1
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
CVE-2023-21547NoNoImportant7.56.5
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
CVE-2023-21551NoNoCritical7.86.8
CVE-2023-21561NoNoUnlikelyLess LikelyCritical8.87.7
CVE-2023-21730NoNoLess LikelyLess LikelyCritical7.86.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVE-2023-21724NoNoImportant7.86.8
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2023-21763NoNoImportant7.86.8
CVE-2023-21764NoNoImportant7.86.8
Microsoft Exchange Server Information Disclosure Vulnerability
CVE-2023-21761NoNoImportant7.56.5
Microsoft Exchange Server Spoofing Vulnerability
CVE-2023-21762NoNoImportant8.07.0
CVE-2023-21745NoNoImportant8.07.0
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
CVE-2023-21537NoNoImportant7.86.8
Microsoft ODBC Driver Remote Code Execution Vulnerability
CVE-2023-21732NoNoImportant8.87.7
Microsoft Office Remote Code Execution Vulnerability
CVE-2023-21734NoNoImportant7.86.8
CVE-2023-21735NoNoImportant7.86.8
Microsoft Office Visio Information Disclosure Vulnerability
CVE-2023-21741NoNoImportant7.16.2
Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2023-21736NoNoImportant7.86.8
CVE-2023-21737NoNoImportant7.86.8
CVE-2023-21738NoNoImportant7.16.2
Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2023-21742NoNoImportant8.87.7
CVE-2023-21744NoNoImportant8.87.7
Microsoft SharePoint Server Security Feature Bypass Vulnerability
CVE-2023-21743NoNoCritical5.34.6
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2023-21681NoNoImportant8.87.7
Remote Procedure Call Runtime Denial of Service Vulnerability
CVE-2023-21525NoNoLess LikelyLess LikelyImportant5.34.6
Visual Studio Code Remote Code Execution
CVE-2023-21779NoNoImportant7.36.4
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
CVE-2023-21674NoYesImportant8.88.2
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2023-21768NoNoImportant7.86.8
Windows Authentication Remote Code Execution Vulnerability
CVE-2023-21539NoNoLess LikelyLess LikelyImportant7.56.5
Windows Backup Service Elevation of Privilege Vulnerability
CVE-2023-21752NoNoMore LikelyLess LikelyImportant7.16.2
Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2023-21733NoNoLess LikelyLess LikelyImportant7.06.1
Windows Bluetooth Driver Elevation of Privilege Vulnerability
CVE-2023-21739NoNoImportant7.06.1
Windows Boot Manager Security Feature Bypass Vulnerability
CVE-2023-21560NoNoMore LikelyLess LikelyImportant6.65.8
Windows Credential Manager User Interface Elevation of Privilege Vulnerability
CVE-2023-21726NoNoMore LikelyMore LikelyImportant7.86.8
Windows Cryptographic Information Disclosure Vulnerability
CVE-2023-21540NoNoUnlikelyLess LikelyImportant5.54.8
CVE-2023-21550NoNoImportant5.54.8
CVE-2023-21559NoNoMore LikelyLess LikelyImportant5.54.8
Windows Error Reporting Service Elevation of Privilege Vulnerability
CVE-2023-21558NoNoLess LikelyLess LikelyImportant7.86.8
Windows GDI Elevation of Privilege Vulnerability
CVE-2023-21532NoNoImportant7.06.1
CVE-2023-21552NoNoImportant7.87.0
Windows Installer Elevation of Privilege Vulnerability
CVE-2023-21542NoNoImportant7.06.1
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
CVE-2023-21677NoNoImportant7.56.5
CVE-2023-21683NoNoImportant7.56.5
CVE-2023-21758NoNoLess LikelyLess LikelyImportant7.56.5
Windows Kernel Elevation of Privilege Vulnerability
CVE-2023-21747NoNoImportant7.86.8
CVE-2023-21748NoNoImportant7.86.8
CVE-2023-21749NoNoImportant7.86.8
CVE-2023-21750NoNoImportant7.16.2
CVE-2023-21754NoNoLess LikelyLess LikelyImportant7.86.8
CVE-2023-21755NoNoLess LikelyLess LikelyImportant7.86.8
CVE-2023-21772NoNoImportant7.86.8
CVE-2023-21773NoNoImportant7.86.8
CVE-2023-21774NoNoImportant7.86.8
CVE-2023-21675NoNoImportant7.86.8
Windows Kernel Information Disclosure Vulnerability
CVE-2023-21776NoNoImportant5.54.8
Windows Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability
CVE-2023-21757NoNoLess LikelyLess LikelyImportant7.56.5
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
CVE-2023-21546NoNoUnlikelyLess LikelyCritical8.17.1
CVE-2023-21543NoNoCritical8.17.1
CVE-2023-21555NoNoLess LikelyLess LikelyCritical8.17.1
CVE-2023-21556NoNoLess LikelyLess LikelyCritical8.17.1
CVE-2023-21679NoNoCritical8.17.1
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
CVE-2023-21557NoNoLess LikelyLess LikelyImportant7.56.5
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
CVE-2023-21676NoNoLess LikelyLess LikelyImportant8.87.7
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
CVE-2023-21524NoNoLess LikelyLess LikelyImportant7.86.8
Windows Local Session Manager (LSM) Elevation of Privilege Vulnerability
CVE-2023-21771NoNoImportant7.06.1
Windows Malicious Software Removal Tool Elevation of Privilege Vulnerability
CVE-2023-21725NoNoImportant6.35.5
Windows NTLM Elevation of Privilege Vulnerability
CVE-2023-21746NoNoLess LikelyLess LikelyImportant7.86.8
Windows Netlogon Denial of Service Vulnerability
CVE-2023-21728NoNoLess LikelyLess LikelyImportant7.56.5
Windows Overlay Filter Elevation of Privilege Vulnerability
CVE-2023-21767NoNoImportant7.86.8
Windows Overlay Filter Information Disclosure Vulnerability
CVE-2023-21766NoNoImportant4.74.1
Windows Point-to-Point Protocol (PPP) Information Disclosure Vulnerability
CVE-2023-21682NoNoImportant5.34.6
Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2023-21678NoNoLess LikelyLess LikelyImportant7.86.8
CVE-2023-21760NoNoImportant7.16.2
CVE-2023-21765NoNoImportant7.86.8
Windows SMB Witness Service Elevation of Privilege Vulnerability
CVE-2023-21549YesNoImportant8.87.7
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
CVE-2023-21535NoNoLess LikelyLess LikelyCritical8.17.1
CVE-2023-21548NoNoCritical8.17.1
Windows Smart Card Resource Management Server Security Feature Bypass Vulnerability
CVE-2023-21759NoNoImportant3.32.9
Windows Task Scheduler Elevation of Privilege Vulnerability
CVE-2023-21541NoNoLess LikelyMore LikelyImportant7.86.8
Windows Win32k Elevation of Privilege Vulnerability
CVE-2023-21680NoNoImportant7.86.8
Windows iSCSI Service Denial of Service Vulnerability
CVE-2023-21527NoNoLess LikelyLess LikelyImportant7.56.5

Sources:

https://isc.sans.edu/diary/Microsoft+January+2023+Patch+Tuesday/29420/?is=241c03a8cd019517889491c3d0e48cf26621d141f1b9f6561b554cf774f8a743