Microsoft November 2023 Patch – 5 zero-days, 58 flaws

Microsoft has released its November 2023 Patch Tuesday updates, addressing a total of 58 flaws, including five zero-day vulnerabilities. Among these, 14 remote code execution bugs were fixed, with only one rated as critical.

The critical flaws resolved in this release encompass an Azure information disclosure bug, a remote code execution issue in Windows Internet Connection Sharing (ICS), and a Hyper-V escape flaw allowing the execution of programs on the host with SYSTEM privileges.

The breakdown of vulnerabilities is as follows:

  • 16 Elevation of Privilege Vulnerabilities
  • 6 Security Feature Bypass Vulnerabilities
  • 15 Remote Code Execution Vulnerabilities
  • 6 Information Disclosure Vulnerabilities
  • 5 Denial of Service Vulnerabilities
  • 11 Spoofing Vulnerabilities

It’s important to note that the total count of 58 flaws excludes 5 Mariner security updates and 20 Microsoft Edge security updates released earlier this month. Stay informed and consider updating your systems to enhance security and protect against potential vulnerabilities.

https://www.bleepingcomputer.com/news/microsoft/microsoft-november-2023-patch-tuesday-fixes-5-zero-days-58-flaws/?fbclid=IwAR0NHgnlyHnA34rX0-KCe5_1e9piWxHt4YorD5ZKdngcQYvXUgRsNgFE3mI

Get In Touch

Share On Social Media

Other Recent Blog Articles

The Voice on the Phone Isn’t Who You Think It Is: AI Scams Are Coming for Portland Small Businesses

July 7, 2026

A few years ago, “phishing email” was the scariest phrase in small business IT. Bad spelling, a sketchy link, a fake invoice from “Microsoft Support.” Most of us got pretty…

Your Cybersecurity Is Only as Strong as Your Weakest Vendor

June 25, 2026

The Nintendo TinyPulse Breach Is a Wake-Up Call for Every Business Nintendo is one of the most recognized brands on the planet. They guard their intellectual property fiercely, have weathered…

Fake IT Workers Are Showing Up at Offices — And They’re After Your Data

June 10, 2026

Cybercrime has never been more brazen. Ransomware gangs have long relied on phishing emails and malicious software to compromise businesses — but a group known as the Silent Ransom Group has taken…