Microsoft’s Newest Replace Patches Two Zero-Day Flaws



Microsoft simply launched its Patch Tuesday replace for June, which addresses 66 safety vulnerabilities throughout Home windows and Microsoft techniques. Two of the issues are zero-days—one actively exploited, one publicly disclosed—together with 10 bugs which can be rated as essential.

As Bleeping Pc outlines, this month’s patch fixes 13 elevation-of-privilege flaws, three security-feature-bypass flaws, 25 remote-code-execution flaws, 17 information-disclosure flaws, six denial-of-service flaws, and two spoofing flaws. Eight of the remote-code-execution vulnerabilities are labeled “essential” together with two elevation-of-privilege flaws.

Zero-day flaws patched in June 2025

June’s Patch Tuesday fixes two zero-days, that are safety vulnerabilities which can be both actively exploited within the wild or publicly disclosed earlier than an official repair is launched to customers.

The lively exploit (CVE-2025-33053) is a remote-code-execution flaw in Microsoft Home windows Internet Distributed Authoring and Versioning, which might permit menace actors to execute arbitrary code on the affected system within the occasion {that a} consumer clicks on a “specifically crafted” WebDav URL. This vulnerability was found by Examine Level Analysis and exploited by a gaggle referred to as “Stealth Falcon.”

The publicly disclosed zero-day (CVE-2025-33073) is a Home windows SMB elevation-of-privilege flaw that may permit an attacker to realize SYSTEM privileges by executing a malicious script. Microsoft has not supplied further particulars, although it attributes the invention to a handful of researchers representing completely different cybersecurity groups.


What do you suppose to this point?

5 of the essential vulnerabilities patched this month are in Microsoft Workplace, together with Excel and SharePoint. The remaining points had been unfold throughout Energy Automate, Home windows Cryptographic Providers, Home windows KDC Proxy Service, Home windows Netlogon, and Home windows Distant Desktop Providers.

What Microsoft customers have to do now

Generally, safety updates for Microsoft and Home windows can be downloaded and put in mechanically in your gadget, however you possibly can make sure you’ve obtained the newest one by going to Begin > Settings > Home windows Replace and choosing Examine for Home windows updates.

Microsoft usually releases Patch Tuesday fixes on the second Tuesday of the month. Well timed updates are important to minimizing the danger that your gadget or system can be weak to exploits.



Leave a Reply

Your email address will not be published. Required fields are marked *

Back To Top