April may fool your systems with Vulnerabilities, but you can stay foolproof by patching your systems regularly. This month’s Patch Tuesday delivers 134 security fixes, including one actively exploited zero-day and 11 critical vulnerabilities.
Let's dive into what's new in this year's fourth Patch Tuesday. Also, register for our free Patch Tuesday webinar and listen to our experts break down Patch Tuesday updates in detail.
Fun fact: While Microsoft has fixed 134 bugs, this doesn’t include 13 Microsoft Edge vulnerabilities fixed earlier this month—because even browsers need a little spring cleaning.
Security updates have been released for critical Microsoft products, including:
To view the complete list of affected products, features, and roles, please refer to the MSRC Release Notes
Here’s how this month’s vulnerabilities are distributed:
Bottom line? Remote Code Execution (RCE) is the biggest concern this month, making up all 11 of the critical vulnerabilities.
This zero-day vulnerability allows local attackers to gain SYSTEM privileges on targeted devices. That’s as high as it gets—meaning an attacker can take full control of the system.
Microsoft has released patches for Windows 11 and Windows Server, but Windows 10 users will have to wait a little longer for their fix. While we don’t have details on how attackers are exploiting this flaw, Microsoft attributes its discovery to the Microsoft Threat Intelligence Center.
If you are on Windows 10, keep an eye out for updates and apply them as soon as they drop.
Update: The security updates for Windows 10 for 32-bit Systems and Windows 10 for x64-based Systems are now available.
It’s not just Microsoft—other vendors are tightening security this month too:
Takeaway: Even if you’re patched against Microsoft vulnerabilities, don’t forget third-party software—it’s just as critical!
134 Vulnerabilities is no small number and adding to the fact there is one actively exploited zero day in the loose, the avalanche doesn’t wait for you to move. Patch your systems promptly before it gains the momentum. With Endpoint Central, Patch Manager Plus and Vulnerability Manager Plus, you can streamline the entire patch management process— from testing patches to deploying them— effectively mitigating vulnerabilities. You can also tailor patch tasks according to your enterprise needs.
Register now for our free Patch Tuesday webinar to gain more insights about these Patch Tuesday Updates. Our experts will not only offer in-depth analysis about the updates but also provide best practice to manage Patches in your network. You can also ask our experts all your patch-related questions and get live answers in the webinar.