Microsoft has released its October 2023 Patch Tuesday security updates to fix multiple vulnerabilities across its products, including three reported zero-day vulnerabilities (CVE-2023-36563, CVE-2023-41763, and CVE-2023-44487) that are currently being exploited in the wild.

Based on the official release notes from Microsoft, there are a total of 103 Microsoft CVEs and 2 non-Microsoft CVEs.

____________________________

A. List of the Vulnerabilities

Kindly check the link below for the lists of Microsoft CVEs and non-Microsoft CVEs.

  • https://msrc.microsoft.com/update-guide/releaseNote/2023-oct


B. Actions to be taken

CERT-PH recommends the following actions be taken:

  • Kindly review and apply the necessary updates to mitigate future threats.
  • For additional information, kindly refer to the official report
    • https://msrc.microsoft.com/update-guide/releaseNote/2023-oct
    • https://msrc.microsoft.com/update-guide/vulnerability