Microsoft addresses critical security flaws in final 2024 update
Microsoft released its final security updates for 2024, addressing 71 vulnerabilities across its applications and services. Among these, 16 are classified as critical, with one flaw already being exploited in attacks. This year saw a total of 1,020 vulnerabilities patched, marking it as the second worst year for Microsoft. The updates primarily target Windows versions 10, 11, and Server, with 59 vulnerabilities fixed in these systems. Users of Windows 7 and 8.1 are advised to upgrade to continue receiving security updates. The most urgent issue, CVE-2024-49138, allows attackers to gain system authorization. Additionally, Microsoft patched eight vulnerabilities in its Office products, including three in Excel and Access. The updates also addressed a new AI-related vulnerability, CVE-2024-49063, highlighting emerging security concerns in artificial intelligence. The next round of updates is scheduled for January 14, 2025.