{"id":1203,"date":"2025-04-09T19:18:24","date_gmt":"2025-04-09T19:18:24","guid":{"rendered":"https:\/\/techtrendfeed.com\/?p=1203"},"modified":"2025-04-09T19:18:24","modified_gmt":"2025-04-09T19:18:24","slug":"patch-tuesday-april-2025-version-krebs-on-safety","status":"publish","type":"post","link":"https:\/\/techtrendfeed.com\/?p=1203","title":{"rendered":"Patch Tuesday, April 2025 Version \u2013 Krebs on Safety"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p><strong>Microsoft<\/strong> right now launched updates to plug no less than 121 safety holes in its <strong>Home windows<\/strong> working programs and software program, together with one vulnerability that&#8217;s already being exploited within the wild. Eleven of these flaws earned Microsoft\u2019s most-dire \u201cimportant\u201d score, which means malware or malcontents might exploit them with little to no interplay from Home windows customers.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter  wp-image-56287\" src=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2021\/07\/windupate.png\" alt=\"\" width=\"750\" height=\"528\" srcset=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2021\/07\/windupate.png 841w, https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2021\/07\/windupate-768x541.png 768w, https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2021\/07\/windupate-782x550.png 782w, https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2021\/07\/windupate-100x70.png 100w\" sizes=\"auto, (max-width: 750px) 100vw, 750px\"\/><\/p>\n<p>The zero-day flaw already seeing exploitation is <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2025-29824\" target=\"_blank\" rel=\"noopener\">CVE-2025-29824<\/a>, an area elevation of privilege bug within the Home windows <strong>Widespread Log File System<\/strong> (CLFS) driver.\u00a0 Microsoft charges it as \u201cnecessary,\u201d however as <strong>Chris Goettl<\/strong> from <strong>Ivanti<\/strong> factors out, risk-based prioritization warrants treating it as important.<\/p>\n<p>This CLFS element of Home windows isn&#8217;t any stranger to Patch Tuesday: In response to Tenable\u2019s <strong>Satnam Narang<\/strong>, since 2022 Microsoft has patched 32 CLFS vulnerabilities \u2014 averaging 10 per yr \u2014 with six of them exploited within the wild. The <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2024-49138\" target=\"_blank\" rel=\"noopener\">final CLFS zero-day<\/a> was <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/krebsonsecurity.com\/2024\/12\/patch-tuesday-december-2024-edition\/\" target=\"_blank\" rel=\"noopener\">patched in December 2024<\/a>.<\/p>\n<p>Narang notes that whereas flaws permitting attackers to put in arbitrary code are constantly high general Patch Tuesday options, the information is reversed for zero-day exploitation.<\/p>\n<p>\u201cFor the previous two years, elevation of privilege flaws have led the pack and, to this point in 2025, account for over half of all zero-days exploited,\u201d Narang wrote.<span id=\"more-70933\"\/><\/p>\n<p>Rapid7\u2019s <strong>Adam Barnett<\/strong> warns that any Home windows defenders liable for an <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/en.wikipedia.org\/wiki\/Lightweight_Directory_Access_Protocol\" target=\"_blank\" rel=\"noopener\">LDAP server<\/a> \u2014 which suggests virtually any group with a non-trivial Microsoft footprint \u2014 ought to add <span class=\"il\">patching<\/span> for the important flaw <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2025-26663\" target=\"_blank\" rel=\"noopener\" data-saferedirecturl=\"https:\/\/www.google.com\/url?q=https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2025-26663&amp;source=gmail&amp;ust=1744231709116000&amp;usg=AOvVaw3moAqrbzoHqolAikc6dYLo\">CVE-2025-26663<\/a>\u00a0to their to-do checklist.<\/p>\n<p>\u201cWith no privileges required, no want for consumer interplay, and code execution presumably within the context of the LDAP server itself, profitable exploitation could be a pretty shortcut to any attacker,\u201d Barnett mentioned. \u201cAnybody questioning if right now is a re-run of December 2024 <span class=\"il\">Patch<\/span>\u00a0<span class=\"il\">Tuesday<\/span>\u00a0can take some small solace in the truth that the worst of the\u00a0<a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.rapid7.com\/blog\/post\/2024\/12\/10\/patch-tuesday-december-2024\/#ldap-critical-rce\" target=\"_blank\" rel=\"noopener\" data-saferedirecturl=\"https:\/\/www.google.com\/url?q=https:\/\/www.rapid7.com\/blog\/post\/2024\/12\/10\/patch-tuesday-december-2024\/%23ldap-critical-rce&amp;source=gmail&amp;ust=1744231709116000&amp;usg=AOvVaw2C4e66FL53_LrZBhrndLUw\">trio of LDAP important RCEs printed on the finish of final yr<\/a>\u00a0was seemingly simpler to use than right now\u2019s instance, since right now\u2019s\u00a0CVE-2025-26663 requires that an attacker win a race situation. Regardless of that, Microsoft nonetheless expects that exploitation is extra seemingly.\u201d<\/p>\n<p>Among the many important updates Microsoft patched this month are distant code execution flaws in <strong>Home windows Distant Desktop <\/strong>companies\u00a0(RDP), together with <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2025-26671\" target=\"_blank\" rel=\"noopener\">CVE-2025-26671<\/a>, <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2025-27480\" target=\"_blank\" rel=\"noopener\">CVE-2025-27480<\/a> and <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2025-27482\" target=\"_blank\" rel=\"noopener\">CVE-2025-27482<\/a>; solely the latter two are rated \u201cimportant,\u201d and Microsoft marked each of them as \u201cExploitation Extra Seemingly.\u201d<\/p>\n<p>Maybe essentially the most widespread vulnerabilities fastened this month had been in net browsers. <strong>Google Chrome<\/strong> <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/chromereleases.googleblog.com\/\" target=\"_blank\" rel=\"noopener\">up to date<\/a> to repair 13 flaws this week, and <strong>Mozilla Firefox <\/strong>fastened <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.mozilla.org\/en-US\/security\/advisories\/mfsa2025-20\/\" target=\"_blank\" rel=\"noopener\">eight bugs<\/a>, with presumably extra updates coming later this week for <strong>Microsoft<\/strong> <strong>Edge<\/strong>.<\/p>\n<p>Because it tends to do on Patch Tuesdays, <strong>Adobe<\/strong> has <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/helpx.adobe.com\/security\/security-bulletin.html\" target=\"_blank\" rel=\"noopener\">launched 12 updates<\/a> resolving 54 safety holes throughout a spread of merchandise, together with <strong>ColdFusion<\/strong>, <strong>Adobe Commerce<\/strong>, <strong>Expertise Supervisor Varieties<\/strong>, <strong>After Results<\/strong>, <strong>Media Encoder<\/strong>, <strong>Bridge<\/strong>,\u00a0<strong>Premiere Professional<\/strong>, <strong>Photoshop<\/strong>, <strong>Animate<\/strong>, <strong>AEM Screens<\/strong>, and <strong>FrameMaker<\/strong>.<\/p>\n<p><strong>Apple<\/strong> customers could must patch as nicely. On March 31, Apple launched an enormous safety replace (greater than three gigabytes in dimension) to repair points in a spread of their merchandise, together with <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/apple-backports-zero-day-patches-to-older-iphones-and-macs\/\" target=\"_blank\" rel=\"noopener\">no less than one zero-day flaw<\/a>.<\/p>\n<p>And in case you missed it, on March 31, 2025 <strong>Apple<\/strong> launched <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/support.apple.com\/en-us\/100100?is=1ef7934f6635b02395adcab09a0c1b24bf0ea745b648bfe87189de8aadc7300b\" target=\"_blank\" rel=\"noopener\">a slightly giant batch of safety updates<\/a> for a variety of their merchandise, from <strong>macOS<\/strong> to the<strong> iOS<\/strong> working programs on <strong>iPhones<\/strong> and <strong>iPads<\/strong>.<\/p>\n<p>Earlier right now, Microsoft included a word saying <strong>Home windows 10<\/strong> safety updates weren\u2019t obtainable however could be launched as quickly as potential. It seems from searching <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.askwoody.com\/2025\/april-2025-updates-out\/\" target=\"_blank\" rel=\"noopener\">askwoody.com<\/a> that this snafu has since been rectified. Both manner, when you run into issues making use of any of those updates please depart a word about it within the feedback under, as a result of the possibilities are good that another person had the identical drawback.<\/p>\n<p>As ever, please contemplate backing up your information and or units previous to updating, which makes it far easier to undo a software program replace gone awry. For extra granular particulars on right now\u2019s Patch Tuesday, try the <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/isc.sans.edu\/forums\/diary\/Microsoft%20April%202025%20Patch%20Tuesday\/31838\/\">SANS Web Storm Heart\u2019s roundup<\/a>. Microsoft\u2019s replace information for April 2025 <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/msrc.microsoft.com\/update-guide\/releaseNote\/2025-Apr\" target=\"_blank\" rel=\"noopener\">is right here<\/a>.<\/p>\n<p>For extra particulars on Patch Tuesday, try the write-ups from <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.action1.com\/patch-tuesday\/patch-tuesday-april-2025\/?vyj\" target=\"_blank\" rel=\"noopener\">Action1<\/a> and\u00a0<a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.automox.com\/blog\/patch-tuesday-april-2025\" target=\"_blank\" rel=\"noopener\">Automox<\/a>.<\/p>\n<\/p><\/div>\n\n","protected":false},"excerpt":{"rendered":"<p>Microsoft right now launched updates to plug no less than 121 safety holes in its Home windows working programs and software program, together with one vulnerability that&#8217;s already being exploited within the wild. Eleven of these flaws earned Microsoft\u2019s most-dire \u201cimportant\u201d score, which means malware or malcontents might exploit them with little to no interplay [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":1205,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[1038,406,262,1077,211,1078],"class_list":["post-1203","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-april","tag-edition","tag-krebs","tag-patch","tag-security","tag-tuesday"],"_links":{"self":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/1203","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1203"}],"version-history":[{"count":1,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/1203\/revisions"}],"predecessor-version":[{"id":1204,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/1203\/revisions\/1204"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/media\/1205"}],"wp:attachment":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1203"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1203"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1203"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}<!-- This website is optimized by Airlift. Learn more: https://airlift.net. Template:. Learn more: https://airlift.net. Template: 69d9690a190636c2e0989534. Config Timestamp: 2026-04-10 21:18:02 UTC, Cached Timestamp: 2026-06-15 08:26:31 UTC -->