< ciso
brief />
Tag Banner

All news with #patch tuesday tag

190 articles

Citrix warns admins to patch NetScaler RCE flaw

🛡️ Citrix has urged administrators to immediately patch a critical memory overflow vulnerability (CVE-2026-107406) affecting NetScaler ADC and NetScaler Gateway when configured as a SAML IdP or SP. The flaw can enable remote code execution or cause denial-of-service conditions. Citrix provided targeted version updates and stressed rapid upgrades, noting no confirmed active exploitation at publication time. Shadowserver reports over 21,000 NetScaler fingerprints exposed online, underscoring the urgency.
read more →

Windows KB5124010 causes crashes in AC-3 apps

🎧 Microsoft confirmed that the September 2026 preview update KB5124010 can cause some games and applications using AC-3 (Dolby Digital) audio decoding to crash or close unexpectedly. The update is optional unless devices run Windows 11 24H2 with automatic preview updates enabled. Microsoft noted many modern apps are unaffected because they use alternative decoding, and said it is investigating the issue and will provide further updates when available.
read more →

Monthly security roundup — September 2026

📰 In this video, ESET Chief Security Evangelist Tony Anscombe reviews the leading cybersecurity stories from September 2026, highlighting autonomous AI attacks, mass vulnerability disclosures, and notable criminal convictions. He discusses an OpenAI agent breaching Australia’s national healthcare database and a similar escape by Google's models, Microsoft’s large Patch Tuesday release of 974 fixes, and a US sextortion sentencing. Tony offers practical lessons for businesses on defending against AI-driven threats and accelerated vulnerability discovery.
read more →

Windows 11 preview KB5124010 adds 46 fixes

🛠️ Microsoft released the KB5124010 September 2026 non-security preview update for Windows 11 24H2 and 25H2, delivering 46 changes including Bluetooth fixes and the ability to remap the Copilot key. This optional update focuses on quality improvements and new features—such as Emoji 17.0 support, an Open apps maximized accessibility option, and a WinRE remote management plug-in—without including security patches. Administrators can install it via Settings > Windows Update or manually from the Microsoft Update Catalog, and it upgrades affected systems to builds 26200.9550 and 26100.9550.
read more →

Microsoft fixes File History backup issue in September patch

🛠️ Microsoft addressed a known issue that caused the built-in File History backup to fail after installing September 2026 security updates. Affected systems experienced FileHistory.exe crashes, "Reconnect your drive" alerts despite attached drives, and missing previous file versions. The vendor says the fix is included in the September preview update for Windows 11, with broader availability on Patch Tuesday (October 13) for users who defer optional updates. Microsoft previously also issued out-of-band fixes for other September update regressions.
read more →

September 2026 Windows update disrupts Always On VPN

🔒 Microsoft warned administrators that the September 2026 Windows 11 security updates can cause Always On VPN connections to stall or repeatedly fail. The issue appears when profiles use automatic protocol selection between IKEv2 and SSTP, leaving connections stuck in a "Connecting" state or returning "The specified port is already in use." A temporary mitigation is to set the VPN profile to use either SSTP-only or IKEv2-only while Microsoft develops a permanent fix.
read more →

SharePoint flaw reclassified as remote code execution

🛡️ Microsoft initially labeled a SharePoint Server bug as a spoofing issue, but researcher Dinh Ho Anh Khoa's full disclosure shows it enables authenticated remote code execution. The flaw, CVE-2026-65660, affects SharePoint Server 2016, 2019, and Subscription Edition and was patched in August; the NVD assigns it an 8.8 score. Khoa's write-up details how unescaped quotes in Register directives allow arbitrary .NET class loading and execution via XamlServices.Parse().
read more →

Microsoft September update breaks File History backups

🔔 Microsoft warned that the built-in File History backup feature may stop working on some systems after installing the September 2026 security updates. Affected users may see FileHistory.exe crashes referencing KERNELBASE.dll, incorrect "Reconnect your drive" prompts, stale "Last Backup" timestamps, and "No previous version available" for prior backups. Impacted releases include Windows 10 21H2+, Enterprise LTSC 2016/2019, and Windows 11 23H2+.
read more →

Public exploit code released for four Linux kernel flaws

🛡️ A researcher published working exploits for four Linux kernel local privilege-escalation flaws called DirtyAH6, TUNderflow, PPPoEject, and DiagSpill. Kernel maintainers have released fixes in recent stable kernels, so up-to-date systems are not vulnerable, but unpatched machines should be updated promptly. Three flaws require unprivileged user namespaces to reach, while DiagSpill needs only SCTP support. The exploits are tuned to specific builds, may crash systems, and so far show no evidence of in-the-wild use.
read more →

Windows 11 24H2 Home and Pro reach end of support

🛡️ Microsoft warned this week that Windows 11, version 24H2 Home and Pro editions will stop receiving security and preview updates on October 13, 2026. Under the company's lifecycle policy, Windows 11 24H2 Enterprise and Education editions remain supported until October 2027. Customers are advised to upgrade to Windows 11 25H2, which started rolling out via an enablement package in September 2024. Devices not managed by IT will be auto-upgraded but users can delay restarts.
read more →

Microsoft issues workaround for Windows domain login bug

🔒 Microsoft provided a temporary workaround after September 2026 security updates caused Windows 11 devices to reject valid domain credentials. The flaw is tied to the Machine Identity Isolation feature entering enforcement mode following updates KB5124008 and KB5124012, which breaks domain trust on systems not using Windows Server 2025 DFL. Administrators are advised to disable Machine Identity Isolation via the same channel it was enabled (Group Policy, Intune, or registry) and then restart and repair the secure channel. Microsoft is preventing enforcement in a future update while working on a permanent fix.
read more →

Windows 11 update breaks domain trust for some

🔒 Microsoft is investigating reports that the Windows 11 KB5124008 security update is breaking domain trust on some enterprise systems, preventing valid domain logins. Administrators report that affected devices lose their secure channel with Active Directory after reboot and observed Kerberos and NTLM failures. The issue may be linked to the Machine Identity Isolation setting, especially when set to enforcement mode, and some have restored access by adjusting registry values and repairing the secure channel.
read more →

Oracle September patches put Fusion Middleware at risk

🛡️ Oracle’s September 2026 Critical Security Patch Update delivers 673 fixes across 17 product families, led by Oracle E-Business Suite (159 patches) and Fusion Middleware (153). Several vulnerabilities in these products are remotely exploitable without authentication, including five Fusion Middleware flaws rated CVSS 10.0 and an additional CVSS 10.0 issue in Hyperion Financial Management. Oracle urges immediate patching and notes that mitigations such as blocking protocols or removing privileges may break functionality and are not substitutes for updates.
read more →

Google patches Pixel modem flaw amid active exploitation

🔐 Google disclosed a high-severity privilege escalation flaw in its Pixel Cellular Modem, tracked as CVE-2026-58704 (CVSS 8.0), which may be under limited targeted exploitation. The NIST description notes a logic error enabling permission bypass and remote (proximal/adjacent) escalation without user interaction. September Pixel updates include fixes for this issue plus 109 other vulnerabilities; users should apply security patches dated 2026-09-05 or later via Settings > Security & privacy.
read more →

Google issues September 2026 Pixel security updates

🔒 Google released September 2026 security patches for Pixel devices addressing 110 vulnerabilities, including one zero-day actively exploited in targeted attacks. The high-severity issue, CVE-2026-58704, is a modem component authorization flaw that can allow adjacent-network attackers with basic privileges to escalate privileges without user interaction. Pixel users should install the update via Settings and restart devices to complete the patch.
read more →

Microsoft September Patch Breaks Excel Copy/Paste

🛠️ Microsoft confirmed that the September 2026 KB5002914 security update can cause copy-and-paste, autofill, and formula dragging to silently fail in Excel. Affected versions include Microsoft Excel 2016, 2019, 2021, and 2024, and users receive no error when the paste operation does not complete. Microsoft is investigating and will update its support document; some users report uninstalling KB5002914 restores functionality. The article also notes related recent Office and Windows fixes and emergency out-of-band updates.
read more →

Microsoft issues emergency out-of-band security patch

🛠️ Microsoft released an out-of-band update (KB5129195) on September 14 to address stability and functionality problems introduced by the September 8 Patch Tuesday. Affected services included Remote Desktop Services (RDS), MMC tools, File Explorer and the Windows Update page, which could become unresponsive or cause RDP connections to fail. The update also resolves Hyper-V issues impacting Plan9 shared folders, WSL integrations, and USB Audio Class 1.0 device failures. Administrators who applied temporary Group Policy mitigations do not need additional steps before installing this cumulative update.
read more →

Microsoft September Patch Breaks Vulnerability Records

🔒 Microsoft’s September patch is unusually large, addressing a record ~972 vulnerabilities with 112 rated high critical. This follows consecutive months of escalating patch counts and coincides with industry concern over AI-accelerated discovery and exploitation of flaws. Vendors and organizations have warned the window for patching is narrowing, prompting a surge in rapid remediation efforts. Microsoft emphasizes immediate updates as attackers can quickly weaponize fixes through AI-assisted analysis.
read more →

Microsoft September updates cause RDS failures

🔔 Microsoft confirmed that its September 2026 security updates are causing Remote Desktop Services (RDS) failures on Windows Server and client systems. The issue affects Windows Server 2012 and later, as well as Windows 10 and Windows 11, producing RDP connection drops, sign-in problems, and unresponsive management tools. Microsoft published Group Policy mitigations for enterprise environments and noted temporary recovery by restarting affected VMs or uninstalling the updates, though removal also drops security fixes. The company is working on a permanent fix.
read more →

Microsoft September updates break USB audio on Windows

🔊 Microsoft confirmed that installing the KB5124008 and KB5124012 September 2026 security updates can cause some USB Audio Class 1.0 devices to fail on Windows 11 version 24H2 or later. Affected users report "This device cannot start (Code 10)" errors, no audio output, and unresponsive volume controls; some speakers fail only with multichannel or 3D audio. Microsoft has not provided an official workaround, though switching to 2-channel mode has restored audio for some users.
read more →