There are 3 vulnerabilities with a sign of exploitation in the wild:
Elevation of Privilege – Windows Common Log File System Driver (CVE-2022-37969). An attacker must already have access and the ability to run code on the target system. An attacker who successfully exploited this vulnerability could gain SYSTEM privileges. This vulnerability affects many versions of Windows, there are patches even for EOL versions. In addition to this vulnerability, there was a bunch of EoPs in Windows with no signs of exploitation in the wild, for example Elevation of Privilege – Windows Kernel (CVE-2022-37956, CVE-2022-37957, CVE-2022-37964)
Security Feature Bypass – Microsoft Edge (CVE-2022-2856, CVE-2022-3075). Edge vulnerabilities are actually Chromium vulnerabilities. This is the downside of using the same engine. Chrome vulnerabilities also affect Edge, Opera, Brave, Vivaldi, etc.
Full episode "Microsoft Patch Tuesday September 2022: CLFS Driver EoP, IP packet causes RCE, Windows DNS Server DoS, Spectre-BHB": https://avleonov.com/2022/09/24/micro...
#microsoft #patchtuesday