Radio
Now Playing
Quickyla Radio โ€” Click to play
Open โ†’
3 min left
Back to News

Microsoft addresses critical vulnerabilities in September 8 Patch Tuesday update

Microsoft's September 8 Patch Tuesday addressed two "Important" vulnerabilities, CVE-2024-21874 and CVE-2024-21875, which were actively exploited by attackers to gain elevated SYSTEM rights on Windowโ€ฆ

Microsoft's record Patch Tuesday shows why severity can't decide what gets patched first
VentureBeat โ€” 5 October 2026
Text:
1 0 0

Microsoft released its Septemberโ€ฏ8 Patch Tuesday with two local elevationโ€‘ofโ€‘privilege flaws that attackers were already exploiting, and both were rated โ€œImportantโ€ rather than โ€œCritical.โ€ The vulnerabilities let a lowโ€‘privilege user or process gain SYSTEM rights on Windows machines. Microsoftโ€™s advisory urged immediate installation, warning that the bugs could let malware take full control of an infected host.

Patch Tuesday is the monthly cadence where Microsoft bundles security updates for its operating systems and applications. Historically, the companyโ€™s severity labelsโ€”Critical, Important, Moderate, Lowโ€”have guided administrators on which patches to prioritize. In this case, the two flaws, CVEโ€‘2024โ€‘21874 and CVEโ€‘2024โ€‘21875, affect the Windows kernel and the Win32k subsystem. Both were known to be weaponised in the wild before the bulletin, highlighting a gap between Microsoftโ€™s rating and realโ€‘world risk. Security experts have long argued that exploit activity, not just technical impact, should influence severity scores.

The CVEโ€‘2024โ€‘21874 bug allows an attacker with limited access to execute arbitrary code in kernel mode, while CVEโ€‘2024โ€‘21875 bypasses security checks in the graphics driver stack to elevate privileges. Together, they give a foothold that can be used to install ransomware, steal data, or move laterally across a network. Researchers from the cybersecurity community confirmed active exploitation in the wild, citing recent ransomware campaigns that leveraged these flaws. Microsoftโ€™s patches address the code paths directly, and the updates are being rolled out through Windows Update, WSUS, and Microsoft Endpoint Manager.

Security teams are now racing to deploy the fixes before attackers can expand their foothold. Experts advise testing the patches in a controlled environment, then applying them across all Windows 10, Windows 11, and supported server versions within 24โ€ฏhours. Microsoft says it will review its severityโ€‘rating methodology to better reflect active exploitation trends. For organizations, the episode underscores that โ€œImportantโ€ does not mean โ€œlow priorityโ€ when threat actors are already using the vulnerability. Prompt patching remains the most effective defense.

Read Full Story at VentureBeat โ†’
Advertisement
React:
Sources
Sponsored

More to Read

CNN poll shows 75% of Americans fear AI's impact on jobs, pโ€ฆ
๐Ÿ’ป Technology
CNN poll shows 75% of Americans fear AI's impact on jobs, privacy.
The Hill ยท 11 days ago
A new skyline of data centres is rising from the rolling plโ€ฆ
๐Ÿ’ป Technology
A new skyline of data centres is rising from the rolling plains of rural China
BBC Technology ยท 13 days ago
US embassy criticizes Australiaโ€™s algorithm opt-out laws asโ€ฆ
๐Ÿ’ป Technology
US embassy criticizes Australiaโ€™s algorithm opt-out laws as potential censorship
BBC Technology ยท 13 days ago
Giant caves beneath sinkhole reveal origin of mystery trencโ€ฆ
๐Ÿ”ฌ Science
Giant caves beneath sinkhole reveal origin of mystery trenches that score Australia's Nulโ€ฆ
Live Science ยท 13 days ago
How and why the UN General Assembly is gaining prominence
๐ŸŒ World News
How and why the UN General Assembly is gaining prominence
Al Jazeera ยท 12 days ago
UNGA81: Why has Africaโ€™s Security Council reform push remaiโ€ฆ
๐ŸŒ World News
UNGA81: Why has Africaโ€™s Security Council reform push remained unresolved?
Al Jazeera ยท 10 days ago
Full view