Microsoft patches critical Windows vulnerability exposed by Google

By Scorpus ยท 5 replies
Nov 8, 2016
  1. Microsoft wasn't happy last week when Google revealed a critical Windows vulnerability that had yet to be patched. The company claimed that Google's disclosure put customers "at potential risk," and was set to issue a patch come this month's Patch Tuesday.

    Well, Patch Tuesday has arrived, and Microsoft has issued an update that addresses the vulnerability. The security bulletin, rated as 'important', addresses multiple elevation of privilege vulnerabilities including the one exposed by Google last week.

    The vulnerability in question, which could be triggered via a win32k.sys system call, could allow an attacker to exit Windows 10's sandbox and gain administrator privileges. At the time of disclosure, Google claimed the "particularly serious" vulnerability was being actively exploited and urged users to both update Adobe Flash and Windows 10 as soon as possible.

    Google revealed details of the vulnerability to the public seven days after privately notifying Microsoft, as per their policy on actively exploited critical vulnerabilities.

    Patch Tuesday also includes a number of critical security patches that affect all versions of Windows, plus several other important patches and updates for both Internet Explorer and Edge.

  2. Greg S

    Greg S TechSpot Staff Posts: 833   +411

    Why is this even news at all?
    Skidmarksdeluxe likes this.
  3. Uncle Al

    Uncle Al TS Evangelist Posts: 2,794   +1,533

    Maybe they are showing they can do something that the Nation can't do with it's presidential candidates?!?!?! LOL
  4. Theinsanegamer

    Theinsanegamer TS Evangelist Posts: 633   +601

    MS sticking it to google, MS can patch a critical issue quicker then google can get an OS to consumers?
  5. cliffordcooley

    cliffordcooley TS Guardian Fighter Posts: 9,167   +3,261

    I would hope so!
    alabama man likes this.
  6. Skidmarksdeluxe

    Skidmarksdeluxe TS Evangelist Posts: 7,984   +2,874

    You're right. MS is so used to cleaning up their mess that it's become 2nd nature. And... getting an OS into the hands of the consumer should take a fair bit longer than just releasing a quick patch.
    alabama man likes this.

