Security Patch
The latest Security Patch coverage — news, analysis, and updates from the WindowsNews.AI desk.
Patch Now: CUPS 2.4.15 Fixes Critical Flaw Allowing Denial of Service and Code Execution
OpenPrinting released an emergency security update for the Common UNIX Printing System (CUPS) in late November 2025, closing a vulnerability that could let attackers crash the print spooler or...
CVE-2025-59510: Critical Windows RRAS Vulnerability Requires Immediate Patching
Microsoft has disclosed a significant security vulnerability in Windows Routing and Remote Access Service (RRAS) that could allow local attackers to cause denial-of-service conditions on affected...
CVE-2025-62213: Critical Windows afd.sys Vulnerability Requires Immediate Patching
Microsoft has issued a critical security alert for CVE-2025-62213, a use-after-free vulnerability in the Windows Ancillary Function Driver for WinSock (afd.sys) that enables local privilege...
Dynamics 365 Field Service Spoofing Flaw: Patch Now to Prevent Automated Workflow Takeover
Microsoft has issued a security advisory for a spoofing vulnerability in Dynamics 365 Field Service (online) that could let attackers hijack automated business workflows by tricking users into taking...
Microsoft Urges Immediate Patch for Configuration Manager Flaw That Gives Attackers Full Control of Enterprise Management
Microsoft has released a security advisory for CVE-2025-47179, a high-severity elevation-of-privilege vulnerability in on-premises Microsoft Configuration Manager that an authorized local attacker...
CVE-2025-62216: Critical Office RCE Vulnerability - Patch Now
Microsoft has issued an urgent security advisory for CVE-2025-62216, a critical remote code execution vulnerability affecting multiple Microsoft Office applications that could allow attackers to take...
Linux Kernel CVE-2025-40033 Patch: Critical Fix for PRU Remoteproc Vulnerability
The Linux kernel development community has released a crucial security patch addressing CVE-2025-40033, a vulnerability affecting the PRU (Programmable Real-time Unit) remoteproc driver that could...
CVE-2025-40030: Linux kernel patch prevents pinctrl crashes with one-line NULL check fix.
The Linux kernel development community has addressed a significant security vulnerability in the pin control subsystem with a remarkably small but crucial patch for CVE-2025-40030. This defensive fix...
Linux Kernel BPF Verifier Patch Fixes Critical Security Vulnerability CVE-2025-40078
The Linux kernel development team has released a critical security patch addressing a vulnerability in the BPF verifier that could lead to kernel warnings and potential security issues when eBPF...
Microsoft Issues Emergency Patch for Critical WSUS RCE Flaw CVE-2025-59287
Microsoft has taken the extraordinary step of releasing an out-of-band emergency security update to address a critical remote code execution vulnerability in Windows Server Update Services (WSUS),...
CVE-2025-59500: Azure Notification Service Vulnerability Requires Cautious Patching
A newly discovered elevation-of-privilege vulnerability in Azure's notification infrastructure, tracked as CVE-2025-59500, has sent security teams scrambling to understand the implications and...
CVE-2025-55315: Critical Kestrel HTTP Request Smuggling Vulnerability Patched
Microsoft has issued an emergency security update addressing a critical vulnerability in ASP.NET Core's Kestrel web server that could allow attackers to bypass security controls and smuggle malicious...