{"id":8610,"date":"2021-08-13T05:05:29","date_gmt":"2021-08-13T12:05:29","guid":{"rendered":"https:\/\/webdev.securin.xyz\/?post_type=patch_watch&p=8610"},"modified":"2023-03-03T14:29:07","modified_gmt":"2023-03-03T21:29:07","slug":"july-2021-patch-watch-digest","status":"publish","type":"patch_watch","link":"https:\/\/webdev.securin.xyz\/patch_watch\/july-2021-patch-watch-digest\/","title":{"rendered":"July 2021: Patch Watch Digest"},"content":{"rendered":"
38 vendors released security patches for 1877 vulnerabilities, including 231 CVEs with known exploits.<\/a><\/p>\n<\/li>\n 110 vulnerabilities that got patched in July were red-flagged by CISA.<\/a><\/p>\n<\/li>\n 813 old vulnerabilities have been patched.<\/a><\/p>\n<\/li>\n Microsoft fixed 117 bugs, including 9 zero days.<\/a><\/p>\n<\/li>\n Oracle rolled out 342 security patches in July.<\/a><\/p>\n<\/li>\n<\/ul>\n We have 231 vulnerabilities that are known exploits. Here is our analysis \u2013<\/p>\n 4 CVEs are associated with Maze Ransomware, APT 1, and 9 Malwares (OceanSalt, Auriga, Bangat, BISCUIT, MAPIGET, TARSIP, SEASALT,\u00a0 KURTON, and\u00a0 HELAUTO).<\/p>\n<\/li>\n 40 CVEs are classified as Remote Code Execution.<\/p>\n<\/li>\n 28 CVEs have Privilege Escalation capabilities.<\/p>\n<\/li>\n 40 CVEs with Buffer Overflow.<\/p>\n<\/li>\n 36 CVEs are linked to Denial of Service.<\/p>\n<\/li>\n 87 CVEs fall into other categories.<\/p>\n<\/li>\n Of these 231 CVEs, seven are alerted by CISA.<\/p>\n<\/li>\n 29 CVEs are rated critical and 73 are of high severity.<\/p>\n<\/li>\n<\/ul>\n <\/p>\n Security updates for 813 old vulnerabilities (ranging from 2008 to 2020) have been released.<\/p>\n 7 CVEs are associated with Maze Ransomware, APT 1, and 9 Malwares (OceanSalt, Auriga, Bangat, BISCUIT, MAPIGET, TARSIP, SEASALT,\u00a0 KURTON, and\u00a0 HELAUTO).<\/p>\n<\/li>\n 156 CVEs have publicly known exploit code.<\/p>\n<\/li>\n 18 CVEs are Remote Code Execution bugs.<\/p>\n<\/li>\n 18 CVEs are classified as Privilege Escalation.<\/p>\n<\/li>\n 35 CVEs have been alerted by CISA.<\/p>\n<\/li>\n 115 CVEs are rated critical and 309 are of high severity.<\/p>\n<\/li>\n<\/ul>\n <\/p>\n CISA has issued alerts for 110 vulnerabilities, including 14 publicly known exploits.<\/p>\n 2 CVEs are associated with Maze Ransomware, APT 1, and 9 Malwares (OceanSalt, Auriga, Bangat, BISCUIT, MAPIGET, TARSIP, SEASALT,\u00a0 KURTON, and\u00a0 HELAUTO).<\/p>\n<\/li>\n 4 CVEs are classified as Remote Code Execution bugs.<\/p>\n<\/li>\n 3 CVEs with Privilege Escalation.<\/p>\n<\/li>\n 14 CVEs are rated critical and 80 are of high severity.<\/p>\n<\/li>\n<\/ul>\n <\/p>\n Oracle plugged 342 security vulnerabilities in July.<\/p>\n 57 CVEs have publicly known exploits.<\/p>\n<\/li>\n 49 CVEs are rated critical.<\/p>\n<\/li>\n 16 CVEs have been alerted by CISA.<\/p>\n<\/li>\n<\/ul>\n <\/p>\n Check out our Oracle Critical Patch Update edition here.<\/a><\/p>\n Microsoft fixed 117 security vulnerabilities, including nine zero-days.<\/p>\n 43 CVEs classified as RCE bugs.<\/p>\n<\/li>\n 1 CVE is alerted by CISA.<\/p>\n<\/li>\n 13 are of high severity.<\/p>\n<\/li>\n<\/ul>\n <\/p>\n Check out our Microsoft patch watch edition here.<\/a><\/p>\n \n<\/a>Weaponized Vulnerabilities<\/strong><\/h2>\n
\n
<\/a>Old Vulnerabilities<\/strong><\/h2>\n
\n
<\/a>CISA Alerts<\/strong><\/h2>\n
\n
<\/a>Oracle July Critical Patch Update 2021<\/strong><\/h2>\n
\n
<\/a>Microsoft July Patches 2021<\/strong><\/h2>\n
\n