Close Menu
TechUpdateAlert

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    My Health Anxiety Means I Won’t Use Apple’s or Samsung’s Smartwatches. Here’s Why

    December 22, 2025

    You can now buy the OnePlus 15 in the US and score free earbuds if you hurry

    December 22, 2025

    Today’s NYT Connections: Sports Edition Hints, Answers for Dec. 22 #455

    December 22, 2025
    Facebook X (Twitter) Instagram
    Trending
    • My Health Anxiety Means I Won’t Use Apple’s or Samsung’s Smartwatches. Here’s Why
    • You can now buy the OnePlus 15 in the US and score free earbuds if you hurry
    • Today’s NYT Connections: Sports Edition Hints, Answers for Dec. 22 #455
    • Android might finally stop making you tap twice for Wi-Fi
    • Today’s NYT Mini Crossword Answers for Dec. 22
    • Waymo’s robotaxis didn’t know what to do when a city’s traffic lights failed
    • Today’s NYT Wordle Hints, Answer and Help for Dec. 22 #1647
    • You Asked: OLED Sunlight, VHS on 4K TVs, and HDMI Control Issues
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechUpdateAlertTechUpdateAlert
    • Home
    • Gaming
    • Laptops
    • Mobile
    • Software
    • Reviews
    • AI & Tech
    • Gadgets
    • How-To
    TechUpdateAlert
    Home»Gaming»Big August update fixes dozens of security flaws in Windows and Office
    Gaming

    Big August update fixes dozens of security flaws in Windows and Office

    techupdateadminBy techupdateadminSeptember 11, 2025No Comments4 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Windows Update screenshot
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Yesterday was Patch Tuesday for September, and Microsoft provided security updates that address 80 new vulnerabilities.

    Microsoft categorized eight of the vulnerabilities in Windows and Office as critical, but none of them have been exploited for attacks in the wild yet. Sadly, Microsoft provides sparse details on the security vulnerabilities for self-searching in the Security Update Guide.

    The next Patch Tuesday is scheduled for October 14th, 2025. That’s also the long-awaited date of Windows 10’s end of support. Don’t wait until it’s too late! Learn what your options are going forward.

    Critical Windows vulnerabilities

    A large number of the vulnerabilities—58 this time—are spread across the various Windows versions for which Microsoft still offers security updates: Windows 10, Windows 11, and Windows Server.

    Windows 7 and 8.1 are no longer getting security updates, so they remain as vulnerable as ever. If you’re still on these versions and your system requirements allow for it, you should switch to Windows 11 as soon as possible to continue receiving security updates.

    Microsoft has categorized 7 security vulnerabilities in Windows as critical, including four remote code execution (RCE) vulnerabilities. Five of these critical vulnerabilities are in graphics components. It can be enough to open an infected image file (say, loaded from a website) to execute malicious code. The CVE-2025-53799 data leak vulnerability stands out because its exploitation can only expose a small part of working memory. It remains unclear why this one’s considered critical.

    Microsoft has also fixed 5 security vulnerabilities in Hyper-V, one of which (CVE-2025-55224) is categorized as critical. The others are elevation of privilege (EOP) vulnerabilities. CVE-2025-54918 in the NT LAN Manager is also an EOP vulnerability classified as critical. An attacker with user rights can obtain system authorizations via the network, and it’s simple enough that it could be used as part of a targeted attack.

    Other Windows vulnerabilities

    The vulnerability with the highest vulnerability score is CVE-2025-55232 in the High Performance Compute (HPC) Pack. An attacker could remotely inject code without a user account and execute it on their own. This makes the vulnerability potentially wormable within an HPC network. As a rule, it only affects clusters of high-performance computers that are already secure. Microsoft recommends blocking TCP port 5999.

    Microsoft has eliminated 10 vulnerabilities in the Routing and Remote Access Service (RRAS) this month, compared to 12 last month. This time there are only two RCE vulnerabilities, the rest are data leaks. All are categorized as high risk. In the Windows Firewall service, Microsoft has fixed 6 EOP vulnerabilities that are considered high risk. An attacker with user rights could use these to obtain the authorizations of a local system account in order to execute malicious code.

    Critical Office vulnerabilities

    Microsoft has fixed 16 vulnerabilities in its Office product family, including 12 remote code execution (RCE) vulnerabilities. One of these RCE vulnerabilities (CVE-2025-54910) is labeled as critical because the preview window is considered an attack vector. This means that an attack could occur simply by displaying an infected file in the preview, even if the user doesn’t click on it or open it.

    Microsoft categorizes the other Office vulnerabilities as high risk. Here, a user must open an infected file for the exploit code to take effect (“open to own”). There are 8 fixed RCE vulnerabilities in Excel alone.

    Browser security updates

    The latest security update to Edge 140.0.3485.54 was released on September 5th and is based on Chromium 140.0.7339.81. It fixes several Chromium vulnerabilities as well as an Edge-specific vulnerability. Google has since released a new security update, which Microsoft will have to respond to later this week.

    This article originally appeared on our sister publication PC-WELT and was translated and localized from German.

    August Big dozens fixes flaws Office security Update Windows
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous Article25 Things Taking Up Space in Your Kitchen to Throw Out Now
    Next Article Apple isn’t packing a charging cable in with the AirPods Pro 3
    techupdateadmin
    • Website

    Related Posts

    Gadgets

    Your next Legion Go 2 might run SteamOS instead of Windows 11

    December 21, 2025
    Gadgets

    Apple’s next iPad mini could take a big leap in performance and visual experience

    December 17, 2025
    Mobile

    iOS 26 leak, your iPhone’s next big Siri upgrade has a date

    December 16, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    NYT Strands hints and answers for Monday, August 11 (game #526)

    August 11, 202545 Views

    These 2 Cities Are Pushing Back on Data Centers. Here’s What They’re Worried About

    September 13, 202542 Views

    Today’s NYT Connections: Sports Edition Hints, Answers for Sept. 4 #346

    September 4, 202540 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Best Fitbit fitness trackers and watches in 2025

    July 9, 20250 Views

    There are still 200+ Prime Day 2025 deals you can get

    July 9, 20250 Views

    The best earbuds we’ve tested for 2025

    July 9, 20250 Views
    Our Picks

    My Health Anxiety Means I Won’t Use Apple’s or Samsung’s Smartwatches. Here’s Why

    December 22, 2025

    You can now buy the OnePlus 15 in the US and score free earbuds if you hurry

    December 22, 2025

    Today’s NYT Connections: Sports Edition Hints, Answers for Dec. 22 #455

    December 22, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2026 techupdatealert. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.