Microsoft released its monthly security update on Tuesday 14th December 2021, disclosing 67 vulnerabilities across its suite of products.
This Patch Tuesday, the breakdown of vulnerabilities includes 7 Critical ratings, and 6 zero-days, one of which is being actively exploited.
CVE-2021-41333 – Windows Print Spooler Elevation of Privilege
CVE-2021-43240 – NTFS Set Short Name Elevation of Privilege bug
CVE-2021-43880 – Elevation of Privilege in Windows Mobile Device Management
CVE-2021-43883 – Privilege escalation impacting Windows Installer
CVE-2021-43890 – Windows AppX Installer Spoofing
CVE-2021-43893 – Elevation of Privilege in Windows EFS
With this round of patches, Microsoft has addressed a total of 887 CVEs in 2021, according to stats by the Zero Day Initiative and zdnet.
A full list of Microsoft’s December 2021 Patches, their CVE’s severities, and updates can be found here: Microsoft Security Response Center