ADVERTISEMENT

CISA, experts urging users to patch new Windows zero-days: “test and deploy quickly”

The US Cybersecurity and Security Infrastructure Agency (CISA) has warned that two recently disclosed Microsoft zero-day vulnerabilities are being actively exploited by threat actors and urges users to patch them.

Windows updates

Image by Shutterstock.

Ernestas Naprys
Ernestas Naprys Senior Journalist
February 12, 2025 Updated: February 12, 2025 2 min read
vilius Ernestas Naprys Marcus Walsh Konstancija Gasaityte
Stay informed and get our latest stories on Google News
Add us as your Preferred Source on Google.
ADVERTISEMENT
  • Remote Code Execution vulnerability CVE-2025-21379 affects DHCP Client Service, which automatically obtains an IUP address and network settings. Attackers can exploit it to perform man-in-the-middle attacks to read or modify network communications. However, the attack is limited to systems connected to the same network segment as the attacker and cannot be performed across multiple networks.
  • Server-side request Forgery (SSRF) in Microsoft Dynamics 365 Sales, a cloud-based customer relationship management (CRM) application, allowed an authorized attacker to elevate privileges over a network. Microsoft has already fully mitigated this flaw, and no user action is required.
  • Remote code execution flaw affects Windows Lightweight Directory Access Protocol (LDAP). An unauthenticated attacker could send a specially crafted request to a vulnerable LDAP server, causing a buffer overflow that could be leveraged to achieve remote code execution. According to ZDI, since there’s no user interaction involved, that makes this bug wormable between affected LDAP servers.
ADVERTISEMENT