Microsoft have released a security advisory on the 12th of January 2021 in line with their regular monthly patch schedule which includes a number of updates to address critical vulnerabilities. System / Technology components affected include Windows, Microsoft Office, SQL Server System Center, Developer Tools, Extended Security Updates (ESU), Apps and Azure Browser. These updates address vulnerabilities which may impact Elevation of Privilege, Remote Code Execution, Security Restriction Bypass, Information Disclosure and Spoofing.
https://msrc.microsoft.com/update-guide/releaseNote/2021-Jan
The following operating systems/applications are affected:
- Microsoft Windows
- Microsoft Edge (EdgeHTML-based)
- Microsoft Office and Microsoft Office Services and Web Apps
- Microsoft Windows Codecs Library
- Visual Studio
- SQL Server
- Microsoft Malware Protection Engine
- .NET Core
- .NET Repository
- ASP .NET
- Azure
Matsco recommends any affected systems are updated as soon as convenient.