Security
Headlines
HeadlinesLatestCVEs

Source

Microsoft Security Response Center

CVE-2021-43216: Microsoft Local Security Authority Server (lsasrv) Information Disclosure Vulnerability

**What type of information could be disclosed by this vulnerability?** The type of information that could be disclosed if an attacker successfully exploited this vulnerability is Kernel memory read - unintentional read access to memory contents in kernel space from a user mode process.

Microsoft Security Response Center
#vulnerability#microsoft#Microsoft Local Security Authority Server (lsasrv)#Security Vulnerability
CVE-2021-43876: Microsoft SharePoint Elevation of Privilege Vulnerability

**What privileges are required to exploit this vulnerability?** The attacker must be authenticated to the target site, with the rights to use the SharePoint Migration tool and the ability create a new SharePoint site collection.

CVE-2021-4066: Chromium: CVE-2021-4066 Integer underflow in ANGLE

**What is the version information for this release?** Microsoft Edge Version Date Released Based on Chromium Version 96.0.1054.53 12/9/2021 96.0.4664.93

CVE-2021-4068: Chromium: CVE-2021-4068 Insufficient validation of untrusted input in new tab page

**What is the version information for this release?** Microsoft Edge Version Date Released Based on Chromium Version 96.0.1054.53 12/9/2021 96.0.4664.93

CVE-2021-4067: Chromium: CVE-2021-4067 Use after free in window manager

**What is the version information for this release?** Microsoft Edge Version Date Released Based on Chromium Version 96.0.1054.53 12/9/2021 96.0.4664.93

CVE-2021-4064: Chromium: CVE-2021-4064 Use after free in screen capture

**What is the version information for this release?** Microsoft Edge Version Date Released Based on Chromium Version 96.0.1054.53 12/9/2021 96.0.4664.93

CVE-2021-4065: Chromium: CVE-2021-4065 Use after free in autofill

**What is the version information for this release?** Microsoft Edge Version Date Released Based on Chromium Version 96.0.1054.53 12/9/2021 96.0.4664.93

CVE-2021-4053: Chromium: CVE-2021-4053 Use after free in UI

**What is the version information for this release?** Microsoft Edge Version Date Released Based on Chromium Version 96.0.1054.53 12/9/2021 96.0.4664.93

CVE-2021-4057: Chromium: CVE-2021-4057 Use after free in file API

**What is the version information for this release?** Microsoft Edge Version Date Released Based on Chromium Version 96.0.1054.53 12/9/2021 96.0.4664.93

CVE-2021-4055: Chromium: CVE-2021-4055 Heap buffer overflow in extensions

**What is the version information for this release?** Microsoft Edge Version Date Released Based on Chromium Version 96.0.1054.53 12/9/2021 96.0.4664.93