Microsoft patched 74 security flaws in its May Patch Tuesday batch of updates. That's seven critical bugs, 66 deemed important, and one ranked low severity. At least one of the vulnerabilities disclosed is under active attack with public exploit code, according to Redmond, while two others are listed as having public exploit …

    It's early May and already there are 30,000 vulnerabilities disclosed.

    What a time to be alive!


    Re: CVE-2022-29972

      Re: CVE-2022-29972

      CVE numbers aren't sequential, starting at 1. Big outfits like Microsoft are authorized to issue their own CVE numbers and have a range allocated to them.

        Re: CVE-2022-29972

        Big outfits like Microsoft are authorized to issue their own CVE numbers and have a range allocated to them

        Presumably a large range, because no one wants to see articles on the Reg, Slashdot, etc. about how Microsoft had so many CVEs one year they used up their entire range and had to request a another.

          Re: CVE-2022-29972

          Microsoft having their own CVE range should be the canary in the coalmine, but still businesses insist on using this junk

    Patch Tuesday

    I think they should rename it 'Turd Polish Tuesday'

  5. FlamingDeath Silver badge

    CISA Temporarily Removes c from Known Exploited Vulnerability Catalog

    Issues seen with CVE-2022-26925 on Domain Controllers

