HomeMicrosoft Patch Tuesday › October 2024

Microsoft Patch Tuesday, October 2024

·

Microsoft's October 2024 security release, published October 8, 2024: 72 updates fixing 104 CVEs, ranked by confirmed exploitation, ransomware use, and severity. Provided by Senserva.

Still active now. 1 CVE from this release is on the Senserva hot list today (as of 2026-08-30), still ranked among the most dangerous vulnerabilities right now by confirmed exploitation, ransomware use, EPSS, and severity. See the current hot list.
72
Updates (KBs)
104
CVEs fixed
3
On the CISA KEV list
1
Ransomware-linked
34
Critical updates

Actively exploited CVEs (CISA KEV)

CVE-2024-43468Microsoft Configuration Manager Remote Code Execution VulnerabilityCVSS 9.8Exploited Hot now
CVE-2024-43572Microsoft Management Console Remote Code Execution VulnerabilityCVSS 7.8Exploited
CVE-2024-43573Windows MSHTML Platform Spoofing VulnerabilityCVSS 6.5Exploited

Other high-risk CVEs (CVSS 8.8+)

CVE-2024-38124Windows Netlogon Elevation of Privilege VulnerabilityCVSS 9.0
CVE-2024-43518Windows Telephony Server Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43519Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43532Remote Registry Service Elevation of Privilege VulnerabilityCVSS 8.8
CVE-2024-6197Hackerone: CVE-2024-6197 Freeing stack buffer in utf8asn1strCVSS 8.8
CVE-2024-43608Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43607Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-38265Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43453Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-38212Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43517Microsoft ActiveX Data Objects Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43549Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityCVSS 8.8

Products fixed this month

Windows Server 2019 (19)Microsoft Visual Studio 2022 version 17.6 (17)PowerShell 7.2 (16)PowerShell 7.4 (16)Windows Server 2019 (Server Core installation) (10)Windows Server 2022 (10)Windows 10 Version 1809 for 32-bit Systems (9)Windows 10 Version 1809 for x64-based Systems (9)Microsoft SharePoint Enterprise Server 2016 (3)Microsoft SharePoint Server 2019 (3)

Every update in this release

All 43 update articles, worst first: anything on the CISA KEV list, then by highest CVSS. Each row links our page for the update, Microsoft's support article, and the Update Catalog for a standalone download.

UpdateSeverityMax CVSSCVEs fixedProductsAlso
KB29166583 ExploitedCritical9.81Microsoft Configuration Manager 2303, Microsoft Configuration Manager 2309, Microsoft Configuration Manager 2403Support · Catalog
KB5044277 ExploitedCritical9.077Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044281 ExploitedCritical9.065Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044288 ExploitedCritical9.083Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044293 ExploitedCritical9.056Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044320 ExploitedCritical9.032Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044306 ExploitedCritical9.032Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044356 ExploitedCritical9.036Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044321 ExploitedCritical9.036Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044342 ExploitedCritical9.046Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044343 ExploitedCritical9.049Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022Support · Catalog
KB5044273 ExploitedHigh8.856Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5044280 ExploitedHigh8.861Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5044285 ExploitedHigh8.862Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5044284 ExploitedHigh8.863Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5044286 ExploitedHigh8.833Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5045993High8.14Microsoft Visual Studio 2022 version 17.6, Microsoft Visual Studio 2022 version 17.8, Microsoft Visual Studio 2022 version 17.10Support · Catalog
KB5002643High7.81Microsoft Office LTSC 2024 for 32-bit editions, Microsoft Office LTSC 2024 for 64-bit editions, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002645High7.81Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription EditionSupport · Catalog
KB5002647High7.81Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription EditionSupport · Catalog
KB5002649High7.81Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription EditionSupport · Catalog
KB5047621High7.83Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5045998High7.53PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044021High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044095High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044085High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044096High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044097High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044089High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044099High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044092High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044090High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044091High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044033High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044028High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044098High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044086High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5044030High7.52PowerShell 7.2, PowerShell 7.4, Microsoft Visual Studio 2022 version 17.6Support · Catalog
KB5002635Medium6.51Microsoft Office LTSC 2024 for 64-bit editions, Microsoft Office LTSC 2024 for 32-bit editions, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5046399Medium6.41Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046398Medium6.41Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046400Medium6.41Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5045536Medium5.51Microsoft Visual Studio 2022 version 17.11, Microsoft Visual Studio 2017 version 15.9 (includes 15.0 - 15.8), Microsoft Visual Studio 2019 version 16.11 (includes 16.0 - 16.10)Support · Catalog
Take this release to your AI

Composed from the October 2024 release data above. Copy it into Claude, ChatGPT, or Copilot. Free, no sign-in.

Now see the same thing in your own tenant.

Siemserva by Senserva reads your Microsoft 365, Intune, Defender, and Entra ID environment and returns every missing update ranked by what is actually being exploited, alongside all 650+ configuration checks.

1Find it2Fix it3Prove it
Start my free auditAll you do is register.
Reference: Microsoft CVE and vulnerability management, ranked by real-world risk, and the Microsoft patching guide.
Data notice: this page is provided as is, for informational purposes only, without warranty of any kind. Senserva, LLC does not guarantee the accuracy, completeness, or timeliness of third-party data (MSRC, NVD, CISA KEV, EPSS) and accepts no liability for actions taken based on it; verify against the authoritative Microsoft advisory before acting. Built daily with Senserva Trustworthy AI. All use of this data is subject to the Senserva EULA.