HomeMicrosoft Patch Tuesday › November 2024

Microsoft Patch Tuesday, November 2024

·

Microsoft's November 2024 security release, published November 12, 2024: 35 updates fixing 78 CVEs, ranked by confirmed exploitation, ransomware use, and severity. Provided by Senserva.

Still active now. 1 CVE from this release is on the Senserva hot list today (as of 2026-08-30), still ranked among the most dangerous vulnerabilities right now by confirmed exploitation, ransomware use, EPSS, and severity. See the current hot list.
35
Updates (KBs)
78
CVEs fixed
2
On the CISA KEV list
1
Ransomware-linked
9
Critical updates

Actively exploited CVEs (CISA KEV)

CVE-2024-49039Windows Task Scheduler Elevation of Privilege VulnerabilityCVSS 8.8ExploitedRansomware Hot now
CVE-2024-43451NTLM Hash Disclosure Spoofing VulnerabilityCVSS 6.5Exploited

Other high-risk CVEs (CVSS 8.8+)

CVE-2024-43639Windows KDC Proxy Remote Code Execution VulnerabilityCVSS 9.8
CVE-2024-43627Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43628Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43620Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43621Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43622Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43624Windows Hyper-V Shared Virtual Disk Elevation of Privilege VulnerabilityCVSS 8.8
CVE-2024-43635Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-38255SQL Server Native Client Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43459SQL Server Native Client Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-43462SQL Server Native Client Remote Code Execution VulnerabilityCVSS 8.8
CVE-2024-48994SQL Server Native Client Remote Code Execution VulnerabilityCVSS 8.8

Products fixed this month

Windows 10 Version 1809 for 32-bit Systems (13)Windows 10 Version 1809 for x64-based Systems (12)Windows Server 2019 (12)Microsoft SQL Server 2017 for x64-based Systems (GDR) (9)Microsoft SQL Server 2019 for x64-based Systems (GDR) (9)Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR) (9)Windows Server 2022 (4)Windows Server 2022 (Server Core installation) (4)Windows 10 Version 21H2 for 32-bit Systems (4)Microsoft Office 2019 for 32-bit editions (4)

Every update in this release

All 34 update articles, worst first: anything on the CISA KEV list, then by highest CVSS. Each row links our page for the update, Microsoft's support article, and the Update Catalog for a standalone download.

UpdateSeverityMax CVSSCVEs fixedProductsAlso
KB5046616 Exploited RansomwareCritical9.837Windows Server 2022, Windows Server 2022 (Server Core installation), Windows 10 Version 21H2 for 32-bit SystemsSupport · Catalog
KB5046698 Exploited RansomwareCritical9.837Windows Server 2022, Windows Server 2022 (Server Core installation), Windows 10 Version 21H2 for 32-bit SystemsSupport · Catalog
KB5046615 Exploited RansomwareCritical9.831Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046618 Exploited RansomwareCritical9.835Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046617 Exploited RansomwareCritical9.833Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046696 Exploited RansomwareCritical9.836Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046612 Exploited RansomwareCritical9.827Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046682 ExploitedCritical9.822Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046613 Exploited RansomwareHigh8.831Windows Server 2022, Windows Server 2022 (Server Core installation), Windows 10 Version 21H2 for 32-bit SystemsSupport · Catalog
KB5046633 Exploited RansomwareHigh8.834Windows Server 2022, Windows Server 2022 (Server Core installation), Windows 10 Version 21H2 for 32-bit SystemsSupport · Catalog
KB5046665 Exploited RansomwareHigh8.823Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046661 ExploitedHigh8.819Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046639 ExploitedHigh8.819Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046687 ExploitedHigh8.820Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046705 ExploitedHigh8.820Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046630 ExploitedMedium6.51Windows Server 2025, Windows Server 2025 (Server Core installation), Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5046697Critical9.820Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5046857High8.831Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5046859High8.831Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5046855High8.830Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5046856High8.830Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5046858High8.831Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5046860High8.831Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5046062High8.82Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5002648High7.81Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft Office Online ServerSupport · Catalog
KB5002653High7.85Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft Office Online ServerSupport · Catalog
KB5002642High7.82Microsoft Office LTSC for Mac 2024, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5046861High7.82Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5046862High7.82Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR)Support · Catalog
KB5049233High7.51Microsoft Exchange Server 2019 Cumulative Update 13, Microsoft Exchange Server 2019 Cumulative Update 14, Microsoft Exchange Server 2016 Cumulative Update 23Support · Catalog
KB5002619High7.51Microsoft Office LTSC for Mac 2024, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002654High1Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription EditionSupport · Catalog
KB5002650High1Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription EditionSupport · Catalog
KB5002651High1Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription EditionSupport · Catalog
Take this release to your AI

Composed from the November 2024 release data above. Copy it into Claude, ChatGPT, or Copilot. Free, no sign-in.

Now see the same thing in your own tenant.

Siemserva by Senserva reads your Microsoft 365, Intune, Defender, and Entra ID environment and returns every missing update ranked by what is actually being exploited, alongside all 650+ configuration checks.

1Find it2Fix it3Prove it
Start my free auditAll you do is register.
Reference: Microsoft CVE and vulnerability management, ranked by real-world risk, and the Microsoft patching guide.
Data notice: this page is provided as is, for informational purposes only, without warranty of any kind. Senserva, LLC does not guarantee the accuracy, completeness, or timeliness of third-party data (MSRC, NVD, CISA KEV, EPSS) and accepts no liability for actions taken based on it; verify against the authoritative Microsoft advisory before acting. Built daily with Senserva Trustworthy AI. All use of this data is subject to the Senserva EULA.