ISSUE 21.34 • 2024-08-19 PATCH WATCH By Susan Bradley This month’s updates include fewer vulnerabilities than normal. What is not normal is that some
[See the full post at: Threats to businesses]
Susan Bradley Patch Lady/Prudent patcher
![]() |
Patch reliability is unclear, but widespread attacks make patching prudent. Go ahead and patch, but watch out for potential problems. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
Home » Forums » Newsletter and Homepage topics » Threats to businesses
Tags: Adobe Acrobat CVE-2024-38063 CVE-2024-38143 CVE-2024-38173 CVE-2024-38213 KB5020276 KB5040430 KB5040437 Line Printer Mark of the Web Newsletters Patch Lady Posts Remote Code Execution Remote Desktop Secure Boot
ISSUE 21.34 • 2024-08-19 PATCH WATCH By Susan Bradley This month’s updates include fewer vulnerabilities than normal. What is not normal is that some
[See the full post at: Threats to businesses]
Susan Bradley Patch Lady/Prudent patcher
Patching recommendations for consumers
I still don’t have any good news for users of Office 2019 retail, some of whom are having problems getting their machines updated. I’ll be closely monitoring this issue and will provide workarounds if needed. So far, the only resolution Microsoft is pointing to is an uninstall or a repair install. Meanwhile, it’s still occurring with the August updates. Ugh! Stay tuned!
This was fixed a couple of days ago:
Affected users should go to; File | Office Account | Update Options | Update Now and try another manual update.
…
Kudos to Gunter Born for posting a heads up today on page 11 of Prius 04’s Microsoft 365 Update Error 30088-27 in the MS Answers forum. Here’s hoping Microsoft has released a permanent fix on their end that works for all MS Office C2R users.
For now, defer updates until I notify you otherwise.
…
I consider updating now prudent.
This direct contradiction is very confusing.
Even though Windows 11 24H2 is not out yet, we are already seeing updates for fixing security issues unique to systems that have been shipped starting mid-June and that included 24H2 components. One such component is the “snapshot feature” called Microsoft Recall. Strangely, I haven’t heard much about Recall lately. Hopefully, Microsoft is hard at work to ensure that Security is included every step of the way. Better yet, maybe Redmond is starting over.
None of the security updates for version 24H2 have been for issues unique to 24H2 components.
I, too, am confused by the advice in this column.
In the second paragraph, Susan says, “For now, defer updates until I notify you otherwise.”
Then in a subsequent paragraph, Susan says, “Consumers and businesses can apply the August updates.”
Finally, later in the column, Susans says, “Even with all these zero days, I’m still not ready to scream “everyone patch now!” at the top of my lungs”.
I am not intentionally taking any of these statements out of context. If I have, I apologize. However, to me, these statements contradict one another.
In short, as a consumer, should I apply the August windows updates to windows 10 and 11 or not.
Although I use my system both for work and play, I consider myself a consumer when it comes to updates.
However, given the precarious situation, I decided to install Windows 10 22H2 KB5041580 – after making a backup.
All went well, but after I rebooted a second time my dual boot Windows-Mint pc wouldn’t start (no Grub boot menu) and I got the error message
“Verifying shim SBAT data failed: Security Policy Violation.
Something has gone seriously wrong: SBAT self-check failed: Security Policy Violation” and the pc shut down.
Luckely the web provided the solution: https://forums.linuxmint.com/viewtopic.php?p=2510718&sid=b052f39ccc46129bed219c179178a4b2#p2510718
Steps to solve the problem:
1. Disable Secure Boot
2. Log into your Ubuntu (Mint) user and open a terminal
3. Delete the SBAT policy with:
sudo mokutil –set-sbat-policy delete *
4. Reboot your PC and log back into Ubuntu (Mint) to update the SBAT policy:
sudo mokutil –set-sbat-policy latest *
5. Reboot and then re-enable secure boot in your BIOS.
*Please beware: on my pc the font makes the command look like there’s only 1 hiphen before “set”, but there are/should be 2 hiphens in front of “set”.
Don’t ask me why, but the solution worked. All is well now
Adobe patched eight critical vulnerabilities in Adobe Acrobat/Reader which allow remote code execution:
Adobe Patches for August 2024
However, I’m probably most concerned about the update for Acrobat and Reader, as maliciously crafted PDFs are often used in ransomware.
Exactly how that would be accomplished is not published, but JavaScript has been used in the past:
Malicious PDFs | Revealing the Techniques Behind the Attacks
I had tried all the recommendations from Susan & others without success. But I finally resolved the issue and thought you might want to publish for others having the same problem.
Per Susan’s advice I normally don’t do updates until just before the new ones come out. After reading her warning re. TCP/IP Remote Code Execution Vulnerability where she recommended doing latest updates immediately this time I followed her advice. One of the updates failed: KB5042352 Cumulative Update for .NET Framework 3.5, 4.8 and 4.8.1 for Windows 10 Version 22H2. So I rebooted & requested retry. After several failures finally got it to work after which I was able to successfully run latest update for Office 2019 Professional!
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.