{"id":259287,"date":"2021-11-10T17:54:11","date_gmt":"2021-11-10T16:54:11","guid":{"rendered":"https:\/\/www.borncity.com\/blog\/?p=259287"},"modified":"2022-08-22T10:18:50","modified_gmt":"2022-08-22T08:18:50","slug":"microsoft-security-update-summary-9-november-2021","status":"publish","type":"post","link":"https:\/\/borncity.com\/blog\/2021\/11\/10\/microsoft-security-update-summary-9-november-2021\/","title":{"rendered":"Microsoft Security Update Summary (9. November 2021)"},"content":{"rendered":"<p><img decoding=\"async\" style=\"margin: 0px 10px 0px 0px;\" title=\"Update\" src=\"https:\/\/borncity.com\/blog\/wp-content\/uploads\/2021\/06\/Update-01.jpg\" alt=\"Update\" align=\"left\" border=\"0\" \/>[<a href=\"https:\/\/borncity.com\/win\/2021\/11\/10\/microsoft-security-update-summary-9-november-2021\/\" target=\"_blank\" rel=\"noopener\">English<\/a>]Am 9. November hat Microsoft Sicherheitsupdates f\u00fcr Windows-Clients und -Server, f\u00fcr Office, Exchange usw. &#8211; sowie f\u00fcr weitere Produkte\u00a0 &#8211; ver\u00f6ffentlicht. Microsoft warnt, dass Schwachstellen in Exchange und Excel ausgenutzt werden. Nachfolgend findet sich ein kompakter \u00dcberblick \u00fcber diese Updates, die zum Patchday freigegeben wurden.<\/p>\n<p><!--more--><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/vg08.met.vgwort.de\/na\/7e79c87861ff405d9365c5c39e6bf37c\" alt=\"\" width=\"1\" height=\"1\" \/>Eine Liste der Updates finden Sie auf <a href=\"https:\/\/web.archive.org\/web\/20201101051813\/https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\" target=\"_blank\" rel=\"noopener\">dieser Microsoft-Seite<\/a>. Details zu den Update-Paketen f\u00fcr Windows, Office etc. sind in separaten Blogbeitr\u00e4gen verf\u00fcgbar.<\/p>\n<h2>Hinweise zu den Updates<\/h2>\n<p>Windows 10 Version 2004, 20H2\u00a0 und 21H1 verwenden einen gemeinsamen Kern und besitzen einen identischen Satz von Systemdateien. Daher werden f\u00fcr diese Windows 10 Versionen die gleichen Sicherheitsupdate ausgeliefert. Informationen zur Aktivierung der Features von Windows 10 Version 1909 sowie 20H2, welches durch ein Enablement Package-Update erfolgt, finden sich <a href=\"https:\/\/techcommunity.microsoft.com\/t5\/Windows-IT-Pro-Blog\/Windows-10-version-1909-delivery-options\/ba-p\/1002660\" target=\"_blank\" rel=\"noopener\">diesem Techcommunity-Beitrag<\/a>.<\/p>\n<p>Alle Windows 10-Updates sind kumulativ. Das monatliche Patchday-Update enth\u00e4lt alle Sicherheitsfixes f\u00fcr Windows 10 und alle nicht sicherheitsbezogenen Fixes bis zum Patchday. Zus\u00e4tzlich zu den Sicherheitspatches f\u00fcr die Schwachstellen enthalten die Updates Ma\u00dfnahmen zur Verbesserung der Sicherheit. Microsoft integriert die Servicing Stack Updates (SSUs) in den aktuellen kumulativen Updates (Latest Cumulative Updates, LCUs) f\u00fcr neuere Windows 10-Versionen. Eine Liste der aktuellen SSUs findet sich unter <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/ADV990001\" target=\"_blank\" rel=\"noopener\">ADV990001<\/a> (wobei die Liste nicht immer aktuell ist).<\/p>\n<p>Windows 7 SP1 wird seit Januar 2020 nicht mehr unterst\u00fctzt. Nur Kunden mit einer ESU-Lizenz f\u00fcr das 2. Jahr (oder Umgehungsma\u00dfnahmen) erhalten noch Updates. Mit dem aktuellen ESU-Bypass l\u00e4sst das Update installieren. Updates k\u00f6nnen auch aus dem <a href=\"https:\/\/www.catalog.update.microsoft.com\/Home.aspx\" target=\"_blank\" rel=\"noopener\">Microsoft Update Catalog<\/a> heruntergeladen werden. Die Updates f\u00fcr Windows RT 8.1 und Microsoft Office RT sind nur \u00fcber Windows Update erh\u00e4ltlich.<\/p>\n<h2>Gefixte Schwachstellen<\/h2>\n<p>Die Sicherheitsupdates vom November 2021 schlie\u00dfen Sicherheitsl\u00fccken (55 CVEs, 6 davon kritisch, 49 davon wichtig) in Microsoft-Produkten. Eine Liste aller abgedeckten CVEs finden Sie auf <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/releaseNote\/2021-Nov\" target=\"_blank\" rel=\"noopener\">dieser Microsoft-Seite<\/a>. Tenable hat in <a href=\"https:\/\/de.tenable.com\/blog\/microsoft-s-november-2021-patch-tuesday-addresses-55-cves-cve-2021-42321?tns_redirect=true\" target=\"_blank\" rel=\"noopener\">diesem Blog-Beitrag<\/a> alle gefixten Schwachstellen aufgelistet. Zu erw\u00e4hnen sind die RCE-Schwachstelle <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/vulnerability\/CVE-2021-42321\" target=\"_blank\" rel=\"noopener\">CVE-2021-42321<\/a> in Microsoft Exchange (siehe <a href=\"https:\/\/borncity.com\/blog\/2021\/11\/10\/exchange-server-november-2021-sicherheitsupdates-schlieen-rce-schwachstelle-cve-2021-423\/\">Exchange Server November 2021 Sicherheitsupdates schlie\u00dfen RCE-Schwachstelle CVE-2021-423<\/a>). Und weiterhin die Schwachstelle <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/vulnerability\/CVE-2021-42292\" target=\"_blank\" rel=\"noopener\">CVE-2021-42292<\/a> in Microsoft Excel. Tenable listet noch die RCE-Schwachstelle <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/vulnerability\/CVE-2021-38666\" target=\"_blank\" rel=\"noopener\">CVE-2021-38666<\/a> im Remote Desktop Client und die RCE-Schwachstellen <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/vulnerability\/CVE-2021-43208\" target=\"_blank\" rel=\"noopener\">CVE-2021-43208<\/a> und <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/vulnerability\/CVE-2021-43209\" target=\"_blank\" rel=\"noopener\">CVE-2021-43209<\/a> im 3D Viewer von Windows 10 auf.<\/p>\n<h4>Critical Security Updates<\/h4>\n<p>Windows 10 for 32-bit Systems<br \/>\nWindows 10 for x64-based Systems<br \/>\nWindows 10 Version 1607 for 32-bit Systems<br \/>\nWindows 10 Version 1607 for x64-based Systems<br \/>\nWindows 10 Version 1809 for 32-bit Systems<br \/>\nWindows 10 Version 1809 for ARM64-based Systems<br \/>\nWindows 10 Version 1809 for x64-based Systems<br \/>\nWindows 10 Version 1909 for 32-bit Systems<br \/>\nWindows 10 Version 1909 for ARM64-based Systems<br \/>\nWindows 10 Version 1909 for x64-based Systems<br \/>\nWindows 10 Version 2004 for 32-bit Systems<br \/>\nWindows 10 Version 2004 for ARM64-based Systems<br \/>\nWindows 10 Version 2004 for x64-based Systems<br \/>\nWindows 10 Version 20H2 for 32-bit Systems<br \/>\nWindows 10 Version 20H2 for ARM64-based Systems<br \/>\nWindows 10 Version 20H2 for x64-based Systems<br \/>\nWindows 10 Version 21H1 for 32-bit Systems<br \/>\nWindows 10 Version 21H1 for ARM64-based Systems<br \/>\nWindows 10 Version 21H1 for x64-based Systems<br \/>\nWindows 11 for ARM64-based Systems<br \/>\nWindows 11 for x64-based Systems<br \/>\nWindows 8.1 for 32-bit systems<br \/>\nWindows 8.1 for x64-based systems<br \/>\nWindows RT 8.1<br \/>\nWindows Server 2012<br \/>\nWindows Server 2012 (Server Core installation)<br \/>\nWindows Server 2012 R2<br \/>\nWindows Server 2012 R2 (Server Core installation)<br \/>\nWindows Server 2016<br \/>\nWindows Server 2016 (Server Core installation)<br \/>\nWindows Server 2019<br \/>\nWindows Server 2019 (Server Core installation)<br \/>\nWindows Server 2022<br \/>\nWindows Server 2022 (Server Core installation)<br \/>\nWindows Server, version 1909 (Server Core installation)<br \/>\nWindows Server, version 2004 (Server Core installation)<br \/>\nWindows Server, version 20H2 (Server Core Installation)<br \/>\nMicrosoft Visual Studio 2015 Update 3<br \/>\nMicrosoft Visual Studio 2017 version 15.9 (includes 15.0 &#8211; 15.8)<br \/>\nMicrosoft Visual Studio 2019 version 16.11 (includes 16.0 &#8211; 16.10)<br \/>\nMicrosoft Visual Studio 2019 version 16.7 (includes 16.0 &#8211; 16.6)<br \/>\nMicrosoft Visual Studio 2019 version 16.9 (includes 16.0 &#8211; 16.8)<br \/>\nVisual Studio Code<br \/>\nMicrosoft Malware Protection Engine<br \/>\nRemote Desktop client for Windows Desktop<br \/>\nMicrosoft Dynamics 365 (on-premises) version 9.0<br \/>\nMicrosoft Dynamics 365 (on-premises) version 9.1<\/p>\n<h4>Important Security Updates<\/h4>\n<p>Microsoft 365 Apps for Enterprise for 32-bit Systems<br \/>\nMicrosoft 365 Apps for Enterprise for 64-bit Systems<br \/>\nMicrosoft Excel 2013 RT Service Pack 1<br \/>\nMicrosoft Excel 2013 Service Pack 1 (32-bit editions)<br \/>\nMicrosoft Excel 2013 Service Pack 1 (64-bit editions)<br \/>\nMicrosoft Excel 2016 (32-bit edition)<br \/>\nMicrosoft Excel 2016 (64-bit edition)<br \/>\nMicrosoft Office 2013 RT Service Pack 1<br \/>\nMicrosoft Office 2013 Service Pack 1 (32-bit editions)<br \/>\nMicrosoft Office 2013 Service Pack 1 (64-bit editions)<br \/>\nMicrosoft Office 2016 (32-bit edition)<br \/>\nMicrosoft Office 2016 (64-bit edition)<br \/>\nMicrosoft Office 2019 for 32-bit editions<br \/>\nMicrosoft Office 2019 for 64-bit editions<br \/>\nMicrosoft Office 2019 for Mac<br \/>\nMicrosoft Office LTSC 2021 for 32-bit editions<br \/>\nMicrosoft Office LTSC 2021 for 64-bit editions<br \/>\nMicrosoft Office LTSC for Mac 2021<br \/>\nMicrosoft Office Online Server<br \/>\nMicrosoft Office Web Apps Server 2013 Service Pack 1<br \/>\nMicrosoft SharePoint Enterprise Server 2013 Service Pack 1<br \/>\nMicrosoft SharePoint Enterprise Server 2016<br \/>\nMicrosoft SharePoint Foundation 2013 Service Pack 1<br \/>\nMicrosoft SharePoint Server 2019<br \/>\nMicrosoft SharePoint Server Subscription Edition<br \/>\nMicrosoft Exchange Server 2013 Cumulative Update 23<br \/>\nMicrosoft Exchange Server 2016 Cumulative Update 21<br \/>\nMicrosoft Exchange Server 2016 Cumulative Update 22<br \/>\nMicrosoft Exchange Server 2019 Cumulative Update 10<br \/>\nMicrosoft Exchange Server 2019 Cumulative Update 11<br \/>\nMicrosoft Edge (Chromium-based) in IE Mode<br \/>\n3D Viewer<br \/>\nAzure RTOS<br \/>\nAzure Sphere<br \/>\nFSLogix<br \/>\nPower BI Report Server<\/p>\n<p><strong>\u00c4hnliche Artikel:<br \/>\n<\/strong><a href=\"https:\/\/borncity.com\/blog\/2021\/11\/10\/microsoft-security-update-summary-9-november-2021\/\">Microsoft Oktober 2021 Patchday (9. November 2021)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2021\/11\/10\/patchday-windows-10-updates-9-november-2021\/\">Patchday: Windows 10-Updates (9. November 2021)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2021\/11\/10\/patchday-windows-8-1-server-2012-updates-9-november-2021\/\">Patchday: Windows 8.1\/Server 2012-Updates (9. November 2021)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2021\/11\/10\/patchday-updates-fr-windows-7-server-2008-r2-9-november-2021\/\">Patchday: Updates f\u00fcr Windows 7\/Server 2008 R2 (9. November 2021)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2021\/11\/10\/microsoft-security-update-summary-9-november-2021\/\">Microsoft Security Update Summary (9. November 2021)<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[English]Am 9. November hat Microsoft Sicherheitsupdates f\u00fcr Windows-Clients und -Server, f\u00fcr Office, Exchange usw. &#8211; sowie f\u00fcr weitere Produkte\u00a0 &#8211; ver\u00f6ffentlicht. Microsoft warnt, dass Schwachstellen in Exchange und Excel ausgenutzt werden. Nachfolgend findet sich ein kompakter \u00dcberblick \u00fcber diese Updates, &hellip; <a href=\"https:\/\/borncity.com\/blog\/2021\/11\/10\/microsoft-security-update-summary-9-november-2021\/\">Weiterlesen <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[270,426,185,301],"tags":[4322,8288,4328,4315,3288],"class_list":["post-259287","post","type-post","status-publish","format-standard","hentry","category-office","category-sicherheit","category-update","category-windows","tag-office","tag-patchday-11-2021","tag-sicherheit","tag-update","tag-windows-en"],"_links":{"self":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/259287","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/comments?post=259287"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/259287\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/media?parent=259287"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/categories?post=259287"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/tags?post=259287"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}