NATIONAL CRITICAL INFORMATION INFRASTRUCTURE PROTECTION CENTRE (NCIIPC)

A Unit of National Technical Research Organisation




                                         

  CVE - KB Correlation, Nov 2023  



Published on: 22 Nov, 2023

Cyber Security Vulnerabilities are usually identified using its unique CVE (Common Vulnerabilities and Exposures) number. However, Microsoft's SCCM (System Center Configuration Manager) provides patch information in the form of Knowledge Base (KB) Articles that are associated to one or more CVEs. Microsoft released updates to address multiple vulnerabilities in its software for the month of November.

Below is the list of CVE IDs, Base Score, Temporal Score and Knowledge Base IDs as released by Microsoft during November 2023:-

S No. CVE Base Score Temporal Score KB
1. CVE-2023-29348 6.5 5.7 KB5031419, KB5031407, KB5031442, KB5031427, KB5031408, KB5031441, KB5031362, KB5031364, KB5031361
1 CVE-2023-24023 KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
2 CVE-2023-36007 7.6 6.6 Release Notes
3 CVE-2023-36016 6.2 5.4 KB5032297, KB5032298
4 CVE-2023-36017 8.8 7.7 KB5032190, KB5032202, KB5032249, KB5032191, KB5032247, KB5032252, KB5032250, KB5032197, KB5032199, KB5032189, KB5032192, KB5032198, KB5032196
5 CVE-2023-36018 7.8 6.8 Release Notes
6 CVE-2023-36021 8 7 Download Guidance
7 CVE-2023-36025 8.8 8.2 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
8 CVE-2023-36028 9.8 8.5 KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
9 CVE-2023-36030 6.1 5.3 KB5032298, KB5032297
10 CVE-2023-36031 7.6 6.6 KB5032297
11 CVE-2023-36033 7.8 7 KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
12 CVE-2023-36035 8 7 KB5032146, KB5032147
13 CVE-2023-36036 7.8 7.2 KB5032190, KB5032202, KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032189, KB5032192, KB5032198, KB5032196
14 CVE-2023-36037 7.8 6.8 KB5002518, Click to Run, Release Notes, Click to Run
15 CVE-2023-36038 8.2 7.1 Release Notes, Release Notes, Release Notes, Release Notes
16 CVE-2023-36039 8 7 KB5032146, KB5032147
17 CVE-2023-36041 7.8 6.8 KB5002518, Click to Run, Release Notes, Click to Run
18 CVE-2023-36042 6.2 5.4 Release Notes, Release Notes, Release Notes
19 CVE-2023-36043 6.5 6.1 Release Notes, Release Notes, Release Notes
20 CVE-2023-36045 7.8 6.8 Click to Run, Release Notes, Click to Run
21 CVE-2023-36046 7.1 6.2 KB5032202, KB5032190, KB5032192
22 CVE-2023-36047 7.8 6.8 KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
23 CVE-2023-36049 7.6 6.8 KB5032341, KB5032185, KB5032343, KB5032342, KB5032344, KB5032186, KB5032199, KB5032339, KB5032007, KB5032338, KB5032340, KB5032336, KB5032197, KB5032337, KB5031989, KB5032004, KB5032884, KB5032883, Release Notes, Release Notes, Release Notes
24 CVE-2023-36050 8 7 KB5032146, KB5032147
25 CVE-2023-36052 8.6 7.5 Release Notes
26 CVE-2023-36392 7.5 6.5 KB5032249, KB5032247, KB5032197, KB5032202, KB5032198, KB5032196
27 CVE-2023-36393 7.8 6.8 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
28 CVE-2023-36394 7 6.1 KB5032197, KB5032199, KB5032189, KB5032192, KB5032198, KB5032196
29 CVE-2023-36395 7.5 6.5 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032202, KB5032198, KB5032196
30 CVE-2023-36396 7.8 6.8 KB5032190
31 CVE-2023-36397 9.8 8.5 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
32 CVE-2023-36398 6.5 5.7 KB5032190, KB5032202, KB5032249, KB5032247, KB5032197, KB5032199, KB5032189, KB5032192, KB5032198, KB5032196
33 CVE-2023-36399 7.1 6.2 KB5032190, KB5032192, KB5032198, KB5032202
34 CVE-2023-36400 8.8 7.7 KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
35 CVE-2023-36401 7.2 6.3 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
36 CVE-2023-36402 8.8 7.7 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
37 CVE-2023-36403 7 6.1 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
38 CVE-2023-36404 5.5 4.8 KB5032197, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
39 CVE-2023-36405 7 6.1 KB5032197, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
40 CVE-2023-36406 5.5 4.8 KB5032202, KB5032190, KB5032192, KB5032198
41 CVE-2023-36407 7.8 6.8 KB5032202, KB5032190, KB5032192, KB5032198
42 CVE-2023-36408 7.8 6.8 KB5032197, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
43 CVE-2023-36410 7.6 6.6 KB5032297
44 CVE-2023-36413 6.5 5.7 KB5002521, Click to Run, Click to Run
45 CVE-2023-36422 7.8 6.8 Release Notes
46 CVE-2023-36423 8.8 7.7 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
47 CVE-2023-36424 7.8 6.8 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032189, KB5032190, KB5032192, KB5032198, KB5032196, KB5032202
48 CVE-2023-36425 8 7 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
49 CVE-2023-36427 7 6.1 KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
50 CVE-2023-36428 5.5 4.8 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
51 CVE-2023-36437 8.8 7.7 Pull Request
52 CVE-2023-36439 8 7 KB5032146, KB5032147
53 CVE-2023-36558 6.2 5.6 Release Notes, Release Notes, Release Notes, Release Notes, KB5032884, KB5032883
54 CVE-2023-36560 8.8 7.7 KB5032341, KB5032185, KB5032343, KB5032342, KB5032344, KB5032186, KB5032199, KB5032339, KB5032007, KB5032338, KB5032340, KB5032336, KB5032197, KB5032337, KB5031989, KB5032004
55 CVE-2023-36705 7.8 6.8 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
56 CVE-2023-36719 8.4 7.3 KB5032249, KB5032247, KB5032252, KB5032250, KB5032254, KB5032248, KB5032197, KB5032199, KB5032202, KB5032190, KB5032189, KB5032192, KB5032198, KB5032196
57 CVE-2023-38151 8.8 7.7 KB5032921
58 CVE-2023-38177 6.1 5.3 KB5002527, KB5002526, KB5002517


References:


  1. https://msrc.microsoft.com/update-guide/releaseNote/2023-Nov
  2. https://portal.msrc.microsoft.com/en-us/security-guidance