# Microsoft patches actively exploited CVE-2024-49138

Published: 2024-12-10 · Severity: high
Canonical: https://vorant.io/reports/145b06c5-98a9-582f-8e70-1a1269512e90/microsoft-patches-actively-exploited-cve-2024-49138

> Microsoft's December 2024 Patch Tuesday includes a fix for CVE-2024-49138, confirmed under active exploitation, requiring urgent patching to prevent system compromise.

Japan's IPA has issued an advisory regarding Microsoft's December 2024 security updates, highlighting that multiple vulnerabilities could allow attackers to crash applications or gain control of systems. Microsoft has confirmed active exploitation of CVE-2024-49138, elevating the urgency for organizations to deploy patches immediately.

The advisory emphasizes that security updates are typically automatic through Windows Update, but organizations managing their own update cycles should prioritize rapid deployment. Microsoft's monthly security bulletin provides detailed guidance for enterprise patch management.

IPA notes that exploitation of these vulnerabilities could lead to various adverse outcomes including application crashes and full system compromise. The agency recommends immediate patching, particularly for CVE-2024-49138, given the confirmed in-the-wild exploitation and potential for widespread impact.

## Mentioned in this report

- Vulnerabilities: CVE-2024-49138 (KEV)

Source reporting: https://www.ipa.go.jp/security/security-alert/2024/1211-ms.html

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/145b06c5-98a9-582f-8e70-1a1269512e90/microsoft-patches-actively-exploited-cve-2024-49138.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
