Vulnerability CVE-2024-21413

GuestGuivenchi 105 Reputation points
2024-02-26T23:31:23.0266667+00:00

I manage an Azure AD
Does anyone have a powershell script that can help me remedy CVE-2024-21413 ? It asks me for a Detection script file and a Remediation script file. Thanks for the help. CVE-2023-36884

Microsoft Intune Updates
Microsoft Intune Updates
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Updates: Broadly released fixes addressing specific issue(s) or related bug(s). Updates may also include new or modified features (i.e. changing default behavior).
90 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,646 questions
PowerShell
PowerShell
A family of Microsoft task automation and configuration management frameworks consisting of a command-line shell and associated scripting language.
2,256 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Greg Hall 0 Reputation points
    2024-03-05T09:15:54.56+00:00

    The remediation is through Windows Updates. You can install the following updates through WUfB or WSUS. Attached is a list of products and updates if you would like to install the update by creating an application.

    I can write the detection script and remediation script, but due to the fact it's a security vulnerability why would you take the risk? I would recommend installing the update through WUfB, WSUS, or download it and create an application. If you create an application make sure you only deploy it to machines with the specified version of Office 2016.

    You can build detection logic with using Microsoft QFE.

    Product Article Download Build Number
    Microsoft Office 2016 (32-bit edition) 5002537 Security Update 16.0.5435.1001
    Microsoft Office 2016 (32-bit edition) 5002537 Security Update 16.0.5435.1001
    Microsoft Office 2016 (32-bit edition) 5002467 Security Update 16.0.5435.1001
    Microsoft Office 2016 (32-bit edition) 5002522 Security Update 16.0.5435.1001
    Microsoft Office 2016 (32-bit edition) 5002469 Security Update 16.0.5435.1001
    Microsoft Office 2016 (32-bit edition) 5002519 Security Update 16.0.5435.1001

    For Office 2016 (64-bit edition):

    Product Article Download Build Number
    Microsoft Office 2016 (64-bit edition) 5002537 Security Update 16.0.5435.1001
    Microsoft Office 2016 (64-bit edition) 5002537 Security Update 16.0.5435.1001
    Microsoft Office 2016 (64-bit edition) 5002467 Security Update 16.0.5435.1001
    Microsoft Office 2016 (64-bit edition) 5002522 Security Update 16.0.5435.1001
    Microsoft Office 2016 (64-bit edition) 5002469 Security Update 16.0.5435.1001
    Microsoft Office 2016 (64-bit edition) 5002519 Security Update 16.0.5435.1001
    0 comments No comments