Windows 11 October 2023 Update: An Exclusive Deep Dive into KB5031358
KB5031358 included various non-security fixes that were previously tested in preview builds like KB5030301:
HTTP/2 Rapid Reset Attack
| CVE ID | Severity | Description | |--------|----------|-------------| | CVE-2023-36584 | Important | Windows Mark of the Web (MOTW) security feature bypass. An attacker could craft a malicious file that doesn’t get the MOTW label, bypassing SmartScreen warnings. | | CVE-2023-41763 | Important | Windows Cloud Files Mini Filter Driver privilege escalation. | | CVE-2023-44487 | Important | (protocol vulnerability) – Windows mitigations added for this DDoS attack vector. |
BitLocker Errors
: Some managed devices incorrectly received a 65000 error in Mobile Device Management (MDM) regarding drive encryption.