SecPod

Learn Search

Search across all Learn content

← Back to Security Research
Patch Tuesday: Microsoft Security Bulletin Summary For August 2016

Patch Tuesday: Microsoft Security Bulletin Summary For August 2016

Microsoft August 2016 Patch Tuesday brings 9 Security Bulletins addressing a total of 34 vulnerabilities. Five Security Bulletins are rated as Critical and remaining Four are rated as Important.

Aug 10, 2016By Tushar K2 min read
aug_patch1
aug_patch1

Microsoft August 2016 Patch Tuesday brings 9 Security Bulletins addressing a total of 34 vulnerabilities. Five Security Bulletins are rated as Critical and remaining Four are rated as Important.

This month high priority fixes are for Internet Explorer, Microsoft Edge, Microsoft Graphics Component, Microsoft Office, and Microsoft Windows PDF Library which addresses 28 vulnerabilities out of 34 vulnerabilities.

This month Five bulletins are rated as Critical: MS16-095  for Internet Explorer cover 9 CVE’s, MS16-096 for Microsoft Edge cover 8 CVE’s, MS16-097 for Graphics Component cover 3 CVE’s, MS16-099 for Microsoft Office cover 5 CVE’s, and MS16-102 for PDF Library cover 1 CVE.

These Critical vulnerabilities allow Remote code execution. And other bulletins which are marked as important allow Security feature bypass, Elevation of privilege and Information disclosure.

Microsoft security bulletin summary for August 2016 in the order of severity:

MS16-095: Vulnerabilities in Internet Explorer (3177356)
Severity Rating: Critical
Affected Software: Internet Explorer
Impact: Remote Code Execution

MS16-096: Vulnerabilities in Microsoft Edge (3177358)
Severity Rating: Critical
Affected Software: Microsoft Edge
Impact: Remote Code Execution

MS16-097: Vulnerabilities in Microsoft Graphics Component (3177393)
Severity Rating: Critical
Affected Software: Microsoft Graphics Component
Impact: Remote Code Execution

MS16-098: Vulnerabilities in Windows Kernel-Mode Drivers (3178466)
Severity Rating: Important
Affected Software: Windows Kernel-Mode Drivers
Impact: Elevation of Privilege

MS16-099: Vulnerabilities in Microsoft Office (3177451)
Severity Rating: Critical
Affected Software: Microsoft Office
Impact: Remote Code Execution

MS16-100: Vulnerability in Secure Boot (3179577)
Severity Rating: Important
Affected Software: Secure Boot
Impact: Security Feature Bypass

MS16-101: Vulnerabilities in Windows Authentication Methods (3178465)
Severity Rating: Important
Affected Software: Windows Authentication Methods
Impact: Elevation of Privilege

MS16-102: Vulnerability in Microsoft Windows PDF Library (3182248)
Severity Rating: Critical
Affected Software: Microsoft Windows PDF Library
Impact: Remote Code Execution

MS16-103: Vulnerability in ActiveSyncProvider (3182332)
Severity Rating: Important
Affected Software: ActiveSyncProvider
Impact: Information Disclosure

SecPod Saner detects these vulnerabilities and automatically fixes it by applying security updates. Download Saner and keep your systems updated and secure.

Featured Posts

Open Operation CameraSwarm: Inside the Toolkit Behind 14,530 Compromised Dahua Cameras
Operation CameraSwarm: Inside the Toolkit Behind 14,530 Compromised Dahua Cameras

CVE Research

Operation CameraSwarm: Inside the Toolkit Behind 14,530 Compromised Dahua Cameras

A single operator compromised 14,530+ Dahua cameras across Ukraine and Russia in 35 days, chaining credential brute-force, a CVE-2021-33044/33045 authentication bypass, and P2P relay abuse to plant a persistent backdoor and harvest transferable admin access.

Aug 21, 2026

Open Critical GitLab Flaw Exposes Public Projects to Deletion — Two CVEs Patched, Including High-Severity CSRF
Critical GitLab Flaw Exposes Public Projects to Deletion — Two CVEs Patched, Including High-Severity CSRF

CVE Research

Critical GitLab Flaw Exposes Public Projects to Deletion — Two CVEs Patched, Including High-Severity CSRF

CVE-2026-19478 is a critical code injection vulnerability in GitLab CE/EE that allows an unauthenticated attacker to modify or delete public projects and user data by abusing a GraphQL directive. A second high-severity issue, CVE-2026-19650, involves cross-site request forgery in the GraphQL multiplex query handler. This article examines how the critical vulnerability works, the availability of a public proof-of-concept, the potential impact on self-managed instances, the affected versions, and the security updates released to remediate both issues.

Aug 19, 2026

Open No Password Needed: macOS Screen Sharing Flaw (CVE-2026-65400) Used to Deploy Monero Miners
No Password Needed: macOS Screen Sharing Flaw (CVE-2026-65400) Used to Deploy Monero Miners

CVE Research

No Password Needed: macOS Screen Sharing Flaw (CVE-2026-65400) Used to Deploy Monero Miners

Aug 19, 2026

Open Evooo1Bot: Mirai-Based Linux Botnet Turns Edge Devices Into SOCKS5 Proxies
Evooo1Bot: Mirai-Based Linux Botnet Turns Edge Devices Into SOCKS5 Proxies

CVE Research

Evooo1Bot: Mirai-Based Linux Botnet Turns Edge Devices Into SOCKS5 Proxies

Aug 19, 2026