A newly discovered and critical security flaw in the Windows implementation of the Kerberos authentication scheme is being used in targeted attacks. The bug could allow an attacker to elevate an unprivileged domain user account to a domain administrator account, and ultimately take control of servers in the server domain. Microsoft has issued an out-of-band patch for the bug, one week after its regular Patch Tuesday cycle cycle, MS14-068. Microsoft also issued an update to the problematic patch that it first released last week.”]
Source: https://www.darkreading.com/authentication/microsoft-issues-emergency-patch-amid-targeted-attacks

