4.9 • 696 Ratings
🗓️ 8 July 2021
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello, welcome to the Thursday, July 8, 2021 edition of the Sansonet Stormontas Stormcast. |
0:08.0 | My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
0:13.0 | Brent Nightmare. |
0:14.0 | Well, the nightmare is sort of over, but not quite yet with the patch released yesterday by Microsoft. |
0:22.3 | So just a quick update on the patch. |
0:24.7 | As I'm recording this, all versions of Windows all the way back to Windows 7 should have |
0:32.0 | the patch available. |
0:33.5 | That was a little bit confusion during the day in a couple delays, I guess, on Microsoft's side to actually get the last couple operating systems patched up. |
0:42.5 | But yes, it should be available now for all operating systems that are affected and still somewhat supported by Microsoft. |
0:52.6 | With, of course, Windows 7 being actually not quite supported anymore, but the Microsoft |
0:58.2 | sometimes does it where they do push out critical patches like this even for unsupported |
1:04.5 | versions of operating systems. |
1:06.5 | However, the patch doesn't fully address the vulnerability just by applying the patch itself. |
1:15.1 | To understand that, let's recap what's actually the problem here. |
1:17.6 | The problem is that a normal user is able to supply a printer driver. |
1:23.9 | And there is one particular feature in Windows that requires the user to actually supply |
1:30.8 | a printer driver, and this is the point and print a feature that is enabled by default. |
1:40.2 | In order to completely fix the problem, you have to disable point and print. |
1:46.8 | Microsoft also did introduce a new registry setting in order to limit who is allowed to install |
1:53.8 | drivers. Restrict driver installation to administrators is the setting. And well, if you set that to one or true, then the administrator |
2:05.5 | is the only user allowed to install printer drivers. Highly recommend installing or setting |
2:12.0 | this registry value because it also does get to the root of the actual problem here that random users are |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.