meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, June 13th 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 13 June 2018

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. #MSFT Patch Tuesday; OS X Security Tools Code Verification Fail; Google Chrome Restricts Extension I

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, June 13th, 2018 edition of the Santernut Storm Center's

0:06.3

Stormcast. My name is Johannes Ulrich, and I am recording from Jacksonville, Florida.

0:12.9

And it is Microsoft's Patch Tuesday, depending on how you count, we got fixes for 50 or 51

0:20.8

vulnerabilities today.

0:23.6

Now some of them are no surprise, we got a flash update.

0:27.9

We also got the update for Spector version 4, which of course still requires the microcode

0:35.4

patch from AMD and Intel. But these are not the vulnerabilities

0:41.3

that I'm most worried about. There are two vulnerabilities here that I think could become a big

0:48.3

problem if an exploit for them should materialize. First of all, a vulnerability in Microsoft's DNS server.

0:57.0

A malicious DNS response may execute arbitrary code.

1:02.0

This of course could be done fairly easily, maybe even warmable,

1:08.0

where you have a malicious DNS server that then responds using the exploit to

1:14.6

arbitrary DNS requests.

1:16.6

The second vulnerability is also a server vulnerability in HTTP.Sys.

1:22.6

This is essentially the core of IIS that responds to HTTP requests and apparently a malicious

1:30.5

HTTP request may trigger arbitrary code.

1:35.7

Microsoft labeled the second vulnerability as unlikely to result in exploitation, meaning

1:42.9

that it won't be easy to come up with a reliably working

1:47.8

exploit. In addition, of course, we got updates for Microsoft Edge and Inan Explorer, including

1:55.0

the scripting engine to come with it, and that is again the bulk of the vulnerabilities.

2:02.6

So as far as patch priorities go, definitely take a look at these DNS and HTTP.sys vulnerabilities.

2:11.6

That's something you should address rather quickly if you are running affected servers and that also may take a little bit more

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.