ISC StormCast for Wednesday, June 14th, 2023
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 14 June 2023
⏱️ 5 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Wednesday, June 14, 2020, 3 edition of the Sansonet Storms, Stormcast. |
| 0:08.5 | My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
| 0:14.1 | Today was Microsoft's patched Tuesday, and we counted a total of 94 vulnerabilities being addressed this month. |
| 0:22.8 | Now, not all of these vulnerabilities are your classical patched Tuesday vulnerabilities. |
| 0:28.1 | There are 14 chromium-related vulnerabilities that were actually patched a little bit earlier |
| 0:34.3 | this month and, of course, included in Microsoft Edge. |
| 0:39.3 | There are also six GitHub vulnerabilities that are not typically sort of considered part of |
| 0:44.3 | the Microsoft patch set. |
| 0:46.9 | But when we are looking at the Microsoft patches, what's sort of interesting is, well, |
| 0:52.2 | what's actually not interesting, and that there are no |
| 0:55.5 | vulnerabilities this month that were prior to today disclosed or that are already exploited. |
| 1:03.4 | So no serodays, but we still have six different critical vulnerabilities. |
| 1:10.3 | None of them is really sort of a big screamer in the sense |
| 1:13.5 | that it's something that you absolutely have to patch right now. There are three critical |
| 1:18.7 | vulnerabilities in the Windows Pragmatic multicast service. This is a, well, as the name implies, |
| 1:25.0 | a multicast service, but one that actually includes also some reliability. |
| 1:29.5 | It's sort of a modified multicast protocol. You're likely only vulnerable if you also use Microsoft MessageQ. |
| 1:37.3 | So this one is a little bit more tricky to exploit, but still considered critical because it does allow arbitrary code execution. |
| 1:46.1 | And then there are also two new vulnerabilities in Microsoft Exchange. |
| 1:50.1 | These vulnerabilities are only considered important because they do require all of the occasion. |
| 1:55.7 | But remember, there were prior vulnerabilities in exchange that required authentication that were widely exploited. |
| 2:03.6 | Also interesting critical vulnerability in SharePoint. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

