ISC StormCast for Wednesday, November 13th 2019
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 13 November 2019
⏱️ 7 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, November 13th, 2019 edition of the Sandstone Storm Center's Stormcast. |
| 0:08.7 | My name is Johannes Ulrich, and then I'm recording from Jacksonville, Florida. |
| 0:14.4 | Well, today, of course, we'll start with Microsoft's patched Tuesday, and Microsoft had sort of an overall, I would call it, average |
| 0:22.0 | patched Tuesday with 74 vulnerabilities being patched and 15 critical vulnerabilities. Now, |
| 0:30.5 | in addition to these patches, we also got two advisories. Advisories are usually notes referring to behavior changes or security |
| 0:41.4 | issues that don't necessarily result in a patch. Now, the one critical vulnerability that was |
| 0:49.1 | already exploited in the wild is yet again a scripting engine memory corruption vulnerability. Remember |
| 0:57.3 | when I talked about the Pone to Own contest on Monday how many of these devices fell due to |
| 1:05.9 | JavaScript issues, well this is yet another one, CVE 2019, 1429, has been exploited in the wild, |
| 1:16.2 | does allow remote code execution if a user visits a malicious webpage. |
| 1:22.6 | Of course, this makes you question a little bit the wisdom of throwing JavaScript everywhere, |
| 1:27.3 | given that I don't think |
| 1:29.7 | there is really remotely bug-free secure implementation of JavaScript. |
| 1:36.2 | Now then we had two vulnerabilities that were already publicly released but at this point |
| 1:43.7 | not yet exploited. One is an Excel issue that |
| 1:49.3 | affects the click-to-run system. Apparently what can happen here if a user receives a malicious |
| 1:55.8 | Excel document, that Excel document could execute code as system. So this is actually inversed |
| 2:05.6 | your standard code execution as a normal user and could also be used for privilege escalation |
| 2:13.3 | on a system. The second one is one of these advisories. It affects the trusted platform module |
| 2:21.0 | and does not affect directly any of Microsoft's code, which is why Microsoft did not release a patch, |
| 2:29.3 | just advisory that you should address this. The trusted platform module, of course, is something that Microsoft |
| 2:37.0 | Software interacts with, for disk encryption and such, and the problem here is an information |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

