meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, October 9th 2019

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 9 October 2019

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. MSFT Patches; Android Patches; vBulletin Patches

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, October 9th, 2019 edition of the Sansanet Storm Center's Stormcast.

0:07.6

My name is Johannes Ulrich.

0:09.2

And then I'm recording from Chicago, Illinois.

0:14.0

Well, it's Microsoft Patch Tuesday, so let's take a look at what Microsoft had to offer today.

0:22.6

Overall, I would rate this as a pretty average patch Tuesday as far as patched Tuesdays ago.

0:29.6

59 vulnerabilities were addressed this time, nine of which were critical.

0:35.6

None of the vulnerabilities were publicly disclosed before

0:40.5

this Tuesday or had been exploited according to Microsoft. Now, there are a couple sort of

0:47.5

noteworthy vulnerabilities among this set. One, for example, in Asia, that would allow a normal user running in a host

0:58.4

in Asia to actually escape that particular host. So essentially a sandbox escape could also

1:05.8

then turn into a remote code execution. We do have, and I think these variables are actually always kind of interesting, and Renato

1:14.4

is pointing this one out to vulnerability in Microsoft's XML core services.

1:20.6

Now the main exploit path here is of course in an explorer, but other software that uses

1:27.1

Microsoft XML core services to parse XML

1:31.0

could potentially be vulnerable here as well.

1:35.3

So make sure how you're using this particular library essentially.

1:40.4

Now Remote Desktop service is in the news again here as well, but this time it's the

1:45.9

client part, it's not the server part, and it would require that a user connects to

1:52.0

a malicious server in order to run code on declined.

1:58.2

So we're definitely not talking about another blue keep vulnerability here. Overall,

2:02.6

no real sort of clear patch priority here other than the critical ones you probably want to go

2:08.3

after first. And like I mentioned, that XML one could be a little bit tricky depending on

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.