-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
*******************************************************************************
*******
Title: Microsoft Security Update Releases
Issued: October 13, 2020 ******************************************************
********************************
Summary
=======
The following CVEs have undergone a major revision increment:
* CVE-2019-1181
* CVE-2019-1182
* CVE-2020-1147
Revision Information:
=====================
* CVE-2019-1181
- CVE-2019-1181 | Remote Desktop Services Remote Code Execution Vulnerability
- https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2019-
1181
- Version 2.0
- Reason for Revision: Revised the Security Updates table to add Microsoft
Remote
Desktop for Android, Microsoft Remote Desktop for Mac, and Microsoft Remote
Desktop
for Mac IoS because these apps are affected by this vulnerability. Microsoft
recommends that customers running any of these apps install the latest
security
update to be fully protected from this vulnerability. Please see the FAQ
section
for information on how to get these updates.
- Originally posted: August 13, 2020
- Updated: October 13, 2020
- Aggregate CVE Severity Rating: Critical
* CVE-2019-1182
- CVE-2019-1182 | Remote Desktop Services Remote Code Execution Vulnerability
- https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2019-
1182
- Version 2.0
- Reason for Revision: Revised the Security Updates table to add Microsoft
Remote
Desktop for Android, Microsoft Remote Desktop for Mac, and Microsoft Remote
Desktop
for Mac IoS because these apps are affected by this vulnerability. Microsoft
recommends that customers running any of these apps install the latest
security
update to be fully protected from this vulnerability. Please see the FAQ
section
for information on how to get these updates.
- Originally posted: August 13, 2020
- Updated: October 13, 2020
- Aggregate CVE Severity Rating: Critical
* CVE-2020-1147
- CVE-2020-1147 | .NET Framework, SharePoint Server, and Visual Studio Remote
Code
Execution Vulnerability
- https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2020-
1147
- Version 2.0
- Reason for Revision: To comprehensively address CVE-2020-1147, Microsoft has
released
the following: October Security Updates for all affected versions of .NET
Framework
installed on Windows 10; October 2020 Monthly Rollup updates AND updated
versions of
the Security Only updates released in July 2020 for all affected versions of
.NET
Framework installed on Windows 8.1, Windows Server 2012 R2, Windows Server
2012,
Windows 7, Windows Server 2008 R2, and Windows Server 2008. Microsoft
strongly
recommends that customers install the updates to be fully protected from the
vulnerability. Customers who install the Security Only updates should ensure
that
they re-install the updates after October 13. Customers whose systems are
configured
to receive automatic updates do not need to take any further action.
- Originally posted: July 14, 2020
- Updated: October 13, 2020
- Aggregate CVE Severity Rating: Critical
*******************************************************************************
*******
Other Information
=================
Recognize and avoid fraudulent email to Microsoft customers: ==================
====================================================================
If you receive an email message that claims to be distributing a Microsoft
security
update, it is a hoax that may contain malware or pointers to malicious websites.
Microsoft does not distribute security updates via email.
The Microsoft Security Response Center (MSRC) uses PGP to digitally sign all
security
notifications. However, PGP is not required for reading security notifications,
reading security bulletins, or installing security updates. You can obtain the
MSRC
public PGP key at <https://technet.microsoft.com/security/dn753714>.
*******************************************************************************
*******
THE INFORMATION PROVIDED IN THIS MICROSOFT COMMUNICATION IS PROVIDED "AS IS"
WITHOUT
WARRANTY OF ANY KIND. MICROSOFT DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR
IMPLIED,
INCLUDING THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
PURPOSE.
IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE LIABLE FOR ANY
DAMAGES
WHATSOEVER INCLUDING DIRECT, INDIRECT, INCIDENTAL, CONSEQUENTIAL, LOSS OF
BUSINESS
PROFITS OR SPECIAL DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE
BEEN
ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY FOR
CONSEQUENTIAL
OR INCIDENTAL DAMAGES SO THE FOREGOING LIMITATION MAY NOT APPLY. **************
************************************************************************
Microsoft respects your privacy. Please read our online Privacy Statement at
<http://go.microsoft.com/fwlink/?LinkId=81184>.
If you would prefer not to receive future technical security notification alerts
by
email from Microsoft and its family of companies please visit the following
website
to unsubscribe:
<https://profile.microsoft.com/RegSysProfileCenter/subscriptionwizar
d.aspx?wizid=5a2a311b-5189-4c9b-9f1a-d5e913a26c2e&%3blcid=1033>.
These settings will not affect any newsletters you've requested or any mandatory
service communications that are considered part of certain Microsoft services.
For legal Information, see:
<http://www.microsoft.com/info/legalinfo/default.mspx>.
This newsletter was sent by:
Microsoft Corporation
1 Microsoft Way
Redmond, Washington, USA
98052
-----BEGIN PGP SIGNATURE-----
iQEzBAEBCAAdFiEELTQbGKdJ0A4NErYObMczVWaPe3UFAl+F34kACgkQbMczVWaP
e3WLEwf/WmHOYda8QF47xx0H11E/4alx2oGPcmhl9+ADwGLsUUSQMORXsBJC4g1r
FLsr6Da61Ks7lks6awuZmUeBwSnv6OdXFV9ySYGJsABjXqi6WS/pPuFrjXtwvlyo
PSbQv3XJKA4mq6Bs1g1zXgEzqp2smeZEpV2aI2r7gDzQbL4VzsnBu3TtE0r2lxlc
qhwFJM2OlWHb2eKa4ZBX56FuUCM/jpyvZu3wMZ3a3zwc8frT0tmv330NQGx9TyxI
XeYHWP7SNKp6yuI65OO+W6KZYh+e7lCwnDL1KDYCPGQLfF2ExGYUZqTOL5YEdK+6
KsQHlhDa1N15pmXF6B3fHzE8PAsbgQ==
=iuTE
-----END PGP SIGNATURE-----
If you would prefer not to receive future technical security
notification alerts by email from Microsoft and its family of
companies please visit the following website to unsubscribe:
https://account.microsoft.com/profile/unsubscribe?CTID=0&ECID=ZCfSNdZRqio0Gf%2B
Vg5rZ084LPHomrvLhPbNByPLTxlE%3D&K=d771e09d-e9aa-4841-8ff0-e3c4f07514ae&CMID=nul
l&D=637381203441281473&PID=18015&TID=adfd46f4-992a-45ec-935c-4c9bc4baf506
---
■ Synchronet ■ Time Warp of the Future BBS - Home of League 10 IBBS Games
|