home bbs files messages ]

Just a sample of the Echomail archive

<< oldest | < older | list | newer > | newest >> ]

 Message 2951 
 August Abolins to All 
 MS 2021 wrap up with 64 patches 
 05 Mar 22 20:39:00 
 
MSGID: 2:221/1.58@fidonet fa25ed5f
PID: OpenXP/5.0.51 (Win32)
CHRS: ASCII 1
TZUTC: -0500

Microsoft wraps up 2021 with 64 patched vulnerabilities- 
including Windows 7 fixes

https://news.sophos.com/en-us/2021/12/14/microsoft-wraps-up- 
2021-with-64-patched-vulnerabilities-including-windows-7-fixes/

I found this comment somewhat amusing yet disconcerting:

"fixes apply to versions of Windows stretching the way back to  
the end-of-life'd Windows 7. In fact, there are 17 bugs being  
patched in Windows 7 this month"

WRT Win7, "vulnerability in Windows' Encrypted File System  
(EFS) that also extends back to Windows 7 (CVE-2021-43217)-one  
that can be triggered regardless of whether or not EFS is in  
use on the targeted system. A specially-crafted attack could  
result in a buffer overflow write to memory that could result  
in unauthenticated code being executed by triggering EFS. This  
bug has been publicly disclosed, making it an urgent fix."

The EFS exploit sounds a bit worrisome since "the problem" can  
be triggered even when EFS is not even in use.  I *was*  
thinking of trying it a while back though.

--
  ../|ug

--- OpenXP 5.0.51
 * Origin:  (2:221/1.58)
SEEN-BY: 1/123 15/0 90/1 92/1 103/705 105/81 106/201 120/340 123/131
SEEN-BY: 129/305 330 331 153/7715 154/10 203/0 218/700 221/1 6 360
SEEN-BY: 226/30 227/114 229/110 206 317 400 424 426 428 452 550 664
SEEN-BY: 229/700 240/1120 5832 266/512 280/464 5003 282/1038 292/854
SEEN-BY: 301/1 113 317/3 320/219 322/757 342/200 396/45 423/81 460/58
SEEN-BY: 633/280 712/848 5058/104
PATH: 221/1 301/1 229/426


<< oldest | < older | list | newer > | newest >> ]

(c) 1994,  bbs@darkrealms.ca