{"id":237137,"date":"2020-11-01T02:34:25","date_gmt":"2020-11-01T01:34:25","guid":{"rendered":"https:\/\/www.borncity.com\/blog\/?p=237137"},"modified":"2022-11-23T07:15:47","modified_gmt":"2022-11-23T06:15:47","slug":"nachtrag-microsoft-sicherheitshinweise-oktober-2020","status":"publish","type":"post","link":"https:\/\/borncity.com\/blog\/2020\/11\/01\/nachtrag-microsoft-sicherheitshinweise-oktober-2020\/","title":{"rendered":"Nachtrag: Microsoft Sicherheitshinweise Oktober 2020"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline;\" src=\"https:\/\/borncity.com\/blog\/wp-content\/uploads\/2015\/01\/Schutz.jpg\" width=\"40\" height=\"47\" align=\"left\" \/>[<a href=\"https:\/\/borncity.com\/win\/2020\/11\/01\/nachtrag-microsoft-sicherheitshinweise-oktober-2020\/\" target=\"_blank\" rel=\"noopener noreferrer\">English<\/a>]Kleiner Nachtrag vom Oktober 2020: Microsoft hatte einige Sicherheitshinweise zu Sicherheitsupdates ver\u00f6ffentlicht. Sind hier liegen geblieben, ich stelle sie mal zur Sicherheit hier ein.<\/p>\n<p><!--more--><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/vg06.met.vgwort.de\/na\/c360f6b1537e4c6e8df1686598c8182d\" alt=\"\" width=\"1\" height=\"1\" \/>**************************************************************************************<br \/>\nTitle: Microsoft Security Update Releases<br \/>\nIssued: October 13, 2020<br \/>\n**************************************************************************************<\/p>\n<p>Summary<br \/>\n=======<\/p>\n<p>The following CVEs have undergone a major revision increment:<\/p>\n<p>* CVE-2019-1181<br \/>\n* CVE-2019-1182<br \/>\n* CVE-2020-1147<br \/>\nRevision Information:<br \/>\n=====================<\/p>\n<p>* CVE-2019-1181<\/p>\n<p>&#8211; <a href=\"https:\/\/web.archive.org\/web\/20200822151312\/https:\/\/portal.msrc.microsoft.com\/en-US\/security-guidance\/advisory\/CVE-2019-1181\" target=\"_blank\" rel=\"noopener noreferrer\">CVE-2019-1181<\/a> | Remote Desktop Services Remote Code Execution Vulnerability-<br \/>\n&#8211; Version 2.0<br \/>\n&#8211; Reason for Revision: Revised the Security Updates table to add Microsoft Remote<br \/>\nDesktop for Android, Microsoft Remote Desktop for Mac, and Microsoft Remote Desktop<br \/>\nfor Mac IoS because these apps are affected by this vulnerability. Microsoft<br \/>\nrecommends that customers running any of these apps install the latest security<br \/>\nupdate to be fully protected from this vulnerability. Please see the FAQ section<br \/>\nfor information on how to get these updates.<br \/>\n&#8211; Originally posted: August 13, 2020<br \/>\n&#8211; Updated: October 13, 2020<br \/>\n&#8211; Aggregate CVE Severity Rating: Critical<\/p>\n<p>* CVE-2019-1182<\/p>\n<p>&#8211; <a href=\"https:\/\/web.archive.org\/web\/20201030125040\/https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/advisory\/CVE-2019-1182\" target=\"_blank\" rel=\"noopener noreferrer\">CVE-2019-1182<\/a> | Remote Desktop Services Remote Code Execution Vulnerability<br \/>\n&#8211; Version 2.0<br \/>\n&#8211; Reason for Revision: Revised the Security Updates table to add Microsoft Remote<br \/>\nDesktop for Android, Microsoft Remote Desktop for Mac, and Microsoft Remote Desktop<br \/>\nfor Mac IoS because these apps are affected by this vulnerability. Microsoft<br \/>\nrecommends that customers running any of these apps install the latest security<br \/>\nupdate to be fully protected from this vulnerability. Please see the FAQ section<br \/>\nfor information on how to get these updates.<br \/>\n&#8211; Originally posted: August 13, 2020<br \/>\n&#8211; Updated: October 13, 2020<br \/>\n&#8211; Aggregate CVE Severity Rating: Critical<\/p>\n<p>* CVE-2020-1147<\/p>\n<p>&#8211; <a href=\"https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/advisory\/CVE-2020-1147\" target=\"_blank\" rel=\"noopener noreferrer\">CVE-2020-1147<\/a> | .NET Framework, SharePoint Server, and Visual Studio Remote Code<br \/>\nExecution Vulnerability<br \/>\n&#8211; Version 2.0<br \/>\n&#8211; Reason for Revision: To comprehensively address CVE-2020-1147, Microsoft has released<br \/>\nthe following: October Security Updates for all affected versions of .NET Framework<br \/>\ninstalled on Windows 10; October 2020 Monthly Rollup updates AND updated versions of<br \/>\nthe Security Only updates released in July 2020 for all affected versions of .NET<br \/>\nFramework installed on Windows 8.1, Windows Server 2012 R2, Windows Server 2012,<br \/>\nWindows 7, Windows Server 2008 R2, and Windows Server 2008. Microsoft strongly<br \/>\nrecommends that customers install the updates to be fully protected from the<br \/>\nvulnerability. Customers who install the Security Only updates should ensure that<br \/>\nthey re-install the updates after October 13. Customers whose systems are configured<br \/>\nto receive automatic updates do not need to take any further action.<br \/>\n&#8211; Originally posted: July 14, 2020<br \/>\n&#8211; Updated: October 13, 2020<br \/>\n&#8211; Aggregate CVE Severity Rating: Critical<\/p>\n<p>**************************************************************************************<br \/>\nTitle: Microsoft Security Update Releases<br \/>\nIssued: October 15, 2020<br \/>\n**************************************************************************************<\/p>\n<p>Summary<br \/>\n=======<\/p>\n<p>The following CVEs have undergone a major revision increment:<\/p>\n<p>* CVE-2020-16943<br \/>\n* CVE-2020-17022<br \/>\n* CVE-2020-17023<br \/>\nRevision Information:<br \/>\n=====================<\/p>\n<p>* CVE-2020-16943<\/p>\n<p>&#8211; <a href=\"https:\/\/web.archive.org\/web\/20201104132304\/https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/advisory\/CVE-2020-16943\" target=\"_blank\" rel=\"noopener noreferrer\">CVE-2020-16943<\/a> | Dynamics 365 Commerce Elevation of Privilege Vulnerability<br \/>\n&#8211; Version 2.0<br \/>\n&#8211; Reason for Revision: In the Security Updates table, removed the Article and Download<br \/>\nlinks because an update is not yet available for Dynamics 365 Commerce. Customers<br \/>\nwill be notified via a revision to this CVE information when an update becomes<br \/>\navailable.<br \/>\n&#8211; Originally posted: October 13, 2020<br \/>\n&#8211; Updated: October 13, 2020<br \/>\n&#8211; Aggregate CVE Severity Rating: Important<\/p>\n<p>* CVE-2020-17022<\/p>\n<p>&#8211; <a href=\"https:\/\/web.archive.org\/web\/20201101134838\/https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/advisory\/CVE-2020-17022\" target=\"_blank\" rel=\"noopener noreferrer\">CVE-2020-17022<\/a> | Remote Desktop Services Remote Code Execution Vulnerability<br \/>\n&#8211; Version 1.0<br \/>\n&#8211; Reason for Revision: Information published.<br \/>\n&#8211; Originally posted: October 15, 2020<br \/>\n&#8211; Updated: N\/A<br \/>\n&#8211; Aggregate CVE Severity Rating: Important<\/p>\n<p>* CVE-2020-17023<\/p>\n<p>&#8211; <a href=\"https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/advisory\/CVE-2020-17023\" target=\"_blank\" rel=\"noopener noreferrer\">CVE-2020-17023<\/a> | Visual Studio JSON Remote Code Execution Vulnerability<br \/>\n&#8211; Version 1.0<br \/>\n&#8211; Reason for Revision: Information published.<br \/>\n&#8211; Originally posted: October 15, 2020<br \/>\n&#8211; Updated: N\/A<br \/>\n&#8211; Aggregate CVE Severity Rating: Important<\/p>\n","protected":false},"excerpt":{"rendered":"<p>[English]Kleiner Nachtrag vom Oktober 2020: Microsoft hatte einige Sicherheitshinweise zu Sicherheitsupdates ver\u00f6ffentlicht. Sind hier liegen geblieben, ich stelle sie mal zur Sicherheit hier ein.<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[426],"tags":[4328],"class_list":["post-237137","post","type-post","status-publish","format-standard","hentry","category-sicherheit","tag-sicherheit"],"_links":{"self":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/237137","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/comments?post=237137"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/237137\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/media?parent=237137"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/categories?post=237137"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/tags?post=237137"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}