{"id":18697,"date":"2021-02-12T13:21:09","date_gmt":"2021-02-12T12:21:09","guid":{"rendered":"http:\/\/159.69.82.204\/win\/?p=18697"},"modified":"2021-02-12T13:21:09","modified_gmt":"2021-02-12T12:21:09","slug":"neue-lcken-in-tcp-ip-stacks-entdeckt-patches-fr-windows-tcp-ip-schwachstellen","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2021\/02\/12\/neue-lcken-in-tcp-ip-stacks-entdeckt-patches-fr-windows-tcp-ip-schwachstellen\/","title":{"rendered":"New vulnerabilities discovered in TCP\/IP stacks, patches for Windows TCP\/IP vulnerabilities"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline\" src=\"https:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2015\/01\/Schutz.jpg\" width=\"40\" align=\"left\" height=\"47\">[<a href=\"https:\/\/www.borncity.com\/blog\/2021\/02\/12\/neue-lcken-in-tcp-ip-stacks-entdeckt-patches-fr-windows-tcp-ip-schwachstellen\/\" target=\"_blank\" rel=\"noopener\">German<\/a>]Security researchers have found vulnerabilities in nine TCP\/IP stacks (according to Amnesia:33), and issued a warning. Microsoft has closed three critical vulnerabilities in the Windows TCP\/IP stack as of February 9, 2021, on the occasion of February Patchday.<\/p>\n<p><!--more--><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" alt=\"\" src=\"https:\/\/vg09.met.vgwort.de\/na\/179d8115206e435faef98bd1d46545ce\" width=\"1\" height=\"1\">I had reported on the vulnerabilities, called Amnesia:33, in the TCP\/IP stack of various implementations that are preferentially used in IoT devices in the blog post <a href=\"https:\/\/borncity.com\/win\/2020\/12\/08\/amnesia33-vulnerability-in-tcp-ip-stack-put-many-iot-devices-at-risk\/\">Amnesia:33 \u2013 Vulnerability in TCP\/IP stack put many IoT devices at risk<\/a> in early December 2020. <\/p>\n<h2>Forescout discloses 9 new TCP\/IP vulnerabilitie<\/h2>\n<p>The security researchers who had already published the Amnesia:33 named vulnerabilities in the TCP\/IP stack of various implementations have just found nine more vulnerabilities in the TCP\/IP implementations of various products. The collection was named as NUMBER:JACK and is described in more detail in the article <a href=\"https:\/\/www.forescout.com\/company\/blog\/numberjack-forescout-research-labs-finds-nine-isn-generation-vulnerabilities-affecting-tcpip-stacks\/\" target=\"_blank\" rel=\"noopener\">NUMBER:JACK \u2013 FORESCOUT RESEARCH LABS FINDS NINE ISN GENERATION VULNERABILITIES AFFECTING TCP\/IP<\/a>.&nbsp; Will be a problem for the many IoT devices where firmware updates are not provided to iron out the vulnerabilities.<\/p>\n<h2>Microsoft patches 3 Windows TCP\/IP vulnerabilities<\/h2>\n<p>For Patchday on Feb. 9, 2021, Microsoft patched not one but two critical vulnerabilities and one rated important vulnerability in Windows' TCP\/IP implementation with security updates. Security researcher <a href=\"https:\/\/twitter.com\/GossiTheDog\">Kevin Beaumont<\/a> pointed out in the following <a href=\"https:\/\/twitter.com\/GossiTheDog\/status\/1359213869672116230\" target=\"_blank\" rel=\"noopener\">tweet<\/a>&nbsp; that the vulnerabilities CVE-2021-24074, CVE-2021-24094 and CVE-2021-24086 were closed by updates. <\/p>\n<p><p><a href=\"https:\/\/twitter.com\/GossiTheDog\/status\/1359213869672116230\" target=\"_blank\" rel=\"noopener\"><img decoding=\"async\" title=\"Windows TCP\/IP-Schwachstellen\" alt=\"Windows TCP\/IP-Schwachstellen\" src=\"https:\/\/i.imgur.com\/vKnWlnP.png\"><\/a><\/p>\n<p>Microsoft disclosed the vulnerabilities in the blog post  <a href=\"https:\/\/msrc-blog.microsoft.com\/2021\/02\/09\/multiple-security-updates-affecting-tcp-ip\/\" target=\"_blank\" rel=\"noopener\">Multiple Security Updates Affecting TCP\/IP:\u202f CVE-2021-24074, CVE-2021-24094, and CVE-2021-24086<\/a> (see also <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/microsoft-urges-customers-to-patch-critical-windows-tcp-ip-bugs\/\" target=\"_blank\" rel=\"noopener\">this article<\/a> at Bleeping Computer). The two critical RCE vulnerabilities (CVE-2021-24074, CVE-2021-24094) are classified as complex and difficult to exploit. Microsoft believes that attackers could rather exploit the DoS vulnerability (CVE-2021-24086), which is rated as important, to create DoS exploits. Attackers could then trigger BlueScreens on the Windows system via network packets. <\/p>\n<p>To close these vulnerabilities, security updates for Windows 7 through Windows 10 20H2 and server counterparts have been available since Feb. 9, 2020 (see, for example, <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2021-24074\" target=\"_blank\" rel=\"noopener\">this Microsoft post<\/a>). Microsoft recommends installing the Windows updates promptly to address these vulnerabilities as soon as possible. If applying the update quickly is not practical, the CVEs describe workarounds that do not require a server restart. These three vulnerabilities require different remediation depending on the exposure of an affected system; however, they can be considered solutions for Internet Protocol version 4 (IPv4) and Internet Protocol version 6 (IPv6).&nbsp; <\/p>\n<p><strong>Similar articles:<br \/><\/strong><a href=\"https:\/\/borncity.com\/win\/2021\/02\/04\/microsoft-office-patchday-february-2-2021\/\">Microsoft Office Patchday (February 2, 2021)<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2021\/02\/10\/microsoft-security-update-summary-9-februar-2021\/\">Microsoft Security Update Summary (February 9, 2021)<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2021\/02\/10\/patchday-windows-10-updates-february-9-2021\/\">Patchday: Windows 10-Updates (February 9, 2021)<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2021\/02\/10\/patchday-updates-for-windows-7-server-2008-r2-9-februar-2021\/\">Patchday: Updates for Windows 7\/Server 2008 R2 (February 9, 2021)<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2021\/02\/10\/patchday-windows-8-1-server-2012-updates-february-9-2021\/\">Patchday: Windows 8.1\/Server 2012 Updates (February 9, 2021)<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2021\/02\/11\/patchday-microsoft-office-updates-9-februar-2021\/\">Patchday Microsoft Office Updates (February 9, 2021)<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[German]Security researchers have found vulnerabilities in nine TCP\/IP stacks (according to Amnesia:33), and issued a warning. Microsoft has closed three critical vulnerabilities in the Windows TCP\/IP stack as of February 9, 2021, on the occasion of February Patchday.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[580,1547,22,2],"tags":[1776,2617,69,194],"class_list":["post-18697","post","type-post","status-publish","format-standard","hentry","category-security","category-software","category-update","category-windows","tag-netzwork","tag-patchday-2-2021","tag-security","tag-windows"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/18697","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=18697"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/18697\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=18697"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=18697"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=18697"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}