Security Updates & Patches

Securezoo Cybersecurity Threat Center blog posts of new security updates and patches.

Microsoft fixes CredSSP vulnerability

Microsoft issued new security guidance on the Credential Security Support Provider protocol (CredSSP) vulnerability (CVE-2018-0886) that could allow remote code execution. As part of the updates, Microsoft plans to soon prevent un-patched RDP clients (that uses CredSSP) from authenticating to Windows.

Microsoft fixes CredSSP vulnerability Read More »

Microsoft February 2018 Patch Updates

Microsoft issued February 2018 Security Updates that includes more than 50 fixes, 14 of them critical. The updates address multiple Microsoft products to include Windows, Internet Explorer, Edge, Office, Office Services and Web Apps, ChakraCore and Adobe Flash.

Microsoft February 2018 Patch Updates Read More »

Intel issues new Spectre/Meltdown patch guidance

Intel said the root cause of the reboot issues have been identified. To that end, the company said customers and partners should not install its current versions of Spectre/Meltdown patches rolled out earlier this month as they “may introduce higher than expected reboots and other unpredictable system behavior.”

Intel issues new Spectre/Meltdown patch guidance Read More »

Intel issues updated security guidance on Spectre/Meltdown

Intel made an update yesterday to previously issued security advisory on the Spectre/Meltdown ‘speculation execution’ vulnerabilities that could cause information disclosure on systems running Intel processors.

Intel issues updated security guidance on Spectre/Meltdown Read More »

Oracle Critical Patch Update Advisory for January 2018

Oracle has released its Critical Patch Update Advisory for January 2018. The update includes 237 new security fixes for multiple Oracle products to include Spectre (CVE-2017-5753, CVE-2017-5715) and Meltdown (CVE-2017-5754) Intel processor vulnerabilities.

Oracle Critical Patch Update Advisory for January 2018 Read More »