Cyber Defense Magazine – July 2019

(Sean Pound) #1

June patch Tuesday


Bluekeep still the most threatening vulnerability


By chris goettl, director of product management, security, ivanti


June patch tuesday has come. Microsoft is resolving 88 unique vulnerabilities this month including four
cves that have been publicly disclosed. Public disclosure is an indicator of increased risk. Before the
update was made available, information about the vulnerability, including possible proof-of-concept code,
had already been released to the general public. This means attackers have had early access to engineer
an exploit to take advantage of these vulnerabilities. All four of the public disclosures are affecting the
windows operating system, making it the top priority to patch this month.


Publicly disclosed vulnerabilities this month:


cve-2019- 1069 is a vulnerability in the windows task scheduler which could allow elevation of privilege
on the affected system. This affects windows 10, server 2016 and later.


cve-2019- 1064 is a vulnerability in windows which could allow elevation of privilege on the affected
system. This affects windows 10, server 2016 and later.

Free download pdf