Read The Times Australia

Daily Bulletin

February 2021 Patch Tuesday Commentary



Second Patch Tuesday of 2021 is here and while the CVE counts are low there are a number of publicly disclosed and zero day vulnerabilities to be concerned about. Microsoft has fixed 56 new and re-released 2 vulnerabilities (CVEs) across the Windows Operating System, Office, .Net Framework, a host of OS components and system tools and development tools. Adobe has also released a priority 1 update for Adobe Acrobat and Reader resolving 23 CVEs, one of which is actively exploited (Zero Day). Here is a quick view of the more important items to prioritise in your maintenance this month:

 

Zero Days:

Microsoft has resolved an important vulnerability (CVE-2021-1732) in the Windows Kernel, which could allow an attacker to elevate their privileges on a system. The vulnerability affects Windows 10 and corresponding server editions of the Windows OS. The vulnerability has been detected in active exploits in the wild. This is a prime example of why Risk-based prioritisation is so important. If you base your prioritisation off of vendor severity and focus on Critical you could have missed this vulnerability in your prioritisation. This vulnerability should put Windows 10 and Server 2016 and later editions into your priority bucket for remediation this month.

 

While this is a re-release from 2020, it warrants discussion. The Netlogon vulnerability (CVE-2020-1472) originally was resolved in August 2020. The update was planned to be a two-phase resolution. Initial update in August implemented the fix, but left it disabled. It also implemented auditing capabilities and guidance was provided for organisations to update and monitor the specific events to resolve any events that were legitimate then enable the enforcement when they were ready. February 2021 was defined as the date Microsoft would turn on enforcement. In September the vulnerability was exploited by threat actors and many organisations reacted quickly to enable enforcement. This re-release will turn on that enforcement for those who have not yet done so.

 

Adobe has resolved a Critical vulnerability in Adobe Acrobat and Reader (CVE-2021-21017) which has been exploited in limited attacks targeting Adobe Reader users on Windows systems. The vulnerability is a Heap-based Buffer Overflow that would allow the attacker to execute arbitrary code on the affected system. This vulnerability along with the 16 other Critical CVEs resolved in APSB21-09 should put Adobe Acrobat Reader into your priority bucket for remediation this month.

 

Publicly Disclosed:

*Public disclosure indicates information regarding a vulnerability has been exposed to the public. This could include proof-of-concept code or other information which give threat actors an advantage to develop an exploit. Public disclosure is a good metric to prioritise what vulnerabilities may warrant earlier attention.

Microsoft has resolved a vulnerability (CVE-2021-1733) in Sysinternals PsExec which could allow an attacker to elevate their privileges. PsExec is a commonly used tool by IT organisations but is also equally commonly used by threat actors utilising existing tools (Living off the land tactics).

Microsoft has resolved a pair of vulnerabilities in .Net Core (Remote Code Execution CVE-2021-26701) and .Net Core and Visual Studio (Denial of Service CVE-2021-1721) which have both been publicly disclosed. Development tools and the development supply chain are a rising concern and have been even before the recent Solarwinds breach. Development tools are updated regularly, and evaluation and update of these components should be part of every organisation's DevSecOps process.

Microsoft has resolved an Information Disclosure vulnerability in DirectX (CVE-2021-24106) which affects Windows 10 and Server 2016 and newer systems. An attacker could gain access to uninitialised memory and what information may be stored there.

Microsoft has resolved an Elevation of Privilege vulnerability in Windows Installer (CVE-2021-1727). The vulnerability affects Windows 7 and Server 2008 and newer operating systems.

Microsoft has resolved a Denial of Service vulnerability in Windows Console Driver. (CVE-2021-24098) In the vulnerability FAQ Microsoft provides some additional detail. The vulnerability would require user interaction to exploit. This could include user-provided content through a website or a specially crafted website designed to exploit the vulnerability.

 

February Priorities:

Urgent: Windows OS updates and Adobe Acrobat and Reader need immediate attention with the list of exploited and publicly disclosed vulnerabilities.

High Priority: Development tools and IT Tools need some attention. .Net Core and PsExec disclosures are a concern that should not go unaddressed. Because these development and IT tools do not follow the same update process as OS and Application updates it is important to review your DevOps processes and determine if you are able to detect and respond to updates for common dev components. For tools like PsExec it is important to understand your software inventory and where these tools are installed and ensure you can distribute updated versions as needed.

More Articles …

  1. Everything You Should Know Before You Buy Solar
  2. 5 Benefits Of Installing A VOIP Phone System In Your Business
  3. Convert PDF to PowerPoint on Windows and Your Phone
  4. A World Without Google Search
  5. The Ultimate Guide to Buying Proxies
  6. 3 Signs You Need To Change Internet Providers
  7. The Pros and Cons of Solar Energy
  8. How Modern Time Clock Software Has Improved The Time Tracking Process
  9. Patch Tuesday Commentary from Chris Goettl, Senior Director of Product Management, Security at Ivanti:
  10. The Engine Conditioning Process
  11. 3 Tech Trends You Should Keep An Eye Out For In 2021
  12. Basic Uses of Magnetic Tapes
  13. Top Productivity Apps For Writers
  14. Periodic vehicle maintenance
  15. Tire Rotation Every 6,000 Miles
  16. Everything You Wanted To Know About Solar Penrith
  17. How Available is Gigabit Fibre in Australia in 2020?
  18. Reasons To Hire A Professional For Air Conditioning Installation
  19. VR 101: A Beginner's Guide
  20. Juniper Networks Aims to Deliver a Strong Networking Experience
  21. Why Many Professionals Use ProFoam Today
  22. Keep Healthy with the Best Humidifiers
  23. The Best Android tools and Utility Apps
  24. Choose From A Wide Range Of Washing Machines At Euronics
  25. The Importance of a good website design & how it can develop your business
  26. HOW TO GET THE MOST OUT OF 1300 NUMBER CALL ROUTING SCHEMES
  27. A Look at Cryptocurrency Technology and Its Present Stage
  28. Importance of Regular Auto Repairs
  29. Tips For Getting The Right IT Support Melbourne
  30. How to Edit a PDF in Google Drive
  31. How to Improve Your Local SEO Rankings in Australia?
  32. Tips To Become An Instagram Influencer
  33. November 2020 Patch Commentary
  34. Using the Advantages of Modern E-Signing Programs with SignNow
  35. Why Should You Invest In A VPN For Netflix In China?
  36. Selecting a Laptop for Email and Work
  37. Here's Everything You Need To Know About Distribution Boards
  38. The Role of Robotic Process Automation (RPA) in Finance during COVID-19
  39. NBN Bundle Plans to Satisfy Your Appetite for Unlimited Data
  40. How to keep your devices protected while working remotely with kids
  41. The best gaming developers in the industry you don’t want to miss
  42. Understanding the Importance of Dust Suppression Systems
  43. Privacy Tips When Answering Calls
  44. Web Design Tips to Create an Online Store That Ranks Well
  45. 7 Apps College Students Shouldn’t Live Without
  46. The Key Steps Involved to Ensure Enterprise Database Security
  47. Everything You Need to Know About Hydraulic Systems
  48. 6G The Pioneers’ Choice
  49. Can New Video Games Outperform Good Old Classics?
  50. 6 Types Of Refrigerators You Will Need In Your Food Service Operation

Business News

How Telematics Helps Australian Companies Improve Productivity

Operating a commercial fleet in Australia is a uniquely demanding endeavour. Between the sprawling urban sprawl of cities like Sydney and Melbourne and the immense, unforgiving stretches of the Outb...

Daily Bulletin - avatar Daily Bulletin

Inside the Icon: The BridgeMuseum Officially Opens at the Sydney Harbour Bridge

A bold new way to experience one of Australia’s most recognisable landmarks has arrived, with BridgeClimb Sydney officially opening the all-new BridgeMuseum.  Located inside the Sydney Harbour Brid...

Daily Bulletin - avatar Daily Bulletin

Is Your Brand Showing Up in AI Search? Most Melbourne Brands Aren't.

The New Front Door Nobody Told You About Something changed. Quietly. Without a press release. The way buyers find businesses in Australia has been rewired. Not replaced, rewired. Google isn't dead...

Daily Bulletin - avatar Daily Bulletin

How Australian Businesses Can Measure SEO ROI

SEO can feel vague when you are staring at a dashboard full of numbers that do not clearly connect to revenue. The key is to measure the right signals in the right order, then tie them back to outcome...

Daily Bulletin - avatar Daily Bulletin

How Commercial Roller Shutters Improve Site Security Without Slowing Operations

Security upgrades can be frustrating when they make everyday work harder. A door that takes too long to open, creates bottlenecks at shift change, or fails at the worst time can turn “better protectio...

Daily Bulletin - avatar Daily Bulletin

Why a Document Destruction Service Still Matters for Modern Businesses

Businesses generate large volumes of information every day, from staff records and contracts to invoices, reports and customer files. While attention often focuses on how documents are stored, the way...

Daily Bulletin - avatar Daily Bulletin

Bicycle Rack Safety and Space-Smart Storage

Bike storage problems usually show up as small annoyances first: tangled handlebars, scratched frames, and bikes that topple when you pull one out. Over time, those issues become safety risks, especia...

Daily Bulletin - avatar Daily Bulletin

How to Tell if a Childcare Centre Is a Good Fit for Your Child

Choosing childcare can feel like you’re making a huge decision with limited information. Tours are short, centres are often on their best behaviour, and your child might act differently in a new space...

Daily Bulletin - avatar Daily Bulletin

Car Import Timeline: What Usually Happens at Each Stage

Importing a car into Australia can feel confusing because multiple agencies and checkpoints are involved, and the timeline is shaped as much by paperwork quality as it is by shipping speed. The most u...

Daily Bulletin - avatar Daily Bulletin

The Daily Magazine

Gold Migration Lawyers in Liquidation: How the Closure Affects Your ART Appeal

If your appeal was with Gold Migration Lawyers, a recent change to how the Tribunal decides cases ...

The pressure cooker: life in urban Australia in 2026

Australian cities have always been demanding. Long commutes, rising housing costs, busy schedules a...

What Actually Makes a Good Criminal Lawyer in Melbourne

Most people only think about this question once. That is usually too late. Most people charged wi...

Why Working With A Chatswood Tutor Can Improve Academic Performance

Academic expectations continue increasing for students across primary school, high school, and senio...

Is It Worth Getting Solar Panels in Melbourne?

The real question is not whether solar works in Melbourne. It works. The question is what it is co...

How A Diploma Of Project Management Builds Practical Skills For Modern Work Environments

Developing the ability to plan, execute, and deliver outcomes efficiently is a key requirement in to...

How to Choose the Right Football for Every Level

Choosing a football may seem straightforward, but the right option depends on who will be using it a...

What to Ask a Wedding Photographer Before You Book

Booking a wedding photographer can feel deceptively simple: you like the photos, you like the vibe...

Why Stress Relief For Dogs Is Essential For Emotional Balance And Long-Term Wellbeing

Managing emotional health is just as important as physical care when it comes to pets, which is why ...