SlideShare a Scribd company logo
1 of 47
Patch Tuesday Webinar
Wednesday, Mar 13, 2019
Hosted by: Chris Goettl & Todd Schell
Dial in: 1-877-668-4490 (US)
Event ID: 804 993 774
Copyright©2019Ivanti.Allrightsreserved
Agenda
March 2019 Patch Tuesday Overview
In the News
Bulletins
Q & A
1
2
3
4
Copyright©2019Ivanti.Allrightsreserved
 Overview
Copyright©2019Ivanti.Allrightsreserved
Copyright©2019Ivanti.Allrightsreserved
 In the News
Copyright©2019Ivanti.Allrightsreserved
In the News
 Google finds exploits in the wild using vulnerabilities in Chrome and
Windows
 https://www.zdnet.com/article/google-chrome-zero-day-was-used-together-
with-a-windows-7-zero-day/
 Google Retpoline makes its way to Windows and other platforms
 Resolves Spectre Variant 2 performance issues while keeping
mitigation in place
 https://www.zdnet.com/article/microsoft-rolls-out-googles-retpoline-spectre-
mitigation-to-windows-10-users/
 PatchManagment.org
 Update coming
 Moving from Listserver to Google Groups
 DMARC support and other security concerns
Copyright©2019Ivanti.Allrightsreserved
Zero-day Exploited Vulnerabilities
 CVE-2019-0797 and -0808 Win32k Elevation of Privilege Vulnerability
 An elevation of privilege vulnerability exists in Windows when the Win32k
component fails to properly handle objects in memory. An attacker who
successfully exploited this vulnerability could run arbitrary code in kernel mode.
An attacker could then install programs; view, change, or delete data; or create
new accounts with full user rights.
 To exploit this vulnerability, an attacker would first have to log on to the system.
An attacker could then run a specially crafted application that could exploit the
vulnerability and take control of an affected system.
 The updates address these vulnerabilities by correcting how Win32k handles
objects in memory.
Copyright©2019Ivanti.Allrightsreserved
Publicly Disclosed Vulnerabilities
 CVE-2019-0683 - Active Directory Elevation of Privilege Vulnerability
 An elevation of privilege vulnerability exists in Active Directory Forest trusts due
to a default setting that lets an attacker in the trusting forest request delegation of
a TGT for an identity from the trusted forest. To exploit this vulnerability, an
attacker would first need to compromise an Active Directory forest.
 An attacker who successfully exploited this vulnerability could request delegation
of a TGT for an identity from the trusted forest.
 This update addresses the vulnerability by ensuring Active Directory Forest trusts
disable TGT delegation by default.
Copyright©2019Ivanti.Allrightsreserved
Publicly Disclosed Vulnerabilities (cont)
 CVE-2019-0754 - Windows Denial of Service Vulnerability
 A denial of service vulnerability exists when Windows improperly handles objects
in memory. An attacker who successfully exploited the vulnerability could cause a
target system to stop responding.
 To exploit this vulnerability, an attacker would have to log on to an affected
system and run a specially crafted application. The vulnerability would not allow
an attacker to execute code or to elevate user rights directly, but it could be used
to cause a target system to stop responding.
 The update addresses the vulnerability by correcting how Windows handles
objects in memory.
Copyright©2019Ivanti.Allrightsreserved
Publicly Disclosed Vulnerabilities (cont)
 CVE-2019-0757 - NuGet Package Manager Tampering Vulnerability
 A tampering vulnerability exists in the NuGet Package Manager for Linux and
Mac that could allow an authenticated attacker to modify a NuGet package's
folder structure. An attacker who successfully exploited this vulnerability could
potentially modify files and folders that are unpackaged on a system.
 To exploit this vulnerability, an attacker would need to log on to the affected
system and tamper with the folder contents of a package prior to building or
installation of an application.
 The security update addresses the vulnerability by correcting permissions on
folders inside the NuGet packages folder structure.
Copyright©2019Ivanti.Allrightsreserved
Publicly Disclosed Vulnerabilities (cont)
 CVE-2019-0809 - Visual Studio Remote Code Execution Vulnerability
 A remote code execution vulnerability exists when the Visual Studio C++
Redistributable Installer improperly validates input before loading dynamic link
library (DLL) files. An attacker who successfully exploited the vulnerability could
execute arbitrary code in the context of the current user. Users whose accounts
are configured to have fewer user rights on the system could be less impacted
than users who operate with administrative user rights.
 To exploit the vulnerability, an attacker must place a malicious DLL on a local
system and convince a user to execute a specific executable.
 The security update addresses the vulnerability by correcting how the Visual
Studio C++ Redistributable Installer validates input before loading DLL files.
Copyright©2019Ivanti.Allrightsreserved
Microsoft Finally Switching to SHA2 Certificates
 https://support.microsoft.com/en-us/help/4472027/2019-sha-2-code-signing-
support-requirement-for-windows-and-wsus
 Phased migration process from March to September 2019
 Dual signed SHA1/SHA2 migrating to SHA2 signed only
 Legacy OS and WSUS require updates
 Advisory 190009 SHA-2 Code Sign Support Advisory
 Windows 7 and Server 2008 R2 migration update released this month
 https://support.microsoft.com/en-us/help/4474419/sha-2-code-signing-support-
update-for-windows-7-and-server-2008-r2
 All current Ivanti products support this change
Copyright©2019Ivanti.Allrightsreserved
Microsoft Patch Tuesday Updates of Interest
 Advisory 990001 Latest Servicing Stack Updates
 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV990001
 March Releases
 KB 4490628 - Windows 7 and Server 2008 R2
 Development Tool Updates
 Updates for Visual Studio for Mac
 Updates for Team Foundation Server 2017 and 2018
 Updated Development Components/Packages
 ChakraCore
 .NET Core 1.1 SDK and 2.1.500 SDK
 NuGet 4.3.1 – 4.9.4
Copyright©2019Ivanti.Allrightsreserved
Windows 10 Lifecycle Awareness
 Windows 10 Branch Support
 Complete Lifecycle Fact Sheet
 https://support.microsoft.com/en-us/help/13853/windows-lifecycle-fact-sheet
Source: Microsoft
Copyright©2019Ivanti.Allrightsreserved
Weekly Patch BLOG
 Latest Patch Releases
 Microsoft and Third-party
 Security and non-Security
 CVE Analysis
 Security Events of Interest
 Host: Brian Secrist
 https://www.ivanti.com/blog/
topics/patch-tuesday
Copyright©2019Ivanti.Allrightsreserved
Patch Content Announcement System
Announcements Posted on Community Pages
 https://community.ivanti.com/community/other/bulletins/patch-content-
notifications
 Subscribe to receive email or RSS notifications for desired product(s)
Copyright©2019Ivanti.Allrightsreserved
 Bulletins
Copyright©2019Ivanti.Allrightsreserved
Chrome-247: Security Update for Chrome
 Maximum Severity: Critical
 Affected Products: Google Chrome
 Description: The stable channel has been updated to 73.0.3683.75 for Windows, Mac
and Linux. This release contains a large number of security fixes as well as feature
improvements.
 Impact: Remote Code Execution
 Fixes 60 Vulnerabilities: See
https://chromereleases.googleblog.com/2019/03/stable-channel-update-for-
desktop_12.html for a list of CVEs remediated.
 Restart Required: Requires restart
Copyright©2019Ivanti.Allrightsreserved
MS19-03-W10: Windows 10 Update
 Maximum Severity: Critical
 Affected Products: Microsoft Windows 10 Versions 1607, 1703, 1709, 1803, 1809,
Server 2016, Server 2019, Server 1709, Server 1803, IE 11 and Microsoft Edge
 Description: This bulletin references 9 KB articles. See KBs for the list of changes.
 Impact: Remote Code Execution, Security Feature Bypass, Denial of Service,
Elevation of Privilege, and Information Disclosure
 Fixes 55 Vulnerabilities: CVE-2019-0797 is known to be exploited in the wild and
CVE-2019-0754 is publicly disclosed. See Details column of Security Update Guide for
the complete list of CVEs.
 Restart Required: Requires restart
 Known Issues: See next slides
Copyright©2019Ivanti.Allrightsreserved
March Known Issues for Windows 10
 KB 4489882 – Windows 10, Version 1607 and Server 2016
 For hosts managed by System Center Virtual Machine Manager (SCVMM), SCVMM cannot
enumerate and manage logical switches deployed on the host after installing the update.
Additionally, if you do not follow the best practices, a stop error may occur in vfpext.sys on the
hosts. Workaround: 1.Run mofcomp on the following mof files on the affected host:
Scvmmswitchportsettings.mof and VMMDHCPSvr.mof. Follow the best practices.
 After installing KB4467684, the cluster service may fail to start with the error “2245
(NERR_PasswordTooShort)” if the group policy “Minimum Password Length” is configured with
greater than 14 characters. Workaround: Set the domain default "Minimum Password Length"
policy to less than or equal to 14 characters. Microsoft is working on a resolution.
 After installing this update, MSXML6 causes applications to stop responding if an exception was
thrown during node operations, such as appendChild(), insertBefore(), and moveNode(). Group
Policy editor may also be affected when editing a Group Policy Object (GPO) that contains a
Group Policy Preference for Internet Settings. Workaround: None. Microsoft is working on a
resolution.
Copyright©2019Ivanti.Allrightsreserved
March Known Issues for Windows 10 (cont)
 KB 4487026 – Windows 10, Version 1607 and Server 2016 (cont)
 After installing this update, Internet Explorer 11 may have authentication issues. This occurs
when two or more people use the same user account for multiple, concurrent login sessions on
the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal
Server logons. Symptoms include:
 Cache size and location show zero or empty.
 Keyboard shortcuts may not work properly.
 Webpages may intermittently fail to load or render correctly.
 Issues with credential prompts.
 Issues when downloading files.
 Workaround: Create unique user accounts so that two people don’t share the same user
account when logging on to a Windows Server machine. Additionally, disable multiple RDP
sessions for a single user account for a specific Windows Server.
Copyright©2019Ivanti.Allrightsreserved
March Known Issues for Windows 10 (cont)
 KB 4489899 – Windows 10, Version 1809, Server 2019
 After installing this update, Internet Explorer 11 may have authentication issues. This occurs
when two or more people use the same user account for multiple, concurrent login sessions on
the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal
Server logons. Symptoms include:
 Cache size and location show zero or empty.
 Keyboard shortcuts may not work properly.
 Webpages may intermittently fail to load or render correctly.
 Issues with credential prompts.
 Issues when downloading files.
 Workaround: Create unique user accounts so that two people don’t share the same user
account when logging on to a Windows Server machine. Additionally, disable multiple RDP
sessions for a single user account for a specific Windows Server.
Copyright©2019Ivanti.Allrightsreserved
March Known Issues for Windows 10 (cont)
 KB 4489899 – Windows 10, Version 1809, Server 2019 (cont)
 After installing this update on machines that have multiple audio devices, applications that
provide advanced options for internal or external audio output devices may stop working
unexpectedly. This issue occurs for users that select an audio output device different from the
“Default Audio Device”. Examples of applications that may stop working include:
 Windows Media Player
 Realtek HD Audio Manager
 Sound Blaster Control Panel
 Workaround: As a temporary solution, select the “Default Audio Device” in the options provided
by the application; please refer to the application’s user manual for details. Microsoft is working
on a resolution and estimates a solution will be available in late March 2019.
 After installing this update, MSXML6 causes applications to stop responding if an exception was
thrown during node operations, such as appendChild(), insertBefore(), and moveNode(). Group
Policy editor may also be affected when editing a Group Policy Object (GPO) that contains a
Group Policy Preference for Internet Settings. Workaround: None. Microsoft is working on a
resolution.
Copyright©2019Ivanti.Allrightsreserved
MS19-03-IE: Security Updates for Internet Explorer
 Maximum Severity: Critical
 Affected Products: Microsoft Internet Explorer 9,10,11
 Description: The fixes that are included in the cumulative Security Update for Internet
Explorer are also included in the March 2019 Security Monthly Quality Rollup. Installing
either the Security Update for Internet Explorer or the Security Monthly Quality Rollup
installs the fixes that are in the cumulative update. This bulletin references 11 KB
articles.
 Impact: Remote Code Execution and Security Feature Bypass
 Fixes 12 Vulnerabilities: CVE-2019-0609, CVE-2019-0665, CVE-2019-0666, CVE-
2019-0667, CVE-2019-0680, CVE-2019-0746, CVE-2019-0761, CVE-2019-0762, CVE-
2019-0763, CVE-2019-0768, CVE-2019-0780, CVE-2019-0783
 Restart Required: Requires browser restart
 Known Issues: See IE issues associated with OS updates
Copyright©2019Ivanti.Allrightsreserved
MS19-03-MR2K8: Monthly Rollup for Windows Server 2008
 Maximum Severity: Critical
 Affected Products: Microsoft Windows Server 2008 and Internet Explorer 9
 Description: This security update includes improvements and fixes that were a part of update KB
4487022 (released February 19, 2019). Security updates to Internet Explorer 9.1, Windows App
Platform and Frameworks, Windows Server, Windows Hyper-V, Windows Storage and Filesystems,
Windows Fundamentals, Windows Kernel, Windows MSXML, and the Microsoft JET Database
Engine. This bulletin is based on KB 4489880.
 Impact: Remote Code Execution, Denial of Service, Elevation of Privilege, and
Information Disclosure
 Fixes 21 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019-
0683, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-
2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772,
CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0808, CVE-2019-
0821
 Restart Required: Requires restart
 Known Issues: None reported
Copyright©2019Ivanti.Allrightsreserved
MS19-03-SO2K8: Security-only Update for Windows Server 2008
 Maximum Severity: Critical
 Affected Products: Microsoft Windows Server 2008
 Description: Security updates to Windows App Platform and Frameworks, Windows
Server, Windows Hyper-V, Windows Storage and Filesystems, Windows
Fundamentals, Windows Kernel, Windows MSXML, and the Microsoft JET Database
Engine. This bulletin is based on KB 4489876.
 Impact: Remote Code Execution, Denial of Service, Elevation of Privilege, and
Information Disclosure
 Fixes 21 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019-
0683, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-
2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772,
CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0808, CVE-2019-
0821
 Restart Required: Requires restart
 Known Issues: None reported
Copyright©2019Ivanti.Allrightsreserved
MS19-03-MR7: Monthly Rollup for Win 7 and Server 2008 R2
 Maximum Severity: Critical
 Affected Products: Microsoft Windows 7, Server 2008 R2, and IE
 Description: This security update includes improvements and fixes that were a part of update KB
4486565 (released February 19, 2019). Security updates to Internet Explorer, Windows App
Platform and Frameworks, Windows Cryptography, Windows Hyper-V, Windows Storage and
Filesystems, Windows Fundamentals, Windows Server, Windows Kernel, Windows MSXML, and
the Microsoft JET Database Engine. This bulletin is based on KB 4489878.
 Impact: Remote Code Execution, Denial of Service, Elevation of Privilege, and
Information Disclosure
 Fixes 21 (shown) + 12 (IE) Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-
2019-0617, CVE-2019-0683, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704,
CVE-2019-0754, CVE-2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-
0767, CVE-2019-0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-
2019-0808, CVE-2019-0821, ADV190009
 Restart Required: Requires restart
 Known Issues: See next slide
Copyright©2019Ivanti.Allrightsreserved
March Known Issues for Windows 7 and Server 2008 R2
 KB 4489878 – Windows 7 Service Pack 1, Windows Server 2008 R2 Service
Pack 1 (Monthly Rollup)
 KB 4489885 – Windows 7 Service Pack 1, Windows Server 2008 R2 Service
Pack 1 (Security-only update)
 After installing this update, Internet Explorer 10 may have authentication issues. This occurs
when two or more people use the same user account for multiple, concurrent login sessions on
the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal
Server logons. Symptoms include:
 Cache size and location show zero or empty.
 Keyboard shortcuts may not work properly.
 Webpages may intermittently fail to load or render correctly.
 Issues with credential prompts.
 Issues when downloading files.
 Workaround: Create unique user accounts so that two people don’t share the same user
account when logging on to a Windows Server machine. Additionally, disable multiple RDP
sessions for a single user account for a specific Windows Server.
Copyright©2019Ivanti.Allrightsreserved
MS19-03-SO7: Security-only Update for Win 7 and Server 2008 R2
 Maximum Severity: Critical
 Affected Products: Microsoft Windows 7, Server 2008 R2
 Description: Security updates to Windows App Platform and Frameworks, Windows
Cryptography, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals,
Windows Server, Windows Kernel, Windows MSXML, and the Microsoft JET Database Engine.
This bulletin is based on KB 4489885.
 Impact: Remote Code Execution, Denial of Service, Elevation of Privilege, and
Information Disclosure
 Fixes 21 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019-
0683, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-
2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772,
CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0808, CVE-2019-
0821, ADV190009
 Restart Required: Requires restart
 Known Issues: See previous slide
Copyright©2019Ivanti.Allrightsreserved
MS19-03-MR8: Monthly Rollup for Server 2012
 Maximum Severity: Critical
 Affected Products: Microsoft Server 2012 and IE
 Description: This security update includes improvements and fixes that were a part of update KB
4487024 (released February 19, 2019). Security updates to Internet Explorer, Windows App
Platform and Frameworks, Windows Hyper-V, Windows Storage and Filesystems, Windows
Fundamentals, Windows Kernel, Windows Server, and the Microsoft JET Database Engine. This
bulletin is based on KB 4489891.
 Impact: Remote Code Execution, Denial of Service, Elevation of Privilege and
Information Disclosure
 Fixes 20 (shown) + 12 (IE) Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-
2019-0617, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754,
CVE-2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-
0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0797, CVE-
2019-0821
 Restart Required: Requires restart
 Known Issues: See next slide
Copyright©2019Ivanti.Allrightsreserved
March Known Issues for Server 2012
 KB 4489891 – Windows Server 2012 (Monthly Rollup)
 KB 4489884 – Windows Server 2012 (Security-only update)
 After installing this update, Internet Explorer 10 may have authentication issues. This occurs
when two or more people use the same user account for multiple, concurrent login sessions on
the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal
Server logons. Symptoms include:
 Cache size and location show zero or empty.
 Keyboard shortcuts may not work properly.
 Webpages may intermittently fail to load or render correctly.
 Issues with credential prompts.
 Issues when downloading files.
 Workaround: Create unique user accounts so that two people don’t share the same user
account when logging on to a Windows Server machine. Additionally, disable multiple RDP
sessions for a single user account for a specific Windows Server.
Copyright©2019Ivanti.Allrightsreserved
MS19-03-SO8: Security-only Update for Server 2012
 Maximum Severity: Critical
 Affected Products: Microsoft Server 2012
 Description: Security updates to Windows App Platform and Frameworks, Windows Hyper-V,
Windows Storage and Filesystems, Windows Fundamentals, Windows Kernel, Windows Server,
and the Microsoft JET Database Engine. This bulletin is based on KB 4489884.
 Impact: Remote Code Execution, Denial of Service, Elevation of Privilege and
Information Disclosure
 Fixes 20 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019-
0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-2019-0755, CVE-
2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772, CVE-2019-0774,
CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0797, CVE-2019-0821
 Restart Required: Requires restart
 Known Issues: See previous slide
Copyright©2019Ivanti.Allrightsreserved
MS19-03-MR81: Monthly Rollup for Win 8.1 and Server 2012 R2
 Maximum Severity: Critical
 Affected Products: Microsoft Windows 8.1, Server 2012 R2, and IE
 Description: This security update includes improvements and fixes that were a part of update KB
4487016 (released February 19, 2019). Security updates to Internet Explorer, Windows App
Platform and Frameworks, Windows Hyper-V, Windows Storage and Filesystems, Windows
Fundamentals, Windows Kernel, Windows Server, Windows MSXML, and the Microsoft JET
Database Engine. This bulletin is based on KB 4489881.
 Impact: Remote Code Execution, Denial of Service, Elevation of Privilege and
Information Disclosure
 Fixes 20 (shown) + 12 (IE) Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-
2019-0617, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754,
CVE-2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-
0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0797, CVE-
2019-0821
 Restart Required: Requires restart
 Known Issues: See next slide
Copyright©2019Ivanti.Allrightsreserved
February Known Issues for Windows 8.1 and Server 2012 R2
 KB 4489881 – Windows 8.1, Windows Server 2012 R2 (Monthly Rollup)
 KB 4489883 – Windows 8.1, Windows Server 2012 R2 (Security-only update)
 After installing this update, Internet Explorer 11 may have authentication issues. This occurs
when two or more people use the same user account for multiple, concurrent login sessions on
the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal
Server logons. Symptoms include:
 Cache size and location show zero or empty.
 Keyboard shortcuts may not work properly.
 Webpages may intermittently fail to load or render correctly.
 Issues with credential prompts.
 Issues when downloading files.
 Workaround: Create unique user accounts so that two people don’t share the same user
account when logging on to a Windows Server machine. Additionally, disable multiple RDP
sessions for a single user account for a specific Windows Server.
Copyright©2019Ivanti.Allrightsreserved
MS19-03-SO81: Security-only Update for Win 8.1 and Server 2012 R2
 Maximum Severity: Critical
 Affected Products: Microsoft Windows 8.1, Server 2012 R2
 Description: Security updates to Windows App Platform and Frameworks, Windows Hyper-V,
Windows Storage and Filesystems, Windows Fundamentals, Windows Kernel, Windows Server,
Windows MSXML, and the Microsoft JET Database Engine. This bulletin is based on KB 4489883.
 Impact: Remote Code Execution, Denial of Service, Elevation of Privilege and
Information Disclosure
 Fixes 20 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019-
0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-2019-0755, CVE-
2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772, CVE-2019-0774,
CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0797, CVE-2019-0821
 Restart Required: Requires restart
 Known Issues: See previous slide
Copyright©2019Ivanti.Allrightsreserved
MS19-03-SPT: Security Updates for SharePoint Server
 Maximum Severity: Important
 Affected Products: Microsoft Enterprise SharePoint Server 2013, 2016
 Description: This security update resolves a cross-site-scripting (XSS) vulnerability if
Microsoft SharePoint Server does not correctly sanitize a specially crafted web request
to an affected SharePoint server. This bulletin is based on KB articles 4462208 and
4462211.
 Impact: Tampering
 Fixes 1 Vulnerability: CVE-2019-0778
 Restart Required: Requires Restart
 Known Issues: None reported
Copyright©2019Ivanti.Allrightsreserved
MS19-03-OFF: Security Updates for Microsoft Office
 Maximum Severity: Important
 Affected Products: Office 2010, Lync Server 2013, Skype Business Server 2015
 Description: This security update resolves vulnerabilities in several Microsoft Office
applications. This bulletin references KB articles 3061064, 2809243, and 4462226.
 Impact: Remote Code Execution and Spoofing
 Fixes 2 Vulnerabilities: CVE-2019-0748, CVE-2019-0798
 Restart Required: Requires application restart
 Known Issues: None reported
Copyright©2019Ivanti.Allrightsreserved
MS19-03-O365: Security Updates for Office 365 ProPlus
 Maximum Severity: Recommended
 Affected Products: Office 365 ProPlus, Office 2019
 Description: This month’s update resolved various bugs and performance issues in
Microsoft Office 365 applications. Information on Office 365 ProPlus updates is
available at https://docs.microsoft.com/en-us/officeupdates/release-notes-office365-
proplus
 Impact: Defense in Depth
 No Vulnerabilities Reported
 Restart Required: Requires application restart
 Known Issues: None reported
Copyright©2019Ivanti.Allrightsreserved
MS19-03-AFP: Security Update for Adobe Flash Player
 Maximum Severity: Recommended
 Affected Products: Adobe Flash Player
 Description: This security update resolves vulnerabilities in Adobe Flash Player that is
installed on any supported edition of Windows Server 2016, Windows 10 Version 1809,
Windows 10 Version 1803, Windows 10 Version 1709, Windows 10 Version 1703,
Windows 10 Version 1607, Windows 10 (RTM), Windows Server 2012, Windows
Server 2012 R2, Windows 8.1, or Windows RT 8.1. This bulletin is based on
ADV190008.
 Impact: Defense in Depth
 No Vulnerabilities Reported
 Restart Required: Requires application restart
Copyright©2019Ivanti.Allrightsreserved
 Maximum Severity: Recommended
 Affected Products: Adobe Flash Player, CCleaner, Skype, GoToMeeting, Zoom
 Description: Non-Security updates may include critical bug fixes and feature updates.
Depending on what version you are updating from a Non-Security update could include
security fixes from previous updates you have not yet applied. Ivanti recommends
updating 3rd party applications as regularly as possible to ensure additional security
threats are not exposed.
Non-security Updates
Copyright©2019Ivanti.Allrightsreserved
Between Patch Tuesday’s
New Product Support: Slack MSI
Security Updates: 7-Zip (1), Adobe Acrobat (1), CCleaner (2), Google Chrome (3),
CoreFTP (1), DropBox (2), Firefox (1), Firefox ESR (1), Foxit Reader (2), Foxit Phantom
PDF (1), FileZilla (2), GOM Player (1), LibreOffice (1), Malwarebytes (1), Microsoft (2),
Nitro Pro (3), Node.JS (7), Notepad++ (1), Opera (3), RealTimes (1), Slack (1),
Thunderbird (3), TortoiseGit (1), Tomcat (1), TeamViewer (1), WinSCP (1), Wireshark (3),
Webex Productivity Tools (1), WinRAR (1)
Non-Security Updates: Audacity (1), BlueJeans (1), Google Drive File Stream (1),
GoodSync (3), GoToMeeting (2), Microsoft (46), NVivo (1), Power BI Desktop (1), Plex
Media Player (2), PSPad (1), R for Windows (1), Royal TS (1), Skype (2), Snagit (1),
TreeSize Free (2), Visual Studio Code (2), XnView (1), Zoom Client (2), Zoom Outlook
Plugin (2)
Copyright©2019Ivanti.Allrightsreserved
Third Party CVE Information
 Google Chrome 72.0.3626.121
 CHROME-246, QGC7203626121
 Fixes 1 Vulnerability: CVE-2019-5786
 WinRAR 5.70
 WRAR-017, QWRAR570
 Fixes 4 Vulnerabilities: CVE-2018-20250, CVE-2018-20251, CVE-2018-
20252, CVE-2018-20253
 Webex Productivity Tools 33.0.7.23
 WPT-026, QWPT330723
 Fixes 1 Vulnerability: CVE-2019-1674
 Thunderbird 60.5.1
 TB19-6051, QTB6051
 Fixes 4 Vulnerabilities: CVE-2018-18335, CVE-2018-18356, CVE-2018-
18509, CVE-2019-5785
Copyright©2019Ivanti.Allrightsreserved
Third Party CVE Information (cont)
 Node.JS 6.17.0 (Maintain)
 NOJSM-003, QNODEJSM6170
 Fixes 3 Vulnerabilities: CVE-2019-1559, CVE-2019-5737, CVE-2019-5739
 Node.JS 10.15.2 (LTS Upper)
 NOJSLU-006, QNODEJSLU10152
 Fixes 1 Vulnerability: CVE-2019-5737
 Node.JS 8.15.1 (LTS Lower)
 NOJSLL-004, QNODEJSLL8151
 Fixes 2 Vulnerabilities: CVE-2019-1559, CVE-2019-5737
 Node.JS 11.10.1 (Current)
 NOJSC-010, QNODEJSC11101
 Fixes 1 Vulnerability: CVE-2019-5737
Copyright©2019Ivanti.Allrightsreserved
Third Party CVE Information (cont)
 Adobe Acrobat and Reader
 APSB19-13, QARDC1901020098MUI, QARDC1901020098,
QARDC1701130127MUI, QARDC1500630482MUI, QADC1901020098,
QADC1701130127, QADC1500630482
 Fixes 1 Vulnerability: CVE-2019-7815
 Wireshark 2.6.7
 WIRES-089, QWIRES267
 Fixes 2 Vulnerabilities: CVE-2019-9208,CVE-2019-9209
 Wireshark 2.4.13
 WIRES-090, QWIRES2413
 Fixes 2 Vulnerabilities: CVE-2019-9208,CVE-2019-9209
Copyright©2019Ivanti.Allrightsreserved
Nashville | April 29-May 2, 2019 | Interchange.ivanti.com
Engage in
Deep-Dive Technical
Training
Meet One-on-One
with Product
Experts
Gain Product
Roadm ap
Insights
Hear from
IT Industry
Experts
Network with
Leaders and
Peers
Early Bird: $1,495 til March 29
$100 off with code INTWEBNASH19
Thank You

More Related Content

What's hot

December 2018 Patch Tuesday Analysis
December 2018 Patch Tuesday AnalysisDecember 2018 Patch Tuesday Analysis
December 2018 Patch Tuesday AnalysisIvanti
 
Everything You Need to Know About BlueKeep
Everything You Need to Know About BlueKeepEverything You Need to Know About BlueKeep
Everything You Need to Know About BlueKeepIvanti
 
March 2021 Patch Tuesday
March 2021 Patch TuesdayMarch 2021 Patch Tuesday
March 2021 Patch TuesdayIvanti
 
August Patch Tuesday Analysis
August Patch Tuesday AnalysisAugust Patch Tuesday Analysis
August Patch Tuesday AnalysisIvanti
 
Ivanti Patch Tuesday for November 2019
Ivanti Patch Tuesday for November 2019Ivanti Patch Tuesday for November 2019
Ivanti Patch Tuesday for November 2019Ivanti
 
September 2019 Patch Tuesday
September 2019 Patch TuesdaySeptember 2019 Patch Tuesday
September 2019 Patch TuesdayIvanti
 
September Patch Tuesday Analysis 2018
September Patch Tuesday Analysis 2018September Patch Tuesday Analysis 2018
September Patch Tuesday Analysis 2018Ivanti
 
October 2017 Ivanti Patch Tuesday Analysis
October 2017 Ivanti Patch Tuesday AnalysisOctober 2017 Ivanti Patch Tuesday Analysis
October 2017 Ivanti Patch Tuesday AnalysisIvanti
 
January Patch Tuesday Webinar 2018
January Patch Tuesday Webinar 2018January Patch Tuesday Webinar 2018
January Patch Tuesday Webinar 2018Ivanti
 
December 2017 Patch Tuesday
December 2017 Patch TuesdayDecember 2017 Patch Tuesday
December 2017 Patch TuesdayIvanti
 
February 2018 Patch Tuesday Analysis
February 2018 Patch Tuesday AnalysisFebruary 2018 Patch Tuesday Analysis
February 2018 Patch Tuesday AnalysisIvanti
 
Patch Tuesday Analysis - August 2015
Patch Tuesday Analysis - August 2015Patch Tuesday Analysis - August 2015
Patch Tuesday Analysis - August 2015Ivanti
 
Ivanti Patch Tuesday for December 2019
Ivanti Patch Tuesday for December 2019Ivanti Patch Tuesday for December 2019
Ivanti Patch Tuesday for December 2019Ivanti
 
Ivanti Patch Tuesday November 2017
Ivanti Patch Tuesday November 2017Ivanti Patch Tuesday November 2017
Ivanti Patch Tuesday November 2017Ivanti
 
December2016 patchtuesdayshavlik
December2016 patchtuesdayshavlikDecember2016 patchtuesdayshavlik
December2016 patchtuesdayshavlikLANDESK
 
Patch Tuesday Analysis - December 2015
Patch Tuesday Analysis - December 2015Patch Tuesday Analysis - December 2015
Patch Tuesday Analysis - December 2015Ivanti
 
Patch Tuesday Analysis - July 2015
Patch Tuesday Analysis - July 2015Patch Tuesday Analysis - July 2015
Patch Tuesday Analysis - July 2015Ivanti
 
January2017 patchtuesdayshavlik
January2017 patchtuesdayshavlikJanuary2017 patchtuesdayshavlik
January2017 patchtuesdayshavlikLANDESK
 
August Patch Tuesday 2016
August Patch Tuesday 2016August Patch Tuesday 2016
August Patch Tuesday 2016LANDESK
 

What's hot (19)

December 2018 Patch Tuesday Analysis
December 2018 Patch Tuesday AnalysisDecember 2018 Patch Tuesday Analysis
December 2018 Patch Tuesday Analysis
 
Everything You Need to Know About BlueKeep
Everything You Need to Know About BlueKeepEverything You Need to Know About BlueKeep
Everything You Need to Know About BlueKeep
 
March 2021 Patch Tuesday
March 2021 Patch TuesdayMarch 2021 Patch Tuesday
March 2021 Patch Tuesday
 
August Patch Tuesday Analysis
August Patch Tuesday AnalysisAugust Patch Tuesday Analysis
August Patch Tuesday Analysis
 
Ivanti Patch Tuesday for November 2019
Ivanti Patch Tuesday for November 2019Ivanti Patch Tuesday for November 2019
Ivanti Patch Tuesday for November 2019
 
September 2019 Patch Tuesday
September 2019 Patch TuesdaySeptember 2019 Patch Tuesday
September 2019 Patch Tuesday
 
September Patch Tuesday Analysis 2018
September Patch Tuesday Analysis 2018September Patch Tuesday Analysis 2018
September Patch Tuesday Analysis 2018
 
October 2017 Ivanti Patch Tuesday Analysis
October 2017 Ivanti Patch Tuesday AnalysisOctober 2017 Ivanti Patch Tuesday Analysis
October 2017 Ivanti Patch Tuesday Analysis
 
January Patch Tuesday Webinar 2018
January Patch Tuesday Webinar 2018January Patch Tuesday Webinar 2018
January Patch Tuesday Webinar 2018
 
December 2017 Patch Tuesday
December 2017 Patch TuesdayDecember 2017 Patch Tuesday
December 2017 Patch Tuesday
 
February 2018 Patch Tuesday Analysis
February 2018 Patch Tuesday AnalysisFebruary 2018 Patch Tuesday Analysis
February 2018 Patch Tuesday Analysis
 
Patch Tuesday Analysis - August 2015
Patch Tuesday Analysis - August 2015Patch Tuesday Analysis - August 2015
Patch Tuesday Analysis - August 2015
 
Ivanti Patch Tuesday for December 2019
Ivanti Patch Tuesday for December 2019Ivanti Patch Tuesday for December 2019
Ivanti Patch Tuesday for December 2019
 
Ivanti Patch Tuesday November 2017
Ivanti Patch Tuesday November 2017Ivanti Patch Tuesday November 2017
Ivanti Patch Tuesday November 2017
 
December2016 patchtuesdayshavlik
December2016 patchtuesdayshavlikDecember2016 patchtuesdayshavlik
December2016 patchtuesdayshavlik
 
Patch Tuesday Analysis - December 2015
Patch Tuesday Analysis - December 2015Patch Tuesday Analysis - December 2015
Patch Tuesday Analysis - December 2015
 
Patch Tuesday Analysis - July 2015
Patch Tuesday Analysis - July 2015Patch Tuesday Analysis - July 2015
Patch Tuesday Analysis - July 2015
 
January2017 patchtuesdayshavlik
January2017 patchtuesdayshavlikJanuary2017 patchtuesdayshavlik
January2017 patchtuesdayshavlik
 
August Patch Tuesday 2016
August Patch Tuesday 2016August Patch Tuesday 2016
August Patch Tuesday 2016
 

Similar to March 2019 Patch Tuesday Analysis

Ivanti Patch Tuesday for February 2020
Ivanti Patch Tuesday for February 2020Ivanti Patch Tuesday for February 2020
Ivanti Patch Tuesday for February 2020Ivanti
 
January Patch Tuesday 2019
January Patch Tuesday 2019January Patch Tuesday 2019
January Patch Tuesday 2019Ivanti
 
July Patch Tuesday 2019
July Patch Tuesday 2019July Patch Tuesday 2019
July Patch Tuesday 2019Ivanti
 
Ivanti Patch Tuesday for October 2019
Ivanti Patch Tuesday for October 2019Ivanti Patch Tuesday for October 2019
Ivanti Patch Tuesday for October 2019Ivanti
 
Ivanti Patch Tuesday for March 2020
Ivanti Patch Tuesday for March 2020Ivanti Patch Tuesday for March 2020
Ivanti Patch Tuesday for March 2020Ivanti
 
July Patch Tuesday 2020
July Patch Tuesday 2020July Patch Tuesday 2020
July Patch Tuesday 2020Dan Lalli
 
Patch Tuesday de Julio
Patch Tuesday de JulioPatch Tuesday de Julio
Patch Tuesday de JulioIvanti
 
Analyse Patch Tuesday - mai
Analyse Patch Tuesday - maiAnalyse Patch Tuesday - mai
Analyse Patch Tuesday - maiIvanti
 
2023 May Patch Tuesday
2023 May Patch Tuesday2023 May Patch Tuesday
2023 May Patch TuesdayIvanti
 
Analyse Patch Tuesday - Juillet
Analyse Patch Tuesday - JuilletAnalyse Patch Tuesday - Juillet
Analyse Patch Tuesday - JuilletIvanti
 
2023 July Patch Tuesday
2023 July Patch Tuesday2023 July Patch Tuesday
2023 July Patch TuesdayIvanti
 
June Patch Tuesday 2019
June Patch Tuesday 2019June Patch Tuesday 2019
June Patch Tuesday 2019Ivanti
 
Ivanti May 2020 Patch Tuesday
Ivanti May 2020 Patch TuesdayIvanti May 2020 Patch Tuesday
Ivanti May 2020 Patch TuesdayIvanti
 
April 2019 Patch Tuesday
April 2019 Patch TuesdayApril 2019 Patch Tuesday
April 2019 Patch TuesdayIvanti
 
2022 March Patch Tuesday
2022 March Patch Tuesday2022 March Patch Tuesday
2022 March Patch TuesdayIvanti
 
Patch Tuesday Analysis - September 2015
Patch Tuesday Analysis - September 2015Patch Tuesday Analysis - September 2015
Patch Tuesday Analysis - September 2015Ivanti
 
2023 November Patch Tuesday
2023 November Patch Tuesday2023 November Patch Tuesday
2023 November Patch TuesdayIvanti
 
Français Patch Tuesday – Novembre
Français Patch Tuesday – NovembreFrançais Patch Tuesday – Novembre
Français Patch Tuesday – NovembreIvanti
 
2024 Janvier Patch Tuesday
2024 Janvier Patch Tuesday2024 Janvier Patch Tuesday
2024 Janvier Patch TuesdayIvanti
 
2024 Gennaio Patch Tuesday
2024 Gennaio Patch Tuesday2024 Gennaio Patch Tuesday
2024 Gennaio Patch TuesdayIvanti
 

Similar to March 2019 Patch Tuesday Analysis (20)

Ivanti Patch Tuesday for February 2020
Ivanti Patch Tuesday for February 2020Ivanti Patch Tuesday for February 2020
Ivanti Patch Tuesday for February 2020
 
January Patch Tuesday 2019
January Patch Tuesday 2019January Patch Tuesday 2019
January Patch Tuesday 2019
 
July Patch Tuesday 2019
July Patch Tuesday 2019July Patch Tuesday 2019
July Patch Tuesday 2019
 
Ivanti Patch Tuesday for October 2019
Ivanti Patch Tuesday for October 2019Ivanti Patch Tuesday for October 2019
Ivanti Patch Tuesday for October 2019
 
Ivanti Patch Tuesday for March 2020
Ivanti Patch Tuesday for March 2020Ivanti Patch Tuesday for March 2020
Ivanti Patch Tuesday for March 2020
 
July Patch Tuesday 2020
July Patch Tuesday 2020July Patch Tuesday 2020
July Patch Tuesday 2020
 
Patch Tuesday de Julio
Patch Tuesday de JulioPatch Tuesday de Julio
Patch Tuesday de Julio
 
Analyse Patch Tuesday - mai
Analyse Patch Tuesday - maiAnalyse Patch Tuesday - mai
Analyse Patch Tuesday - mai
 
2023 May Patch Tuesday
2023 May Patch Tuesday2023 May Patch Tuesday
2023 May Patch Tuesday
 
Analyse Patch Tuesday - Juillet
Analyse Patch Tuesday - JuilletAnalyse Patch Tuesday - Juillet
Analyse Patch Tuesday - Juillet
 
2023 July Patch Tuesday
2023 July Patch Tuesday2023 July Patch Tuesday
2023 July Patch Tuesday
 
June Patch Tuesday 2019
June Patch Tuesday 2019June Patch Tuesday 2019
June Patch Tuesday 2019
 
Ivanti May 2020 Patch Tuesday
Ivanti May 2020 Patch TuesdayIvanti May 2020 Patch Tuesday
Ivanti May 2020 Patch Tuesday
 
April 2019 Patch Tuesday
April 2019 Patch TuesdayApril 2019 Patch Tuesday
April 2019 Patch Tuesday
 
2022 March Patch Tuesday
2022 March Patch Tuesday2022 March Patch Tuesday
2022 March Patch Tuesday
 
Patch Tuesday Analysis - September 2015
Patch Tuesday Analysis - September 2015Patch Tuesday Analysis - September 2015
Patch Tuesday Analysis - September 2015
 
2023 November Patch Tuesday
2023 November Patch Tuesday2023 November Patch Tuesday
2023 November Patch Tuesday
 
Français Patch Tuesday – Novembre
Français Patch Tuesday – NovembreFrançais Patch Tuesday – Novembre
Français Patch Tuesday – Novembre
 
2024 Janvier Patch Tuesday
2024 Janvier Patch Tuesday2024 Janvier Patch Tuesday
2024 Janvier Patch Tuesday
 
2024 Gennaio Patch Tuesday
2024 Gennaio Patch Tuesday2024 Gennaio Patch Tuesday
2024 Gennaio Patch Tuesday
 

More from Ivanti

2024 April Patch Tuesday
2024 April Patch Tuesday2024 April Patch Tuesday
2024 April Patch TuesdayIvanti
 
Patch Tuesday de Abril
Patch Tuesday de AbrilPatch Tuesday de Abril
Patch Tuesday de AbrilIvanti
 
Français Patch Tuesday - Avril
Français Patch Tuesday - AvrilFrançais Patch Tuesday - Avril
Français Patch Tuesday - AvrilIvanti
 
Patch Tuesday Italia Aprile
Patch Tuesday Italia AprilePatch Tuesday Italia Aprile
Patch Tuesday Italia AprileIvanti
 
Français Patch Tuesday - Mars
Français Patch Tuesday - MarsFrançais Patch Tuesday - Mars
Français Patch Tuesday - MarsIvanti
 
Patch Tuesday de Marzo
Patch Tuesday de MarzoPatch Tuesday de Marzo
Patch Tuesday de MarzoIvanti
 
Patch Tuesday Italia Marzo
Patch Tuesday Italia MarzoPatch Tuesday Italia Marzo
Patch Tuesday Italia MarzoIvanti
 
March Patch Tuesday
March Patch TuesdayMarch Patch Tuesday
March Patch TuesdayIvanti
 
Patch Tuesday de Febrero
Patch Tuesday de FebreroPatch Tuesday de Febrero
Patch Tuesday de FebreroIvanti
 
2024 Français Patch Tuesday - Février
2024 Français Patch Tuesday - Février2024 Français Patch Tuesday - Février
2024 Français Patch Tuesday - FévrierIvanti
 
Patch Tuesday Italia Febbraio
Patch Tuesday Italia FebbraioPatch Tuesday Italia Febbraio
Patch Tuesday Italia FebbraioIvanti
 
2024 February Patch Tuesday
2024 February Patch Tuesday2024 February Patch Tuesday
2024 February Patch TuesdayIvanti
 
2024 Enero Patch Tuesday
2024 Enero Patch Tuesday2024 Enero Patch Tuesday
2024 Enero Patch TuesdayIvanti
 
Patch Tuesday de Enero
Patch Tuesday de EneroPatch Tuesday de Enero
Patch Tuesday de EneroIvanti
 
Français Patch Tuesday – Janvier
Français Patch Tuesday – JanvierFrançais Patch Tuesday – Janvier
Français Patch Tuesday – JanvierIvanti
 
2024 January Patch Tuesday
2024 January Patch Tuesday2024 January Patch Tuesday
2024 January Patch TuesdayIvanti
 
Patch Tuesday de Diciembre
Patch Tuesday de DiciembrePatch Tuesday de Diciembre
Patch Tuesday de DiciembreIvanti
 
Français Patch Tuesday – Décembre
Français Patch Tuesday – DécembreFrançais Patch Tuesday – Décembre
Français Patch Tuesday – DécembreIvanti
 
2023 Patch Tuesday Italia Dicembre
2023 Patch Tuesday Italia Dicembre2023 Patch Tuesday Italia Dicembre
2023 Patch Tuesday Italia DicembreIvanti
 
2023 Ivanti December Patch Tuesday
2023 Ivanti December Patch Tuesday2023 Ivanti December Patch Tuesday
2023 Ivanti December Patch TuesdayIvanti
 

More from Ivanti (20)

2024 April Patch Tuesday
2024 April Patch Tuesday2024 April Patch Tuesday
2024 April Patch Tuesday
 
Patch Tuesday de Abril
Patch Tuesday de AbrilPatch Tuesday de Abril
Patch Tuesday de Abril
 
Français Patch Tuesday - Avril
Français Patch Tuesday - AvrilFrançais Patch Tuesday - Avril
Français Patch Tuesday - Avril
 
Patch Tuesday Italia Aprile
Patch Tuesday Italia AprilePatch Tuesday Italia Aprile
Patch Tuesday Italia Aprile
 
Français Patch Tuesday - Mars
Français Patch Tuesday - MarsFrançais Patch Tuesday - Mars
Français Patch Tuesday - Mars
 
Patch Tuesday de Marzo
Patch Tuesday de MarzoPatch Tuesday de Marzo
Patch Tuesday de Marzo
 
Patch Tuesday Italia Marzo
Patch Tuesday Italia MarzoPatch Tuesday Italia Marzo
Patch Tuesday Italia Marzo
 
March Patch Tuesday
March Patch TuesdayMarch Patch Tuesday
March Patch Tuesday
 
Patch Tuesday de Febrero
Patch Tuesday de FebreroPatch Tuesday de Febrero
Patch Tuesday de Febrero
 
2024 Français Patch Tuesday - Février
2024 Français Patch Tuesday - Février2024 Français Patch Tuesday - Février
2024 Français Patch Tuesday - Février
 
Patch Tuesday Italia Febbraio
Patch Tuesday Italia FebbraioPatch Tuesday Italia Febbraio
Patch Tuesday Italia Febbraio
 
2024 February Patch Tuesday
2024 February Patch Tuesday2024 February Patch Tuesday
2024 February Patch Tuesday
 
2024 Enero Patch Tuesday
2024 Enero Patch Tuesday2024 Enero Patch Tuesday
2024 Enero Patch Tuesday
 
Patch Tuesday de Enero
Patch Tuesday de EneroPatch Tuesday de Enero
Patch Tuesday de Enero
 
Français Patch Tuesday – Janvier
Français Patch Tuesday – JanvierFrançais Patch Tuesday – Janvier
Français Patch Tuesday – Janvier
 
2024 January Patch Tuesday
2024 January Patch Tuesday2024 January Patch Tuesday
2024 January Patch Tuesday
 
Patch Tuesday de Diciembre
Patch Tuesday de DiciembrePatch Tuesday de Diciembre
Patch Tuesday de Diciembre
 
Français Patch Tuesday – Décembre
Français Patch Tuesday – DécembreFrançais Patch Tuesday – Décembre
Français Patch Tuesday – Décembre
 
2023 Patch Tuesday Italia Dicembre
2023 Patch Tuesday Italia Dicembre2023 Patch Tuesday Italia Dicembre
2023 Patch Tuesday Italia Dicembre
 
2023 Ivanti December Patch Tuesday
2023 Ivanti December Patch Tuesday2023 Ivanti December Patch Tuesday
2023 Ivanti December Patch Tuesday
 

Recently uploaded

Asset Management Software - Infographic
Asset Management Software - InfographicAsset Management Software - Infographic
Asset Management Software - InfographicHr365.us smith
 
SuccessFactors 1H 2024 Release - Sneak-Peek by Deloitte Germany
SuccessFactors 1H 2024 Release - Sneak-Peek by Deloitte GermanySuccessFactors 1H 2024 Release - Sneak-Peek by Deloitte Germany
SuccessFactors 1H 2024 Release - Sneak-Peek by Deloitte GermanyChristoph Pohl
 
Cloud Data Center Network Construction - IEEE
Cloud Data Center Network Construction - IEEECloud Data Center Network Construction - IEEE
Cloud Data Center Network Construction - IEEEVICTOR MAESTRE RAMIREZ
 
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024StefanoLambiase
 
Unveiling Design Patterns: A Visual Guide with UML Diagrams
Unveiling Design Patterns: A Visual Guide with UML DiagramsUnveiling Design Patterns: A Visual Guide with UML Diagrams
Unveiling Design Patterns: A Visual Guide with UML DiagramsAhmed Mohamed
 
Der Spagat zwischen BIAS und FAIRNESS (2024)
Der Spagat zwischen BIAS und FAIRNESS (2024)Der Spagat zwischen BIAS und FAIRNESS (2024)
Der Spagat zwischen BIAS und FAIRNESS (2024)OPEN KNOWLEDGE GmbH
 
BATTLEFIELD ORM: TIPS, TACTICS AND STRATEGIES FOR CONQUERING YOUR DATABASE
BATTLEFIELD ORM: TIPS, TACTICS AND STRATEGIES FOR CONQUERING YOUR DATABASEBATTLEFIELD ORM: TIPS, TACTICS AND STRATEGIES FOR CONQUERING YOUR DATABASE
BATTLEFIELD ORM: TIPS, TACTICS AND STRATEGIES FOR CONQUERING YOUR DATABASEOrtus Solutions, Corp
 
Adobe Marketo Engage Deep Dives: Using Webhooks to Transfer Data
Adobe Marketo Engage Deep Dives: Using Webhooks to Transfer DataAdobe Marketo Engage Deep Dives: Using Webhooks to Transfer Data
Adobe Marketo Engage Deep Dives: Using Webhooks to Transfer DataBradBedford3
 
Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...OnePlan Solutions
 
Implementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureImplementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureDinusha Kumarasiri
 
Software Project Health Check: Best Practices and Techniques for Your Product...
Software Project Health Check: Best Practices and Techniques for Your Product...Software Project Health Check: Best Practices and Techniques for Your Product...
Software Project Health Check: Best Practices and Techniques for Your Product...Velvetech LLC
 
Cloud Management Software Platforms: OpenStack
Cloud Management Software Platforms: OpenStackCloud Management Software Platforms: OpenStack
Cloud Management Software Platforms: OpenStackVICTOR MAESTRE RAMIREZ
 
Unveiling the Future: Sylius 2.0 New Features
Unveiling the Future: Sylius 2.0 New FeaturesUnveiling the Future: Sylius 2.0 New Features
Unveiling the Future: Sylius 2.0 New FeaturesŁukasz Chruściel
 
Professional Resume Template for Software Developers
Professional Resume Template for Software DevelopersProfessional Resume Template for Software Developers
Professional Resume Template for Software DevelopersVinodh Ram
 
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptxKnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptxTier1 app
 
EY_Graph Database Powered Sustainability
EY_Graph Database Powered SustainabilityEY_Graph Database Powered Sustainability
EY_Graph Database Powered SustainabilityNeo4j
 
Folding Cheat Sheet #4 - fourth in a series
Folding Cheat Sheet #4 - fourth in a seriesFolding Cheat Sheet #4 - fourth in a series
Folding Cheat Sheet #4 - fourth in a seriesPhilip Schwarz
 
Building Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
Building Real-Time Data Pipelines: Stream & Batch Processing workshop SlideBuilding Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
Building Real-Time Data Pipelines: Stream & Batch Processing workshop SlideChristina Lin
 
MYjobs Presentation Django-based project
MYjobs Presentation Django-based projectMYjobs Presentation Django-based project
MYjobs Presentation Django-based projectAnoyGreter
 
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...OnePlan Solutions
 

Recently uploaded (20)

Asset Management Software - Infographic
Asset Management Software - InfographicAsset Management Software - Infographic
Asset Management Software - Infographic
 
SuccessFactors 1H 2024 Release - Sneak-Peek by Deloitte Germany
SuccessFactors 1H 2024 Release - Sneak-Peek by Deloitte GermanySuccessFactors 1H 2024 Release - Sneak-Peek by Deloitte Germany
SuccessFactors 1H 2024 Release - Sneak-Peek by Deloitte Germany
 
Cloud Data Center Network Construction - IEEE
Cloud Data Center Network Construction - IEEECloud Data Center Network Construction - IEEE
Cloud Data Center Network Construction - IEEE
 
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
 
Unveiling Design Patterns: A Visual Guide with UML Diagrams
Unveiling Design Patterns: A Visual Guide with UML DiagramsUnveiling Design Patterns: A Visual Guide with UML Diagrams
Unveiling Design Patterns: A Visual Guide with UML Diagrams
 
Der Spagat zwischen BIAS und FAIRNESS (2024)
Der Spagat zwischen BIAS und FAIRNESS (2024)Der Spagat zwischen BIAS und FAIRNESS (2024)
Der Spagat zwischen BIAS und FAIRNESS (2024)
 
BATTLEFIELD ORM: TIPS, TACTICS AND STRATEGIES FOR CONQUERING YOUR DATABASE
BATTLEFIELD ORM: TIPS, TACTICS AND STRATEGIES FOR CONQUERING YOUR DATABASEBATTLEFIELD ORM: TIPS, TACTICS AND STRATEGIES FOR CONQUERING YOUR DATABASE
BATTLEFIELD ORM: TIPS, TACTICS AND STRATEGIES FOR CONQUERING YOUR DATABASE
 
Adobe Marketo Engage Deep Dives: Using Webhooks to Transfer Data
Adobe Marketo Engage Deep Dives: Using Webhooks to Transfer DataAdobe Marketo Engage Deep Dives: Using Webhooks to Transfer Data
Adobe Marketo Engage Deep Dives: Using Webhooks to Transfer Data
 
Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...
 
Implementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureImplementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with Azure
 
Software Project Health Check: Best Practices and Techniques for Your Product...
Software Project Health Check: Best Practices and Techniques for Your Product...Software Project Health Check: Best Practices and Techniques for Your Product...
Software Project Health Check: Best Practices and Techniques for Your Product...
 
Cloud Management Software Platforms: OpenStack
Cloud Management Software Platforms: OpenStackCloud Management Software Platforms: OpenStack
Cloud Management Software Platforms: OpenStack
 
Unveiling the Future: Sylius 2.0 New Features
Unveiling the Future: Sylius 2.0 New FeaturesUnveiling the Future: Sylius 2.0 New Features
Unveiling the Future: Sylius 2.0 New Features
 
Professional Resume Template for Software Developers
Professional Resume Template for Software DevelopersProfessional Resume Template for Software Developers
Professional Resume Template for Software Developers
 
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptxKnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
 
EY_Graph Database Powered Sustainability
EY_Graph Database Powered SustainabilityEY_Graph Database Powered Sustainability
EY_Graph Database Powered Sustainability
 
Folding Cheat Sheet #4 - fourth in a series
Folding Cheat Sheet #4 - fourth in a seriesFolding Cheat Sheet #4 - fourth in a series
Folding Cheat Sheet #4 - fourth in a series
 
Building Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
Building Real-Time Data Pipelines: Stream & Batch Processing workshop SlideBuilding Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
Building Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
 
MYjobs Presentation Django-based project
MYjobs Presentation Django-based projectMYjobs Presentation Django-based project
MYjobs Presentation Django-based project
 
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
 

March 2019 Patch Tuesday Analysis

  • 1. Patch Tuesday Webinar Wednesday, Mar 13, 2019 Hosted by: Chris Goettl & Todd Schell Dial in: 1-877-668-4490 (US) Event ID: 804 993 774
  • 2. Copyright©2019Ivanti.Allrightsreserved Agenda March 2019 Patch Tuesday Overview In the News Bulletins Q & A 1 2 3 4
  • 6. Copyright©2019Ivanti.Allrightsreserved In the News  Google finds exploits in the wild using vulnerabilities in Chrome and Windows  https://www.zdnet.com/article/google-chrome-zero-day-was-used-together- with-a-windows-7-zero-day/  Google Retpoline makes its way to Windows and other platforms  Resolves Spectre Variant 2 performance issues while keeping mitigation in place  https://www.zdnet.com/article/microsoft-rolls-out-googles-retpoline-spectre- mitigation-to-windows-10-users/  PatchManagment.org  Update coming  Moving from Listserver to Google Groups  DMARC support and other security concerns
  • 7. Copyright©2019Ivanti.Allrightsreserved Zero-day Exploited Vulnerabilities  CVE-2019-0797 and -0808 Win32k Elevation of Privilege Vulnerability  An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.  To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit the vulnerability and take control of an affected system.  The updates address these vulnerabilities by correcting how Win32k handles objects in memory.
  • 8. Copyright©2019Ivanti.Allrightsreserved Publicly Disclosed Vulnerabilities  CVE-2019-0683 - Active Directory Elevation of Privilege Vulnerability  An elevation of privilege vulnerability exists in Active Directory Forest trusts due to a default setting that lets an attacker in the trusting forest request delegation of a TGT for an identity from the trusted forest. To exploit this vulnerability, an attacker would first need to compromise an Active Directory forest.  An attacker who successfully exploited this vulnerability could request delegation of a TGT for an identity from the trusted forest.  This update addresses the vulnerability by ensuring Active Directory Forest trusts disable TGT delegation by default.
  • 9. Copyright©2019Ivanti.Allrightsreserved Publicly Disclosed Vulnerabilities (cont)  CVE-2019-0754 - Windows Denial of Service Vulnerability  A denial of service vulnerability exists when Windows improperly handles objects in memory. An attacker who successfully exploited the vulnerability could cause a target system to stop responding.  To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application. The vulnerability would not allow an attacker to execute code or to elevate user rights directly, but it could be used to cause a target system to stop responding.  The update addresses the vulnerability by correcting how Windows handles objects in memory.
  • 10. Copyright©2019Ivanti.Allrightsreserved Publicly Disclosed Vulnerabilities (cont)  CVE-2019-0757 - NuGet Package Manager Tampering Vulnerability  A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attacker to modify a NuGet package's folder structure. An attacker who successfully exploited this vulnerability could potentially modify files and folders that are unpackaged on a system.  To exploit this vulnerability, an attacker would need to log on to the affected system and tamper with the folder contents of a package prior to building or installation of an application.  The security update addresses the vulnerability by correcting permissions on folders inside the NuGet packages folder structure.
  • 11. Copyright©2019Ivanti.Allrightsreserved Publicly Disclosed Vulnerabilities (cont)  CVE-2019-0809 - Visual Studio Remote Code Execution Vulnerability  A remote code execution vulnerability exists when the Visual Studio C++ Redistributable Installer improperly validates input before loading dynamic link library (DLL) files. An attacker who successfully exploited the vulnerability could execute arbitrary code in the context of the current user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.  To exploit the vulnerability, an attacker must place a malicious DLL on a local system and convince a user to execute a specific executable.  The security update addresses the vulnerability by correcting how the Visual Studio C++ Redistributable Installer validates input before loading DLL files.
  • 12. Copyright©2019Ivanti.Allrightsreserved Microsoft Finally Switching to SHA2 Certificates  https://support.microsoft.com/en-us/help/4472027/2019-sha-2-code-signing- support-requirement-for-windows-and-wsus  Phased migration process from March to September 2019  Dual signed SHA1/SHA2 migrating to SHA2 signed only  Legacy OS and WSUS require updates  Advisory 190009 SHA-2 Code Sign Support Advisory  Windows 7 and Server 2008 R2 migration update released this month  https://support.microsoft.com/en-us/help/4474419/sha-2-code-signing-support- update-for-windows-7-and-server-2008-r2  All current Ivanti products support this change
  • 13. Copyright©2019Ivanti.Allrightsreserved Microsoft Patch Tuesday Updates of Interest  Advisory 990001 Latest Servicing Stack Updates  https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV990001  March Releases  KB 4490628 - Windows 7 and Server 2008 R2  Development Tool Updates  Updates for Visual Studio for Mac  Updates for Team Foundation Server 2017 and 2018  Updated Development Components/Packages  ChakraCore  .NET Core 1.1 SDK and 2.1.500 SDK  NuGet 4.3.1 – 4.9.4
  • 14. Copyright©2019Ivanti.Allrightsreserved Windows 10 Lifecycle Awareness  Windows 10 Branch Support  Complete Lifecycle Fact Sheet  https://support.microsoft.com/en-us/help/13853/windows-lifecycle-fact-sheet Source: Microsoft
  • 15. Copyright©2019Ivanti.Allrightsreserved Weekly Patch BLOG  Latest Patch Releases  Microsoft and Third-party  Security and non-Security  CVE Analysis  Security Events of Interest  Host: Brian Secrist  https://www.ivanti.com/blog/ topics/patch-tuesday
  • 16. Copyright©2019Ivanti.Allrightsreserved Patch Content Announcement System Announcements Posted on Community Pages  https://community.ivanti.com/community/other/bulletins/patch-content- notifications  Subscribe to receive email or RSS notifications for desired product(s)
  • 18. Copyright©2019Ivanti.Allrightsreserved Chrome-247: Security Update for Chrome  Maximum Severity: Critical  Affected Products: Google Chrome  Description: The stable channel has been updated to 73.0.3683.75 for Windows, Mac and Linux. This release contains a large number of security fixes as well as feature improvements.  Impact: Remote Code Execution  Fixes 60 Vulnerabilities: See https://chromereleases.googleblog.com/2019/03/stable-channel-update-for- desktop_12.html for a list of CVEs remediated.  Restart Required: Requires restart
  • 19. Copyright©2019Ivanti.Allrightsreserved MS19-03-W10: Windows 10 Update  Maximum Severity: Critical  Affected Products: Microsoft Windows 10 Versions 1607, 1703, 1709, 1803, 1809, Server 2016, Server 2019, Server 1709, Server 1803, IE 11 and Microsoft Edge  Description: This bulletin references 9 KB articles. See KBs for the list of changes.  Impact: Remote Code Execution, Security Feature Bypass, Denial of Service, Elevation of Privilege, and Information Disclosure  Fixes 55 Vulnerabilities: CVE-2019-0797 is known to be exploited in the wild and CVE-2019-0754 is publicly disclosed. See Details column of Security Update Guide for the complete list of CVEs.  Restart Required: Requires restart  Known Issues: See next slides
  • 20. Copyright©2019Ivanti.Allrightsreserved March Known Issues for Windows 10  KB 4489882 – Windows 10, Version 1607 and Server 2016  For hosts managed by System Center Virtual Machine Manager (SCVMM), SCVMM cannot enumerate and manage logical switches deployed on the host after installing the update. Additionally, if you do not follow the best practices, a stop error may occur in vfpext.sys on the hosts. Workaround: 1.Run mofcomp on the following mof files on the affected host: Scvmmswitchportsettings.mof and VMMDHCPSvr.mof. Follow the best practices.  After installing KB4467684, the cluster service may fail to start with the error “2245 (NERR_PasswordTooShort)” if the group policy “Minimum Password Length” is configured with greater than 14 characters. Workaround: Set the domain default "Minimum Password Length" policy to less than or equal to 14 characters. Microsoft is working on a resolution.  After installing this update, MSXML6 causes applications to stop responding if an exception was thrown during node operations, such as appendChild(), insertBefore(), and moveNode(). Group Policy editor may also be affected when editing a Group Policy Object (GPO) that contains a Group Policy Preference for Internet Settings. Workaround: None. Microsoft is working on a resolution.
  • 21. Copyright©2019Ivanti.Allrightsreserved March Known Issues for Windows 10 (cont)  KB 4487026 – Windows 10, Version 1607 and Server 2016 (cont)  After installing this update, Internet Explorer 11 may have authentication issues. This occurs when two or more people use the same user account for multiple, concurrent login sessions on the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal Server logons. Symptoms include:  Cache size and location show zero or empty.  Keyboard shortcuts may not work properly.  Webpages may intermittently fail to load or render correctly.  Issues with credential prompts.  Issues when downloading files.  Workaround: Create unique user accounts so that two people don’t share the same user account when logging on to a Windows Server machine. Additionally, disable multiple RDP sessions for a single user account for a specific Windows Server.
  • 22. Copyright©2019Ivanti.Allrightsreserved March Known Issues for Windows 10 (cont)  KB 4489899 – Windows 10, Version 1809, Server 2019  After installing this update, Internet Explorer 11 may have authentication issues. This occurs when two or more people use the same user account for multiple, concurrent login sessions on the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal Server logons. Symptoms include:  Cache size and location show zero or empty.  Keyboard shortcuts may not work properly.  Webpages may intermittently fail to load or render correctly.  Issues with credential prompts.  Issues when downloading files.  Workaround: Create unique user accounts so that two people don’t share the same user account when logging on to a Windows Server machine. Additionally, disable multiple RDP sessions for a single user account for a specific Windows Server.
  • 23. Copyright©2019Ivanti.Allrightsreserved March Known Issues for Windows 10 (cont)  KB 4489899 – Windows 10, Version 1809, Server 2019 (cont)  After installing this update on machines that have multiple audio devices, applications that provide advanced options for internal or external audio output devices may stop working unexpectedly. This issue occurs for users that select an audio output device different from the “Default Audio Device”. Examples of applications that may stop working include:  Windows Media Player  Realtek HD Audio Manager  Sound Blaster Control Panel  Workaround: As a temporary solution, select the “Default Audio Device” in the options provided by the application; please refer to the application’s user manual for details. Microsoft is working on a resolution and estimates a solution will be available in late March 2019.  After installing this update, MSXML6 causes applications to stop responding if an exception was thrown during node operations, such as appendChild(), insertBefore(), and moveNode(). Group Policy editor may also be affected when editing a Group Policy Object (GPO) that contains a Group Policy Preference for Internet Settings. Workaround: None. Microsoft is working on a resolution.
  • 24. Copyright©2019Ivanti.Allrightsreserved MS19-03-IE: Security Updates for Internet Explorer  Maximum Severity: Critical  Affected Products: Microsoft Internet Explorer 9,10,11  Description: The fixes that are included in the cumulative Security Update for Internet Explorer are also included in the March 2019 Security Monthly Quality Rollup. Installing either the Security Update for Internet Explorer or the Security Monthly Quality Rollup installs the fixes that are in the cumulative update. This bulletin references 11 KB articles.  Impact: Remote Code Execution and Security Feature Bypass  Fixes 12 Vulnerabilities: CVE-2019-0609, CVE-2019-0665, CVE-2019-0666, CVE- 2019-0667, CVE-2019-0680, CVE-2019-0746, CVE-2019-0761, CVE-2019-0762, CVE- 2019-0763, CVE-2019-0768, CVE-2019-0780, CVE-2019-0783  Restart Required: Requires browser restart  Known Issues: See IE issues associated with OS updates
  • 25. Copyright©2019Ivanti.Allrightsreserved MS19-03-MR2K8: Monthly Rollup for Windows Server 2008  Maximum Severity: Critical  Affected Products: Microsoft Windows Server 2008 and Internet Explorer 9  Description: This security update includes improvements and fixes that were a part of update KB 4487022 (released February 19, 2019). Security updates to Internet Explorer 9.1, Windows App Platform and Frameworks, Windows Server, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals, Windows Kernel, Windows MSXML, and the Microsoft JET Database Engine. This bulletin is based on KB 4489880.  Impact: Remote Code Execution, Denial of Service, Elevation of Privilege, and Information Disclosure  Fixes 21 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019- 0683, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE- 2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0808, CVE-2019- 0821  Restart Required: Requires restart  Known Issues: None reported
  • 26. Copyright©2019Ivanti.Allrightsreserved MS19-03-SO2K8: Security-only Update for Windows Server 2008  Maximum Severity: Critical  Affected Products: Microsoft Windows Server 2008  Description: Security updates to Windows App Platform and Frameworks, Windows Server, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals, Windows Kernel, Windows MSXML, and the Microsoft JET Database Engine. This bulletin is based on KB 4489876.  Impact: Remote Code Execution, Denial of Service, Elevation of Privilege, and Information Disclosure  Fixes 21 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019- 0683, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE- 2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0808, CVE-2019- 0821  Restart Required: Requires restart  Known Issues: None reported
  • 27. Copyright©2019Ivanti.Allrightsreserved MS19-03-MR7: Monthly Rollup for Win 7 and Server 2008 R2  Maximum Severity: Critical  Affected Products: Microsoft Windows 7, Server 2008 R2, and IE  Description: This security update includes improvements and fixes that were a part of update KB 4486565 (released February 19, 2019). Security updates to Internet Explorer, Windows App Platform and Frameworks, Windows Cryptography, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals, Windows Server, Windows Kernel, Windows MSXML, and the Microsoft JET Database Engine. This bulletin is based on KB 4489878.  Impact: Remote Code Execution, Denial of Service, Elevation of Privilege, and Information Disclosure  Fixes 21 (shown) + 12 (IE) Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE- 2019-0617, CVE-2019-0683, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019- 0767, CVE-2019-0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE- 2019-0808, CVE-2019-0821, ADV190009  Restart Required: Requires restart  Known Issues: See next slide
  • 28. Copyright©2019Ivanti.Allrightsreserved March Known Issues for Windows 7 and Server 2008 R2  KB 4489878 – Windows 7 Service Pack 1, Windows Server 2008 R2 Service Pack 1 (Monthly Rollup)  KB 4489885 – Windows 7 Service Pack 1, Windows Server 2008 R2 Service Pack 1 (Security-only update)  After installing this update, Internet Explorer 10 may have authentication issues. This occurs when two or more people use the same user account for multiple, concurrent login sessions on the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal Server logons. Symptoms include:  Cache size and location show zero or empty.  Keyboard shortcuts may not work properly.  Webpages may intermittently fail to load or render correctly.  Issues with credential prompts.  Issues when downloading files.  Workaround: Create unique user accounts so that two people don’t share the same user account when logging on to a Windows Server machine. Additionally, disable multiple RDP sessions for a single user account for a specific Windows Server.
  • 29. Copyright©2019Ivanti.Allrightsreserved MS19-03-SO7: Security-only Update for Win 7 and Server 2008 R2  Maximum Severity: Critical  Affected Products: Microsoft Windows 7, Server 2008 R2  Description: Security updates to Windows App Platform and Frameworks, Windows Cryptography, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals, Windows Server, Windows Kernel, Windows MSXML, and the Microsoft JET Database Engine. This bulletin is based on KB 4489885.  Impact: Remote Code Execution, Denial of Service, Elevation of Privilege, and Information Disclosure  Fixes 21 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019- 0683, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE- 2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0808, CVE-2019- 0821, ADV190009  Restart Required: Requires restart  Known Issues: See previous slide
  • 30. Copyright©2019Ivanti.Allrightsreserved MS19-03-MR8: Monthly Rollup for Server 2012  Maximum Severity: Critical  Affected Products: Microsoft Server 2012 and IE  Description: This security update includes improvements and fixes that were a part of update KB 4487024 (released February 19, 2019). Security updates to Internet Explorer, Windows App Platform and Frameworks, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals, Windows Kernel, Windows Server, and the Microsoft JET Database Engine. This bulletin is based on KB 4489891.  Impact: Remote Code Execution, Denial of Service, Elevation of Privilege and Information Disclosure  Fixes 20 (shown) + 12 (IE) Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE- 2019-0617, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019- 0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0797, CVE- 2019-0821  Restart Required: Requires restart  Known Issues: See next slide
  • 31. Copyright©2019Ivanti.Allrightsreserved March Known Issues for Server 2012  KB 4489891 – Windows Server 2012 (Monthly Rollup)  KB 4489884 – Windows Server 2012 (Security-only update)  After installing this update, Internet Explorer 10 may have authentication issues. This occurs when two or more people use the same user account for multiple, concurrent login sessions on the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal Server logons. Symptoms include:  Cache size and location show zero or empty.  Keyboard shortcuts may not work properly.  Webpages may intermittently fail to load or render correctly.  Issues with credential prompts.  Issues when downloading files.  Workaround: Create unique user accounts so that two people don’t share the same user account when logging on to a Windows Server machine. Additionally, disable multiple RDP sessions for a single user account for a specific Windows Server.
  • 32. Copyright©2019Ivanti.Allrightsreserved MS19-03-SO8: Security-only Update for Server 2012  Maximum Severity: Critical  Affected Products: Microsoft Server 2012  Description: Security updates to Windows App Platform and Frameworks, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals, Windows Kernel, Windows Server, and the Microsoft JET Database Engine. This bulletin is based on KB 4489884.  Impact: Remote Code Execution, Denial of Service, Elevation of Privilege and Information Disclosure  Fixes 20 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019- 0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-2019-0755, CVE- 2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0797, CVE-2019-0821  Restart Required: Requires restart  Known Issues: See previous slide
  • 33. Copyright©2019Ivanti.Allrightsreserved MS19-03-MR81: Monthly Rollup for Win 8.1 and Server 2012 R2  Maximum Severity: Critical  Affected Products: Microsoft Windows 8.1, Server 2012 R2, and IE  Description: This security update includes improvements and fixes that were a part of update KB 4487016 (released February 19, 2019). Security updates to Internet Explorer, Windows App Platform and Frameworks, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals, Windows Kernel, Windows Server, Windows MSXML, and the Microsoft JET Database Engine. This bulletin is based on KB 4489881.  Impact: Remote Code Execution, Denial of Service, Elevation of Privilege and Information Disclosure  Fixes 20 (shown) + 12 (IE) Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE- 2019-0617, CVE-2019-0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-2019-0755, CVE-2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019- 0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0797, CVE- 2019-0821  Restart Required: Requires restart  Known Issues: See next slide
  • 34. Copyright©2019Ivanti.Allrightsreserved February Known Issues for Windows 8.1 and Server 2012 R2  KB 4489881 – Windows 8.1, Windows Server 2012 R2 (Monthly Rollup)  KB 4489883 – Windows 8.1, Windows Server 2012 R2 (Security-only update)  After installing this update, Internet Explorer 11 may have authentication issues. This occurs when two or more people use the same user account for multiple, concurrent login sessions on the same Windows Server machine, including Remote Desktop Protocol (RDP) and Terminal Server logons. Symptoms include:  Cache size and location show zero or empty.  Keyboard shortcuts may not work properly.  Webpages may intermittently fail to load or render correctly.  Issues with credential prompts.  Issues when downloading files.  Workaround: Create unique user accounts so that two people don’t share the same user account when logging on to a Windows Server machine. Additionally, disable multiple RDP sessions for a single user account for a specific Windows Server.
  • 35. Copyright©2019Ivanti.Allrightsreserved MS19-03-SO81: Security-only Update for Win 8.1 and Server 2012 R2  Maximum Severity: Critical  Affected Products: Microsoft Windows 8.1, Server 2012 R2  Description: Security updates to Windows App Platform and Frameworks, Windows Hyper-V, Windows Storage and Filesystems, Windows Fundamentals, Windows Kernel, Windows Server, Windows MSXML, and the Microsoft JET Database Engine. This bulletin is based on KB 4489883.  Impact: Remote Code Execution, Denial of Service, Elevation of Privilege and Information Disclosure  Fixes 20 Vulnerabilities: CVE-2019-0603, CVE-2019-0614, CVE-2019-0617, CVE-2019- 0690, CVE-2019-0702, CVE-2019-0703, CVE-2019-0704, CVE-2019-0754, CVE-2019-0755, CVE- 2019-0756, CVE-2019-0759, CVE-2019-0765, CVE-2019-0767, CVE-2019-0772, CVE-2019-0774, CVE-2019-0775, CVE-2019-0782, CVE-2019-0784, CVE-2019-0797, CVE-2019-0821  Restart Required: Requires restart  Known Issues: See previous slide
  • 36. Copyright©2019Ivanti.Allrightsreserved MS19-03-SPT: Security Updates for SharePoint Server  Maximum Severity: Important  Affected Products: Microsoft Enterprise SharePoint Server 2013, 2016  Description: This security update resolves a cross-site-scripting (XSS) vulnerability if Microsoft SharePoint Server does not correctly sanitize a specially crafted web request to an affected SharePoint server. This bulletin is based on KB articles 4462208 and 4462211.  Impact: Tampering  Fixes 1 Vulnerability: CVE-2019-0778  Restart Required: Requires Restart  Known Issues: None reported
  • 37. Copyright©2019Ivanti.Allrightsreserved MS19-03-OFF: Security Updates for Microsoft Office  Maximum Severity: Important  Affected Products: Office 2010, Lync Server 2013, Skype Business Server 2015  Description: This security update resolves vulnerabilities in several Microsoft Office applications. This bulletin references KB articles 3061064, 2809243, and 4462226.  Impact: Remote Code Execution and Spoofing  Fixes 2 Vulnerabilities: CVE-2019-0748, CVE-2019-0798  Restart Required: Requires application restart  Known Issues: None reported
  • 38. Copyright©2019Ivanti.Allrightsreserved MS19-03-O365: Security Updates for Office 365 ProPlus  Maximum Severity: Recommended  Affected Products: Office 365 ProPlus, Office 2019  Description: This month’s update resolved various bugs and performance issues in Microsoft Office 365 applications. Information on Office 365 ProPlus updates is available at https://docs.microsoft.com/en-us/officeupdates/release-notes-office365- proplus  Impact: Defense in Depth  No Vulnerabilities Reported  Restart Required: Requires application restart  Known Issues: None reported
  • 39. Copyright©2019Ivanti.Allrightsreserved MS19-03-AFP: Security Update for Adobe Flash Player  Maximum Severity: Recommended  Affected Products: Adobe Flash Player  Description: This security update resolves vulnerabilities in Adobe Flash Player that is installed on any supported edition of Windows Server 2016, Windows 10 Version 1809, Windows 10 Version 1803, Windows 10 Version 1709, Windows 10 Version 1703, Windows 10 Version 1607, Windows 10 (RTM), Windows Server 2012, Windows Server 2012 R2, Windows 8.1, or Windows RT 8.1. This bulletin is based on ADV190008.  Impact: Defense in Depth  No Vulnerabilities Reported  Restart Required: Requires application restart
  • 40. Copyright©2019Ivanti.Allrightsreserved  Maximum Severity: Recommended  Affected Products: Adobe Flash Player, CCleaner, Skype, GoToMeeting, Zoom  Description: Non-Security updates may include critical bug fixes and feature updates. Depending on what version you are updating from a Non-Security update could include security fixes from previous updates you have not yet applied. Ivanti recommends updating 3rd party applications as regularly as possible to ensure additional security threats are not exposed. Non-security Updates
  • 41. Copyright©2019Ivanti.Allrightsreserved Between Patch Tuesday’s New Product Support: Slack MSI Security Updates: 7-Zip (1), Adobe Acrobat (1), CCleaner (2), Google Chrome (3), CoreFTP (1), DropBox (2), Firefox (1), Firefox ESR (1), Foxit Reader (2), Foxit Phantom PDF (1), FileZilla (2), GOM Player (1), LibreOffice (1), Malwarebytes (1), Microsoft (2), Nitro Pro (3), Node.JS (7), Notepad++ (1), Opera (3), RealTimes (1), Slack (1), Thunderbird (3), TortoiseGit (1), Tomcat (1), TeamViewer (1), WinSCP (1), Wireshark (3), Webex Productivity Tools (1), WinRAR (1) Non-Security Updates: Audacity (1), BlueJeans (1), Google Drive File Stream (1), GoodSync (3), GoToMeeting (2), Microsoft (46), NVivo (1), Power BI Desktop (1), Plex Media Player (2), PSPad (1), R for Windows (1), Royal TS (1), Skype (2), Snagit (1), TreeSize Free (2), Visual Studio Code (2), XnView (1), Zoom Client (2), Zoom Outlook Plugin (2)
  • 42. Copyright©2019Ivanti.Allrightsreserved Third Party CVE Information  Google Chrome 72.0.3626.121  CHROME-246, QGC7203626121  Fixes 1 Vulnerability: CVE-2019-5786  WinRAR 5.70  WRAR-017, QWRAR570  Fixes 4 Vulnerabilities: CVE-2018-20250, CVE-2018-20251, CVE-2018- 20252, CVE-2018-20253  Webex Productivity Tools 33.0.7.23  WPT-026, QWPT330723  Fixes 1 Vulnerability: CVE-2019-1674  Thunderbird 60.5.1  TB19-6051, QTB6051  Fixes 4 Vulnerabilities: CVE-2018-18335, CVE-2018-18356, CVE-2018- 18509, CVE-2019-5785
  • 43. Copyright©2019Ivanti.Allrightsreserved Third Party CVE Information (cont)  Node.JS 6.17.0 (Maintain)  NOJSM-003, QNODEJSM6170  Fixes 3 Vulnerabilities: CVE-2019-1559, CVE-2019-5737, CVE-2019-5739  Node.JS 10.15.2 (LTS Upper)  NOJSLU-006, QNODEJSLU10152  Fixes 1 Vulnerability: CVE-2019-5737  Node.JS 8.15.1 (LTS Lower)  NOJSLL-004, QNODEJSLL8151  Fixes 2 Vulnerabilities: CVE-2019-1559, CVE-2019-5737  Node.JS 11.10.1 (Current)  NOJSC-010, QNODEJSC11101  Fixes 1 Vulnerability: CVE-2019-5737
  • 44. Copyright©2019Ivanti.Allrightsreserved Third Party CVE Information (cont)  Adobe Acrobat and Reader  APSB19-13, QARDC1901020098MUI, QARDC1901020098, QARDC1701130127MUI, QARDC1500630482MUI, QADC1901020098, QADC1701130127, QADC1500630482  Fixes 1 Vulnerability: CVE-2019-7815  Wireshark 2.6.7  WIRES-089, QWIRES267  Fixes 2 Vulnerabilities: CVE-2019-9208,CVE-2019-9209  Wireshark 2.4.13  WIRES-090, QWIRES2413  Fixes 2 Vulnerabilities: CVE-2019-9208,CVE-2019-9209
  • 46. Nashville | April 29-May 2, 2019 | Interchange.ivanti.com Engage in Deep-Dive Technical Training Meet One-on-One with Product Experts Gain Product Roadm ap Insights Hear from IT Industry Experts Network with Leaders and Peers Early Bird: $1,495 til March 29 $100 off with code INTWEBNASH19

Editor's Notes

  1. 1- Engage in Deep-Dive Technical Training 2- Meet One-on-One with Product Experts 3- Gain Product Roadmap Insights 4- Hear from IT Industry Experts- Keynotes 5- Network with Leaders and Peers