• Services
    • Asses
      • Compromise Assessment
      • APT Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Transform
      • SOC Consultancy
      •     SOC Maturity Assessment
      •     SOC Model Evaluation
      •     SOC Gap Analysis
      •     SIEM Gap Analysis
      •     SIEM Optimization
      •     SOC Content Pack
    • Train
      • Security Awareness and Training
      • Tabletop Exercise
      • Simulated Cyber Attack Exercises
    • Respond
      • Incident Response
      • Incident Analysis
  • Managed Security
    • Managed Security Monitoring
      • Remote SOC
      • Onsite SOC
      • Hybrid SOC
    • Managed Security Services
      • Managed Detection and Response
      • Managed Endpoint Detection and Response
      • Managed Threat Intelligence
      • Managed Threat Hunting
      • Managed Risk-Based SOAR
      • Managed Penetration Testing
  • Solutions
  • Resources
    • Blog
    • Threat Advisory
  • Company
    • About Us
    • Careers
    • Contact
Rewterz Threat Advisory – Microsoft Exchange Server 2010 / 2013 / 2016 / 2019 Multiple Vulnerabilities
January 10, 2019
Rewterz Threat Advisory – Microsoft Edge Multiple Vulnerabilities
January 10, 2019

Rewterz Threat Advisory – Microsoft Windows Server 2019 Multiple Vulnerabilities

January 10, 2019

SEVERITY: High

 

 

ANALYSIS SUMMARY

 

 

Multiple vulnerabilities in Microsoft Windows Server 2019 have been reported.
CVE-2019-0580
CVE-2019-0578
CVE-2019-0584
CVE-2019-0582
CVE-2019-0583
CVE-2019-0581
CVE-2019-0577
CVE-2019-0576
CVE-2019-0579
CVE-2019-0538
CVE-2019-0575
Each one of these is a unique Remote Code Execution vulnerability that exists when the Windows Jet Database Engine improperly handles objects in memory.

 

 

CVE-2019-0536
CVE-2019-0549
CVE-2019-0554
CVE-2019-0569
These are four separate Information Disclosure vulnerabilities that exist when the Windows kernel improperly handles objects in memory.

 

 

CVE-2019-0551
CVE-2019-0550
Two Remote Code Execution vulnerabilities exist when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system.

 

 

CVE-2019-0552
An elevation of privilege flaw exists in Windows COM Desktop Broker.

 

CVE-2019-0543
An elevation of privilege vulnerability exists when Windows improperly handles authentication requests.

 

 

CVE-2019-0572
CVE-2019-0573
CVE-2019-0571
CVE-2019-0574
Four different elevation of privilege vulnerabilities exist when the Windows Data Sharing Service improperly handles file operations.

 

 

CVE-2019-0553
An information disclosure vulnerability exists when Windows Subsystem for Linux improperly handles objects in memory.

 

 

CVE-2019-0570
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory.

 

 

CVE-2019-0555
An elevation of privilege vulnerability exists in the Microsoft XmlDocument class that could allow an attacker to escape from the AppContainer sandbox in the browser.

 

 

IMPACT

 

 

System access
Exposure of sensitive information
Privilege escalation

 

 

AFFECTED PRODUCTS 

 

 

Microsoft Windows Server 2019

 

 

REMEDIATION

 

 

Vendor has released updates for the following vulnerabilities.

 

  • Windows Server 2019 (KB4480116):
  • Windows Server 2019 (Server Core installation) (KB4480116):
    https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4480116

 

  • Windows Server 2019 (KB4470788):
  • Windows Server 2019 (Server Core installation) (KB4470788):
    https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4470788
  • Services
    • Asses
      • Compromise Assessment
      • APT Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Respond
      • Incident Response
      • Incident Analysis
  • Transform
    • SOC Consultancy
    •     SOC Maturity Assessment
    •     SOC Model Evaluation
    •     SOC Gap Analysis
    •     SIEM Gap Analysis
    •     SIEM Optimization
    •     SOC Content Pack
  • Train
    • Security Awareness and Training
    • Tabletop Exercise
    • Simulated Cyber Attack Exercises
  • Managed Security
    • Managed Security Monitoring
      • Remote SOC
      • Onsite SOC
      • Hybrid SOC
    • Managed Security Services
      • Managed Detection and Response
      • Managed Endpoint Detection and Response
      • Managed Threat Intelligence
      • Managed Threat Hunting
      • Managed Risk-Based SOAR
      • Managed Penetration Testing
  • Solutions
  • Resources
    • Blog
    • Threat Advisory
  • Company
    • About Us
    • Careers
    • Contact
COPYRIGHT © REWTERZ. ALL RIGHTS RESERVED.