Category Archives: Security Updates

Three Active Directory vulnerabilities were addressed in the October 2021 Updates

When looking at the October 12th, 2021 updates today, I noticed three updates that specifically address vulnerabilities in Active Directory Domain Services and DNS. These vulnerabilities affect domain controllers at the heart of many networking infrastructure environments. About the vulnerabilities Three vulnerabilities were addressed: CVE-2021-40460 RPC Runtime Security Feature Bypass Vulnerability CVE-2021-40460 is a vulnerability […]

0  

Three vulnerabilities in AD FS were addressed at this month's Patch Tuesday

When looking at the October 2021 Patch Tuesday today, I noticed three updates that specifically address vulnerabilities in Active Directory Federation Services (AD FS). About the vulnerabilities Three vulnerabilities were addressed today: CVE-20221-40456 AD FS Security Feature Bypass Vulnerability CVE-2021-40456 is a vulnerability that could allow an attacker to bypass BannedIPList entries for WS-Trust workflows […]

0  

On-premises Identity-related updates and fixes for August 2021

Even though Microsoft’s Identity focus moves towards the cloud, they are not forgetting their on-premises roots. Windows Server 2016 and Windows Server 2019 still receive updates. These are the Identity-related updates and fixes we saw for August 2021:   Windows Server 2016 We observed the following updates for Windows Server 2016: KB5005043 August 10, 2021 […]

0  

KnowledgeBase: You receive a 'Object reference not set to an instance of an object.' error when backing up Teams with Veeam Backup for Microsoft Office 365

For years, we’ve been advising organizations using Microsoft 365 services (formerly known as Office 365 services) like Exchange Online to create backups of their data stored in these services and/or to define their exit scenario. Now, organizations using Veeam Backup for Microsoft Office 365 to this purpose are seeing errors with this product… The situation […]

0  

Version 1.1.582.0 of the Azure AD Connect Provisioning Agent prevents MitM attacks towards Domain Controllers (CVE-2021-36949)

This weekend, Microsoft released a new version of the Azure AD Connect Provisioning Agent. Version 1.1.582.0 addresses an authentication bypass vulnerability that is present in all previous versions of the agent. About the vulnerability An attacker can successfully perform a Meddle-in-the-Middle (MitM) attack between Windows Server installations running Azure AD Connect Provisioning Agents and Active […]

0  

Two new Azure AD Connect versions were released to prevent MitM attacks towards Domain Controllers (CVE-2021-36949)

Today, Microsoft released two new Azure AD Connect version to address an authentication bypass vulnerability in Azure AD Connect.   About the vulnerability An attacker can successfully perform a Meddle-in-the-Middle (MitM) attack between Azure AD Connect server(s) and Active Directory Domain Controller(s). The attacker would merely need to possess domain user credentials to be able […]

0  

On-premises Identity-related updates and fixes for July 2021

Even though Microsoft’s Identity focus moves towards the cloud, they are not forgetting their on-premises roots. Windows Server 2016 and Windows Server 2019 still receive updates. These are the Identity-related updates and fixes we saw for July 2021: Windows Server 2016 We observed the following updates for Windows Server 2016: KB5004948 July 7, 2021 Out […]

0  

A Windows KDC Information Disclosure Vulnerability exists when you use non-RFC4556-compliant devices

Two weeks ago, for its July 2021 Patch Tuesday, Microsoft released an important security update for the Windows Key Distribution Center, found on Active Directory Domain Controllers. Today, an update to that original update was issued to relieve some of the pain points. About the vulnerability An information disclosure vulnerability exists in the way the […]

0  

VMSA-2021-0014 updates for VMware ESXi and vCenter address two security vulnerabilities (CVE-2021-21994, CVE-2021-21995)

Today, VMware released an update that addresses an SFCB improper authentication vulnerability (CVE-2021-21994) and an OpenSLP denial-of-service vulnerability (CVE-2021-21995). These two vulnerabilities can be used to compromise virtual Domain Controllers running on ESXi. Note: The vulnerabilities exist in VMware Cloud Foundation, too. The two vulnerabilities were responsibly disclosed to VMware.   About the vulnerabilities SFCB […]

0  

The July 2021 Patch Tuesday addresses twelve vulnerabilities for Domain Controllers running as DNS Servers

When looking at the July 2021 Patch Tuesday today, I noticed three updates that specifically address vulnerabilities in the DNS snap-in and nine vulnerabilities in DNS Server. These vulnerabilities are specific to Domain Controllers running DNS Server (in the default configuration), so this sparked my interest in these updates. Three DNS Snap-in vulnerabilities There are […]

0