@shibashecurity Np! Need any of these other OSes tested?
- Win 7
- Win 10
- Server 2008R2
- Server 2012
- Server 2016
@shibashecurity Np! Need any of these other OSes tested?
- Win 7
- Win 10
- Server 2008R2
- Server 2012
- Server 2016
@shibashecurity I can test the hub removal question in a bit when the coffee takes hold.
Just looking at this CVSS 9.3 about #VMware #ESXi
https://www.vmware.com/security/advisories/VMSA-2022-0033.html
Is it worth breaking the Christmas change freeze by classing this as an emergency change? It is a 9.3 after all.
I can't see any evidence of any proof on concept. I can see there's the workaround of removing the USB controller, but I've yet to find out if this is going to involve reboots on Windows servers. I know I can easily test it, and I'll get there a bit later this afternoon.
In the meantime, if any of you have any answers to these questions, I'd be most grateful:
- Do you know if there's a public PoC?
- Do you know if removing the USB 2.0 controller needs a reboot?
@shibashecurity No reboot required for Server 2019 on vSphere 7.0 + ESXi 6.7.
@horse Nah, no need, that'll do nicely! Thank you very much for your help there, saved me some faffing about
@shibashecurity Always glad to help!
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.