Patch new wormable vulnerabilities in Remote Desktop Services (CVE-2019-1181/1182)
Posted: Mon Sep 30, 2024 12:29 pm
Today Microsoft released a set of fixes for Remote Desktop Services that include two critical Remote Code Execution (RCE) vulnerabilities, CVE-2019-1181 and CVE-2019-1182. Like the previously-fixed ‘BlueKeep’ vulnerability (CVE-2019-0708), these two vulnerabilities are also ‘wormable’, meaning that any future malware that exploits these could propagate from vulnerable computer to vulnerable computer without user interaction.
https://msrc.microsoft.com/blog/2019/08 ... 1181-1182/
https://msrc.microsoft.com/blog/2019/08 ... 1181-1182/