Forum Moderators: open
Critical patch - Huge Windows vulnerability that affects all versions
Microsoft posts critical patch for huge Windows vulnerability that affects all modern machines
The bad news? It affects everything running a modern version of Windows, meaning businesses will need to patch a lot of machines as soon as possible. Microsoft also says that there is no workaround or ways to mitigate the attack, other than via a patch.
The good news is that Microsoft says there is no evidence this bug has been exploited in the wild and there’s a patch out right now on Windows Update.
But reading the article, it appears that it only affects machines running a Windows servers... so for the average end user there's not much of a risk
Microsoft gives few details about the exploit, other than saying that the bug would “allow remote code execution if an attacker sends specially crafted packets to a Windows server.” ... The attack appears to only affect those running a server on affected platforms.
How could an attacker exploit the vulnerability?
An attacker could attempt to exploit this vulnerability by sending specially crafted packets to a Windows server.
What systems are primarily at risk from the vulnerability?
Server and workstation systems that are running an affected version of Schannel are primarily at risk.