Post AToEFvmnUlFthI00jQ by floe@hci.social
(DIR) More posts by floe@hci.social
(DIR) Post #AToEFvmnUlFthI00jQ by floe@hci.social
2023-03-20T09:56:18Z
0 likes, 1 repeats
Arrrgh. Remote Code Execution via ICMP (i.e., ping) on all Windows versions. Next ransomware tsunami in 3, 2, 1, ... 😖CVE-2023-23415 - Security Update Guide - Microsoft - Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-23415
(DIR) Post #AToEFwrnTeqh35LWAC by floe@hci.social
2023-03-20T11:16:39Z
0 likes, 0 repeats
There is a sliver of hope in the CVE insofar as it says: "To trigger the vulnerable code path, an application on the target must be bound to a raw socket." But I do fully expect some obscure Windows system process floating around that does exactly this, so... 😑