-
June 2020 Patch Tuesday rolls out
We have cumulative updates for Win10
- Win10 version 2004 – KB 4557957
- Win10 versions 1903 and 1909 – KB 4560960. Looks like 1909 has the same fixed bugs as 1903, again.
Cumulative updates for all the earlier versions of Windows are out, too.
Dustin Childs’s report is out on the ZDI blog:
- 129 separately identified security holes (CVEs). Apparently that’s a record number of CVEs, although counting security holes by the number of CVEs is like counting puppies by the number of wet spots. (Yes, I’m still house-training.)
- None identified as “Exploited” (i.e., zero-days) and none as Publicly Known — although ZDI published details about three of them more than two weeks ago.
Childs calls out four security holes for special scrutiny:
- CVE-2020-1299 which is a fault in the way Windows processes LNK files
- CVE-2020-1229 which involves Outlook loading images, even in Previewed messages
- CVE-2020-1300 a problem with CAB files
- CVE-2020-1281 another hole in OLE
None of the holes seem particularly dire at this point – particularly not for “normal” Windows users.
Martin Brinkmann has his usual definitive list on Ghacks.net.