Rewterz
Rewterz Threat Alert – “Love You” Malspam Phishing Campaign Reemerged
June 14, 2019
Rewterz
Rewterz Threat Advisory – HP Service Manager Multiple Security Bypass Vulnerabilities
June 14, 2019

Rewterz Threat Advisory – CVE-2019-1029 – Microsoft Lync Server 2010 / 2013 Denial of Service Vulnerability

Severity

Medium

Analysis Summary

An error when handling objects in memory can be exploited to cause the server stop responding by initiating a series of calls in a short time frame.
Successful exploitation requires access to a dial-in link.

Impact

Denial of Service

Affected Vendors

Microsoft

Affected Products

  • Microsoft Lync Server 2013
  • Microsoft Lync Server 2010

Remediation

Apply update.

Microsoft Lync Server 2013 (KB4506009):

https://www.microsoft.com/downloads/details.aspx?familyid=dac7c777-fe8a-45a2-9a82-07a2e15c298f

Microsoft Lync Server 2010 (KB4506009):

https://www.microsoft.com/downloads/details.aspx?familyid=796480cd-daf4-4463-b418-7391cc46a5e1