#cve202321716 — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #cve202321716, aggregated by home.social.
-
Four months later on CVE-2023-21716 - I still haven't seen a single in the wild document that reaches RCE for this, nor an RCE exploit.
-
Four months later on CVE-2023-21716 - I still haven't seen a single in the wild document that reaches RCE for this, nor an RCE exploit.
-
Four months later on CVE-2023-21716 - I still haven't seen a single in the wild document that reaches RCE for this, nor an RCE exploit.
-
Four months later on CVE-2023-21716 - I still haven't seen a single in the wild document that reaches RCE for this, nor an RCE exploit.
-
Haven't seen any working exploitation of #CVE202321716 at all - all just people reusing the crash POC, nobody made it to RCE.
-
Haven't seen any working exploitation of #CVE202321716 at all - all just people reusing the crash POC, nobody made it to RCE.
-
Haven't seen any working exploitation of #CVE202321716 at all - all just people reusing the crash POC, nobody made it to RCE.
-
Haven't seen any working exploitation of #CVE202321716 at all - all just people reusing the crash POC, nobody made it to RCE.
-
I've been keeping an eye on #CVE202321716 (the MS Word RTF vuln) via #GossiMonitoring
The headline is, people are starting to experiment with it.
-
I've been keeping an eye on #CVE202321716 (the MS Word RTF vuln) via #GossiMonitoring
The headline is, people are starting to experiment with it.
-
I've been keeping an eye on #CVE202321716 (the MS Word RTF vuln) via #GossiMonitoring
The headline is, people are starting to experiment with it.
-
I've been keeping an eye on #CVE202321716 (the MS Word RTF vuln) via #GossiMonitoring
The headline is, people are starting to experiment with it.
-
Keep an eye on CVE-2023-21716 aka MS Word vulnerability from February 2023 in RTF files.
There's a public proof of concept: https://qoop.org/publications/cve-2023-21716-rtf-fonttbl.md
Where it gets more interesting - you can embed RTF files in email, Microsoft Outlook renders them with no clicks, by just reading the email. There's a decent chance this could become problematic combination.. although not yet as the PoC is vague enough to require a clue to exploit. HT @fellows
-
Keep an eye on CVE-2023-21716 aka MS Word vulnerability from February 2023 in RTF files.
There's a public proof of concept: https://qoop.org/publications/cve-2023-21716-rtf-fonttbl.md
Where it gets more interesting - you can embed RTF files in email, Microsoft Outlook renders them with no clicks, by just reading the email. There's a decent chance this could become problematic combination.. although not yet as the PoC is vague enough to require a clue to exploit. HT @fellows
-
Keep an eye on CVE-2023-21716 aka MS Word vulnerability from February 2023 in RTF files.
There's a public proof of concept: https://qoop.org/publications/cve-2023-21716-rtf-fonttbl.md
Where it gets more interesting - you can embed RTF files in email, Microsoft Outlook renders them with no clicks, by just reading the email. There's a decent chance this could become problematic combination.. although not yet as the PoC is vague enough to require a clue to exploit. HT @fellows
-
Keep an eye on CVE-2023-21716 aka MS Word vulnerability from February 2023 in RTF files.
There's a public proof of concept: https://qoop.org/publications/cve-2023-21716-rtf-fonttbl.md
Where it gets more interesting - you can embed RTF files in email, Microsoft Outlook renders them with no clicks, by just reading the email. There's a decent chance this could become problematic combination.. although not yet as the PoC is vague enough to require a clue to exploit. HT @fellows
-
Microsoft Patch Tuesday, February 2023 Edition
https://krebsonsecurity.com/2023/02/microsoft-patch-tuesday-february-2023-edition/
#MicrosoftPatchTuesdayFebruary2023 #TrendMicroZeroDayInitiative #sansinternetstormcenter #InternetExplorer11 #JohannesUllrich #MicrosoftOffice #LatestWarnings #SecurityTools #ImmersiveLabs #CVE202321529 #CVE202321706 #CVE202321707 #CVE202321715 #CVE202321716 #CVE202321823 #CVE202323376 #DustinChilds #TimetoPatch #KevinBreen #Mandiant -
Microsoft Patch Tuesday, February 2023 Edition
https://krebsonsecurity.com/2023/02/microsoft-patch-tuesday-february-2023-edition/
#MicrosoftPatchTuesdayFebruary2023 #TrendMicroZeroDayInitiative #sansinternetstormcenter #InternetExplorer11 #JohannesUllrich #MicrosoftOffice #LatestWarnings #SecurityTools #ImmersiveLabs #CVE202321529 #CVE202321706 #CVE202321707 #CVE202321715 #CVE202321716 #CVE202321823 #CVE202323376 #DustinChilds #TimetoPatch #KevinBreen #Mandiant -
Microsoft Patch Tuesday, February 2023 Edition
https://krebsonsecurity.com/2023/02/microsoft-patch-tuesday-february-2023-edition/
#MicrosoftPatchTuesdayFebruary2023 #TrendMicroZeroDayInitiative #sansinternetstormcenter #InternetExplorer11 #JohannesUllrich #MicrosoftOffice #LatestWarnings #SecurityTools #ImmersiveLabs #CVE202321529 #CVE202321706 #CVE202321707 #CVE202321715 #CVE202321716 #CVE202321823 #CVE202323376 #DustinChilds #TimetoPatch #KevinBreen #Mandiant