Skip to content

Azure Stack Remote Code Execution Vulnerability

forbes.com
4 pointsjrudolph1 comment
On HN

Comments

The article links to https://portal.msrc.microsoft.com/en-US/security-guidance/ad... and https://portal.msrc.microsoft.com/en-US/security-guidance/ad...

These CVEs only mention Azure Stack, while the Article suggests Microsoft acknowledged the flaws had also affected Azure public cloud:

Check Point did not attack the cloud itself, but used the offline Azure Stack, a near perfect replica of the cloud environment. With the vulnerabilities detected, they then confirmed with Microsoft that the same ones would apply to the cloud itself. Yes, said Microsoft, patching the holes and paying Check Point a bounty.
AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.