DiscoverSANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)SANS Stormcast Wednesday, April 10th: Microsoft Patch Tuesday; Adobe Patches; OpenSSL 3.5 with PQC; Fortinet
SANS Stormcast Wednesday, April 10th: Microsoft Patch Tuesday; Adobe Patches; OpenSSL 3.5 with PQC; Fortinet

SANS Stormcast Wednesday, April 10th: Microsoft Patch Tuesday; Adobe Patches; OpenSSL 3.5 with PQC; Fortinet

Update: 2025-04-09
Share

Description



Microsoft Patch Tuesday

Microsoft patched over 120 vulnerabilities this month. 11 of these were rated critical, and one vulnerability is already being exploited.

https://isc.sans.edu/diary/Microsoft%20April%202025%20Patch%20Tuesday/31838

Adobe Updates

Adobe released patches for 12 different products. In particular important are patches for Coldfusion addressing several remote code execution vulnerabilities. Adobe Commercse got patches as well, but none of the vulnerabilities are rated critical.

https://helpx.adobe.com/security/security-bulletin.html

OpenSSL 3.5 Released

OpenSSL 3.5 was released with support to post quantum ciphers. This is a long term support release.

https://groups.google.com/a/openssl.org/g/openssl-project/c/9ZYdIaExmIA

Fortiswitch Update

Fortinet released an update for Fortiswitch addressing a vulnerability that may be used to reset a password without verification.

https://fortiguard.fortinet.com/psirt/FG-IR-24-435
Comments 
In Channel
loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

SANS Stormcast Wednesday, April 10th: Microsoft Patch Tuesday; Adobe Patches; OpenSSL 3.5 with PQC; Fortinet

SANS Stormcast Wednesday, April 10th: Microsoft Patch Tuesday; Adobe Patches; OpenSSL 3.5 with PQC; Fortinet

Dr. Johannes B. Ullrich