-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

===========================================================================
                         AUSCERT Security Bulletin

                               ASB-2020.0056
        Microsoft Patch Tuesday (March 2020): Azure Service Fabric
                               11 March 2020

===========================================================================

        AusCERT Security Bulletin Summary
        ---------------------------------

Product:              Azure Service Fabric
Operating System:     Windows
Impact/Access:        Increased Privileges -- Remote/Unauthenticated
Resolution:           Patch/Upgrade
CVE Names:            CVE-2020-0902  
Member content until: Friday, April 10 2020

OVERVIEW

        Microsoft has released its monthly security patch update for the month of March 2020.
        
        This update resolves 1 vulnerabilities across the following products: [1]
        
         Service Fabric


IMPACT

        Microsoft has given the following details regarding these vulnerabilities.
        
         Details         Impact                   Severity
         CVE-2020-0902   Elevation of Privilege   Important


MITIGATION

        Microsoft recommends updating the software with the version made available on the Microsoft Update Catalogue for the following Knowledge Base articles. [1]


REFERENCES

        [1] Microsoft Security Update Guidance
            https://portal.msrc.microsoft.com/en-us/security-guidance

AusCERT has made every effort to ensure that the information contained
in this document is accurate.  However, the decision to use the information
described is the responsibility of each user or organisation. The decision to
follow or act on information or advice contained in this security bulletin is
the responsibility of each user or organisation, and should be considered in
accordance with your organisation's site policies and procedures. AusCERT
takes no responsibility for consequences which may arise from following or
acting on information or advice contained in this security bulletin.

===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072

Internet Email: auscert@auscert.org.au
Facsimile:      (07) 3365 7031
Telephone:      (07) 3365 4417 (International: +61 7 3365 4417)
                AusCERT personnel answer during Queensland business hours 
                which are GMT+10:00 (AEST).
                On call after hours for member emergencies only.
===========================================================================
-----BEGIN PGP SIGNATURE-----
Comment: http://www.auscert.org.au/render.html?it=1967
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=FMU0
-----END PGP SIGNATURE-----