<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Mitigating CVE-2019-0624 in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/259951#M73674</link>
    <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/28203"&gt;@gwesson&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm seeing the subjected CVE is missing in palo alto vulnerability profile.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How can I mitigate this vulnerability.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://nvd.nist.gov/vuln/detail/CVE-2019-0624" target="_blank"&gt;https://nvd.nist.gov/vuln/detail/CVE-2019-0624&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Regards&lt;/P&gt;&lt;P&gt;Venky&lt;/P&gt;</description>
    <pubDate>Mon, 06 May 2019 06:17:46 GMT</pubDate>
    <dc:creator>Venkatesan_radhakrishnan</dc:creator>
    <dc:date>2019-05-06T06:17:46Z</dc:date>
    <item>
      <title>Mitigating CVE-2019-0624</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/259951#M73674</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/28203"&gt;@gwesson&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm seeing the subjected CVE is missing in palo alto vulnerability profile.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How can I mitigate this vulnerability.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://nvd.nist.gov/vuln/detail/CVE-2019-0624" target="_blank"&gt;https://nvd.nist.gov/vuln/detail/CVE-2019-0624&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Regards&lt;/P&gt;&lt;P&gt;Venky&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2019 06:17:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/259951#M73674</guid>
      <dc:creator>Venkatesan_radhakrishnan</dc:creator>
      <dc:date>2019-05-06T06:17:46Z</dc:date>
    </item>
    <item>
      <title>Re: Mitigating CVE-2019-0624</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/259973#M73680</link>
      <description>&lt;P&gt;The CVE affects only endpoints and allows unsanitized urls to be delivered to users&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;"For the vulnerability to be exploited, a user must click a specially crafted URL that takes the user to a targeted Lync or Skype for Business site."&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;This secondary connection would not match the CVE, but some other exploit (XSS,..) which will be checked by TP, URL filtering and DNS Security/sinkhole&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2019 09:31:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/259973#M73680</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2019-05-06T09:31:33Z</dc:date>
    </item>
    <item>
      <title>Re: Mitigating CVE-2019-0624</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/259974#M73681</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How to mitigate this vulnerability, Do configuring DNS sinkhole will help?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did Palo alto is aware of this vulnerability, I'm not seeing any vulnerability listed for this CVE in vulnerability profiles.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What If customer got already affected by this CVE.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Venky&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2019 09:36:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/259974#M73681</guid>
      <dc:creator>Venkatesan_radhakrishnan</dc:creator>
      <dc:date>2019-05-06T09:36:41Z</dc:date>
    </item>
    <item>
      <title>Re: Mitigating CVE-2019-0624</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/260043#M73698</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/97701"&gt;@Venkatesan_radhakrishnan&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;The CVE that you mentioned is a vulnerability actually in place within SfB. The exploit would likely be contained in an email message (as stated in the CVE) that a user would click on. There really isn't anything for the firewall to trigger on here. Also kind of important to note here, this CVE is rather old and has been patched for a while, so updates should have already been applied to the server rendering this CVE non-exploitable.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The firewall itself&amp;nbsp;&lt;EM&gt;may&lt;/EM&gt; pick up on another vulnerability as&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp;pointed out in his reply. If you can't update the SfB server in question for some reason (which would fix the issue outright and should be done) then you would want to ensure that client traffic to your target system are actually being fully inspected.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2019 22:45:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mitigating-cve-2019-0624/m-p/260043#M73698</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2019-05-06T22:45:43Z</dc:date>
    </item>
  </channel>
</rss>

