…“The vulnerable driver ships with every version of Windows, up to and including Server 2025,” Adam Barnett, lead software engineer at Rapid7, said. “Maybe your fax modem uses a different chipset, and so you don’t need the Agere driver? Perhaps you’ve simply discovered email? Tough luck. Your PC is still vulnerable, and a local attacker with a minimally privileged account can elevate to administrator.”…

  • paraphrand@lemmy.world
    link
    fedilink
    English
    arrow-up
    39
    ·
    11 months ago

    It’s interesting that this supposedly goes back to Windows 3.1 and the original release…

    • 87Six@lemmy.zip
      link
      fedilink
      English
      arrow-up
      5
      ·
      11 months ago

      Ah yes the 0-decade vulnerability…

      Boi will I miss the ever-encompasing shield of Microsoft when my Windows 10 stops receiving updates…

      • deathbird@mander.xyz
        link
        fedilink
        English
        arrow-up
        3
        arrow-down
        1
        ·
        11 months ago

        I expect it’s stuff like ATMs, Coinstar machines. Things that may need to phone home regularly but don’t need to sit online constantly.