Light

Episode #852 Quiz

December 33rd
Date: 2022-01-04 | Length: 1.5 hrs | Episode page at twit.tv

About this episode

Episode 852 covered Log4j’s fifth patch, 2.17.1, fixing another arbitrary code execution flaw via remote configuration loading and deep Java dependencies, plus Microsoft Defender Log4j scanner false positives and Alibaba’s disclosure dispute. It also explained Exchange’s 32-bit signed version overflow, forcing a PowerShell workaround that resets updates to December 33rd.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: What specific condition made the fifth Log4j flaw harder to exploit than the original Log4Shell vulnerability, according to the episode?
Question 2: What did Microsoft Defender for Endpoint incorrectly alert on in connection with its Log4j scanner rollout?
Question 3: Why did Alibaba Cloud face a six-month suspension from China’s MIIT, according to the episode?
Question 4: What update did Microsoft use to work around the Exchange Server Y2K22 bug?
Question 5: What unusual browser architecture did DuckDuckGo say it would use for its desktop browser?
Cancel