Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

MSRC Case 73997 #8803

Closed
anthonyvdotbe opened this issue Sep 6, 2022 · 1 comment
Closed

MSRC Case 73997 #8803

anthonyvdotbe opened this issue Sep 6, 2022 · 1 comment

Comments

@anthonyvdotbe
Copy link

Recently I reported a BSOD to the MSRC. As a final response, I received the following:

[...] A fix for this issue will be considered in a future version, however, MSRC has investigated this issue and concluded that this does not pose an immediate threat that requires urgent attention due to this being rated as a Moderate severity, Denial of Service. We do see areas of improvement where the engineering team may ship a fix. We have shared your report with the team responsible for maintaining the product or service. They will review for a potential fix and take appropriate action as needed to help keep customers protected.
At this time, we will not be providing ongoing updates of the status of the fix for this issue, and we have closed this case.

There's a couple things here:

  • while I understand the BSOD was rated as moderate severity w.r.t. security, I'd argue it's a critical issue in terms of UX (also because of how easy it is to trigger the BSOD)
  • as I won't receive further updates from the MSRC, I'm opening this issue, so that I can at least get notified once it's been resolved
@Biswa96
Copy link

Biswa96 commented Sep 6, 2022

From my past experience, the only thing that triggers security people is privilege escalation 😔

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants