{"id":1096,"date":"2023-04-14T03:00:54","date_gmt":"2023-04-13T18:00:54","guid":{"rendered":"https:\/\/m365jp.xyz\/?p=1096"},"modified":"2023-04-14T03:01:33","modified_gmt":"2023-04-13T18:01:33","slug":"mc541054-changes-to-the-deployment-phase-for-cve-2022-37967-now-beginning-june-13-2023","status":"publish","type":"post","link":"https:\/\/m365jp.net\/index.php\/2023-04-14-mc541054-changes-to-the-deployment-phase-for-cve-2022-37967-now-beginning-june-13-2023","title":{"rendered":"MC541054 | Changes to the deployment phase for CVE-2022-37967 &#8211; now beginning June 13, 2023"},"content":{"rendered":"<div class=\"postie-post\">\n<div>\n<hr>\n<table id=\"section\">\n<tbody>\n<tr>\n<th width=\"95%\">MC541054 | Changes to the deployment phase for CVE-2022-37967 &#8211; now beginning June 13, 2023<\/th>\n<\/tr>\n<\/tbody>\n<\/table>\n<hr>\n<table id=\"data\">\n<tbody>\n<tr>\n<th>Classification<\/th>\n<td>preventOrFixIssue<\/td>\n<\/tr>\n<tr>\n<th>Last Updated<\/th>\n<td>04\/13\/2023 17:28:05<\/td>\n<\/tr>\n<tr>\n<th>Start Time<\/th>\n<td>04\/13\/2023 17:28:03<\/td>\n<\/tr>\n<tr>\n<th>End Time<\/th>\n<td>04\/13\/2024 17:28:03<\/td>\n<\/tr>\n<tr>\n<th>Message Content<\/th>\n<td>\n<div>Security hardening changes needed on domain controllers in IT environments to address  <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">  CVE-2022-37967<\/a> will enter a new phase of security requirement, as outlined in  <a href=\"https:\/\/support.microsoft.com\/help\/5020805\" rel=\"noopener noreferrer\" target=\"_blank\">  KB5020805: How to manage Kerberos protocol changes related to CVE-2022-37967<\/a> on June 13, 2023. Previous announcements had listed this change as taking place in April, however, that date has changed.<\/div>\n<div>  <\/div>\n<div>Each phase raises the default minimum for the security hardening changes for  <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">  CVE-2022-37967<\/a>, and environments must be compliant before installing updates for each phase onto your domain controller.<\/div>\n<div>  <\/div>\n<div><b>When this will happen:<\/b><\/div>\n<div>Starting June 13, 2023, updates addressing <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">  CVE-2022-37967<\/a> will enter a new phase of security requirements. There will also be two more phases later in the year: July 11, 2023 begins initial enforcement phase, and October 10, 2023 begins full enforcement phase.<\/div>\n<div>  <\/div>\n<div><b>How this will affect your organization:<\/b><\/div>\n<div>At this time, it&#8217;s still possible to bypass security hardening requirements using the guidance provided in  <a href=\"https:\/\/support.microsoft.com\/help\/5020805\" rel=\"noopener noreferrer\" target=\"_blank\">  KB5020805<\/a>. However, beginning with the June 13, 2023 updates, the ability to bypass hardening measures will be reduced. To help protect your environment and prevent outages, we recommend that you carry out the following steps:<\/div>\n<div>  <\/div>\n<ol>\n<li><b>UPDATE&nbsp;<\/b>your Windows domain controllers with a Windows&nbsp;update released on or after November 8, 2022<\/li>\n<li><b>MOVE&nbsp;<\/b>your Windows domain controllers to Audit mode by using the&nbsp;<a href=\"https:\/\/support.microsoft.com\/topic\/kb5020805-how-to-manage-kerberos-protocol-changes-related-to-cve-2022-37967-997e9acc-67c5-48e1-8d0d-190269bf4efb#registry5020805\" rel=\"noopener noreferrer\" target=\"_blank\">Registry   Key setting<\/a><\/li>\n<li><b>MONITOR<\/b>&nbsp;events filed during&nbsp;Audit mode to secure your environment<\/li>\n<li><b>ENABLE&nbsp;e<\/b>nforcement mode to address&nbsp;<a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">CVE-2022-37967<\/a>&nbsp;in your environment<\/li>\n<\/ol>\n<div>  <\/div>\n<div>To enable all parts of the security hardening in your environment, it is recommended to move to enforcement mode as soon as possible. Your environment must be compliant with the hardening changes before installing updates for each phase onto your domain   controller.<\/div>\n<div>  <\/div>\n<div><b>What you need to do to prepare:<\/b><\/div>\n<div>Starting July 2023, e nforcement mode will be enabled on all Windows domain controllers and will block vulnerable&nbsp;connections from non-compliant devices.&nbsp;At that time, you will not be able to disable the update, but may move back to the Audit mode setting.   Audit mode will be removed in October 2023, as outlined in the&nbsp;<a href=\"https:\/\/support.microsoft.com\/topic\/kb5020805-how-to-manage-kerberos-protocol-changes-related-to-cve-2022-37967-997e9acc-67c5-48e1-8d0d-190269bf4efb#timing\" rel=\"noopener noreferrer\" target=\"_blank\">Timing   of updates to address Kerberos vulnerability&nbsp;CVE-2022-37967<\/a>&nbsp;section.<\/div>\n<div>  <\/div>\n<div>With each additional deployment phase, environments will be required to accept new security measures. Take note of the changes taking place in each phase and prepare for changes:<\/div>\n<ul>\n<li>Windows updates released on or after <b>June 13, 2023<\/b> will remove the ability to disable PAC signature addition. Your apps and environment must be compliant with the new security requirements (<b>KrbtgtFullPacSignature<\/b>&nbsp;subkey set to a value of&nbsp;1)   to install these updates on your domain controllers.<\/li>\n<li>Windows updates released on or after <b>July 11, 2023<\/b> will removes the ability to set value&nbsp;<b>1<\/b>&nbsp;for the&nbsp;<b>KrbtgtFullPacSignature<\/b>&nbsp;subkey. It also moves the update to Enforcement mode (Default) (<b>KrbtgtFullPacSignature&nbsp;= 3<\/b>),&nbsp;which can   still be overridden by an Administrator with an explicit Audit setting.<\/li>\n<li>Windows updates released on or after <b>October 10, 2023<\/b> remove support for the registry subkey&nbsp;<b>KrbtgtFullPacSignature<\/b> and Audit mode. All service tickets without the new PAC signatures will be denied authentication.<\/li>\n<\/ul>\n<div>  <\/div>\n<div>If you are not using any workaround for issues related to <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">  CVE-2022-37967<\/a> security hardening, you might still need to address issues in your environment for the coming phases; July 11, 2023 &#8211; Initial enforcement phase, and October 10, 2023 &#8211; Full enforcement phases. Study the resources in the Additional information   section, below, for complete guidance.<\/div>\n<div>  <\/div>\n<div><b>Additional information:<\/b><\/div>\n<ul>\n<li><a href=\"https:\/\/support.microsoft.com\/help\/5020805\" rel=\"noopener noreferrer\" target=\"_blank\">KB5020805: How to manage Kerberos protocol changes related to CVE-2022-37967<\/a><\/li>\n<li><a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">CVE-2022-37967 &#8211; Security Update Guide &#8211; Microsoft &#8211; Windows Kerberos Elevation of Privilege Vulnerability<\/a><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<th>Machine Translation<\/th>\n<td>\n<div>CVE-2022-37967\u306b\u5bfe\u51e6\u3059\u308b\u305f\u3081\u306bIT\u74b0\u5883\u306e\u30c9\u30e1\u30a4\u30f3\u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u30fc\u306b\u5fc5\u8981\u306a\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5f37\u5316\u306e\u5909\u66f4\u306f\u3001<a href=\"https:\/\/support.microsoft.com\/help\/5020805\" rel=\"noopener noreferrer\" target=\"_blank\">KB5020805:2023\u5e746\u670813\u65e5\u306eCVE-2022-37967\u306b\u95a2\u9023\u3059\u308bKerberos\u30d7\u30ed\u30c8\u30b3\u30eb\u306e\u5909\u66f4\u3092\u7ba1\u7406\u3059\u308b\u65b9\u6cd5<\/a>\u3067\u8aac\u660e\u3055\u308c\u3066\u3044\u308b\u3088\u3046\u306b\u3001\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8981\u4ef6\u306e\u65b0\u3057\u3044\u30d5\u30a7\u30fc\u30ba\u306b\u5165\u308a\u307e\u3059\u3002<a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\"><\/a>\u4ee5\u524d\u306e\u767a\u8868\u3067\u306f\u3001\u3053\u306e\u5909\u66f4\u306f4\u6708\u306b\u884c\u308f\u308c\u308b\u3068\u8a18\u8f09\u3055\u308c\u3066\u3044\u307e\u3057\u305f\u304c\u3001\u305d\u306e\u65e5\u4ed8\u306f\u5909\u66f4\u3055\u308c\u307e\u3057\u305f\u3002<\/div>\n<div>  <\/div>\n<div>\u5404\u30d5\u30a7\u30fc\u30ba\u3067\u306f\u3001 <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">  CVE-2022-37967<\/a> \u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5f37\u5316\u306e\u5909\u66f4\u306e\u65e2\u5b9a\u306e\u6700\u5c0f\u5024\u304c\u5f15\u304d\u4e0a\u3052\u3089\u308c\u3001\u5404\u30d5\u30a7\u30fc\u30ba\u306e\u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u3092\u30c9\u30e1\u30a4\u30f3 \u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u30fc\u306b\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u524d\u306b\u3001\u74b0\u5883\u304c\u6e96\u62e0\u3057\u3066\u3044\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/div>\n<div>  <\/div>\n<div><b>\u3053\u308c\u304c\u767a\u751f\u3059\u308b\u5834\u5408:<\/b><\/div>\n<div>2023 \u5e74 6 \u6708 13 \u65e5\u4ee5\u964d\u3001 <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">  CVE-2022-37967<\/a> \u306b\u5bfe\u51e6\u3059\u308b\u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u306f\u3001\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8981\u4ef6\u306e\u65b0\u3057\u3044\u30d5\u30a7\u30fc\u30ba\u306b\u5165\u308a\u307e\u3059\u3002\u307e\u305f\u30012023\u5e747\u670811\u65e5\u304c\u6700\u521d\u306e\u65bd\u884c\u30d5\u30a7\u30fc\u30ba\u3092\u958b\u59cb\u3057\u30012023\u5e7410\u670810\u65e5\u306b\u5b8c\u5168\u306a\u65bd\u884c\u30d5\u30a7\u30fc\u30ba\u3092\u958b\u59cb\u3059\u308b\u3068\u3044\u3046\u3001\u4eca\u5e74\u306e\u5f8c\u534a\u306b\u3055\u3089\u306b2\u3064\u306e\u30d5\u30a7\u30fc\u30ba\u304c\u3042\u308a\u307e\u3059\u3002<\/div>\n<div>  <\/div>\n<div><b>\u3053\u308c\u304c\u7d44\u7e54\u306b\u4e0e\u3048\u308b\u5f71\u97ff:<\/b><\/div>\n<div>\u73fe\u6642\u70b9\u3067\u306f\u3001 <a href=\"https:\/\/support.microsoft.com\/help\/5020805\" rel=\"noopener noreferrer\" target=\"_blank\">  KB5020805<\/a> \u3067\u63d0\u4f9b\u3055\u308c\u3066\u3044\u308b\u30ac\u30a4\u30c0\u30f3\u30b9\u3092\u4f7f\u7528\u3057\u3066\u3001\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5f37\u5316\u8981\u4ef6\u3092\u56de\u907f\u3067\u304d\u307e\u3059\u3002\u305f\u3060\u3057\u30012023 \u5e74 6 \u6708 13 \u65e5\u306e\u66f4\u65b0\u4ee5\u964d\u3001\u5f37\u5316\u5bfe\u7b56\u3092\u56de\u907f\u3059\u308b\u6a5f\u80fd\u306f\u4f4e\u4e0b\u3057\u307e\u3059\u3002\u74b0\u5883\u3092\u4fdd\u8b77\u3057\u3001\u505c\u6b62\u3092\u9632\u3050\u305f\u3081\u306b\u3001\u6b21\u306e\u624b\u9806\u3092\u5b9f\u884c\u3059\u308b\u3053\u3068\u3092\u304a\u52e7\u3081\u3057\u307e\u3059\u3002<\/div>\n<div>  <\/div>\n<ol>\n<li>2022 \u5e74 11 \u6708 8 \u65e5\u4ee5\u964d\u306b\u30ea\u30ea\u30fc\u30b9\u3055\u308c\u305f Windows \u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u3067 Windows&nbsp;\u30c9\u30e1\u30a4\u30f3 \u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u30fc<b>\u3092\u66f4\u65b0\u3057\u307e\u3059&nbsp;<\/b>\u3002<\/li>\n<li><a href=\"https:\/\/support.microsoft.com\/topic\/kb5020805-how-to-manage-kerberos-protocol-changes-related-to-cve-2022-37967-997e9acc-67c5-48e1-8d0d-190269bf4efb#registry5020805\" rel=\"noopener noreferrer\" target=\"_blank\">\u30ec\u30b8\u30b9\u30c8\u30ea \u30ad\u30fc\u8a2d\u5b9a<\/a>\u3092\u4f7f\u7528\u3057\u3066&nbsp;Windows \u30c9\u30e1\u30a4\u30f3 \u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u30fc\u3092\u76e3\u67fb\u30e2\u30fc\u30c9<b>\u306b\u79fb\u884c\u3059\u308b&nbsp;<\/b><\/li>\n<li>\u74b0\u5883\u3092\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u3067\u4fdd\u8b77\u3059\u308b\u305f\u3081\u306b\u76e3\u67fb\u30e2\u30fc\u30c9\u4e2d\u306b&nbsp;\u63d0\u51fa\u3055\u308c\u305f <b>MONITOR<\/b>&nbsp;\u30a4\u30d9\u30f3\u30c8<\/li>\n<li>\u5f37\u5316\u30e2\u30fc\u30c9<b>\u3092\u6709\u52b9\u306b&nbsp;<\/b>\u3057\u3066\u3001\u74b0\u5883\u3067<a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">CVE-2022-37967<\/a>&nbsp;\u306b\u5bfe\u51e6&nbsp;\u3057\u307e\u3059<\/li>\n<\/ol>\n<div>  <\/div>\n<div>\u74b0\u5883\u5185\u306e\u3059\u3079\u3066\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5f37\u5316\u3092\u6709\u52b9\u306b\u3059\u308b\u306b\u306f\u3001\u3067\u304d\u308b\u3060\u3051\u65e9\u304f\u5f37\u5236\u30e2\u30fc\u30c9\u306b\u79fb\u884c\u3059\u308b\u3053\u3068\u3092\u304a\u52e7\u3081\u3057\u307e\u3059\u3002\u74b0\u5883\u306f\u3001\u5404\u30d5\u30a7\u30fc\u30ba\u306e\u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u3092\u30c9\u30e1\u30a4\u30f3 \u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u30fc\u306b\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u524d\u306b\u3001\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5f37\u5316\u306e\u5909\u66f4\u306b\u6e96\u62e0\u3057\u3066\u3044\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/div>\n<div>  <\/div>\n<div><b>\u6e96\u5099\u3059\u308b\u305f\u3081\u306b\u5fc5\u8981\u306a\u3053\u3068:<\/b><\/div>\n<div>2023 \u5e74 7 \u6708\u4ee5\u964d\u3001\u5f37\u5316\u30e2\u30fc\u30c9\u306f\u3059\u3079\u3066\u306e Windows \u30c9\u30e1\u30a4\u30f3 \u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u30fc\u3067\u6709\u52b9\u306b\u306a\u308a\u3001\u975e\u6e96\u62e0\u30c7\u30d0\u30a4\u30b9\u304b\u3089\u306e\u8106\u5f31\u306a&nbsp;\u63a5\u7d9a\u3092\u30d6\u30ed\u30c3\u30af\u3057\u307e\u3059\u3002 \u305d\u306e\u6642\u70b9\u3067\u306f\u3001\u66f4\u65b0\u3092\u7121\u52b9\u306b\u3059\u308b\u3053\u3068\u306f\u3067\u304d\u307e\u305b\u3093\u304c\u3001[\u76e3\u67fb\u30e2\u30fc\u30c9] \u8a2d\u5b9a\u306b\u623b\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002&nbsp;\u76e3\u67fb\u30e2\u30fc\u30c9\u306f\u3001\u300c<a href=\"https:\/\/support.microsoft.com\/topic\/kb5020805-how-to-manage-kerberos-protocol-changes-related-to-cve-2022-37967-997e9acc-67c5-48e1-8d0d-190269bf4efb#timing\" rel=\"noopener noreferrer\" target=\"_blank\">Kerberos   \u306e\u8106\u5f31\u6027&nbsp;CVE-2022-37967 \u306b\u5bfe\u51e6\u3059\u308b\u305f\u3081\u306e\u66f4\u65b0\u306e\u30bf\u30a4\u30df\u30f3\u30b0<\/a>\u300d\u30bb\u30af\u30b7\u30e7\u30f3\u3067\u8aac\u660e\u3055\u308c\u3066\u3044\u308b&nbsp;\u3088\u3046\u306b\u30012023 \u5e74 10 \u6708\u306b\u524a\u9664\u3055\u308c\u307e\u3059\u3002&nbsp;<\/div>\n<div>  <\/div>\n<div>\u8ffd\u52a0\u306e\u5c55\u958b\u30d5\u30a7\u30fc\u30ba\u3054\u3068\u306b\u3001\u74b0\u5883\u306f\u65b0\u3057\u3044\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5bfe\u7b56\u3092\u53d7\u3051\u5165\u308c\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002\u5404\u30d5\u30a7\u30fc\u30ba\u3067\u767a\u751f\u3059\u308b\u5909\u66f4\u306b\u6ce8\u610f\u3057\u3001\u5909\u66f4\u306e\u6e96\u5099\u3092\u3057\u307e\u3059\u3002<\/div>\n<ul>\n<li><b>2023 \u5e74 6 \u6708 13 \u65e5<\/b>\u4ee5\u964d\u306b\u30ea\u30ea\u30fc\u30b9\u3055\u308c\u305f Windows \u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u3067\u306f\u3001PAC \u7f72\u540d\u306e\u8ffd\u52a0\u3092\u7121\u52b9\u306b\u3059\u308b\u6a5f\u80fd\u304c\u524a\u9664\u3055\u308c\u307e\u3059\u3002\u3053\u308c\u3089\u306e\u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u3092\u30c9\u30e1\u30a4\u30f3 \u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u30fc\u306b\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u306b\u306f\u3001\u30a2\u30d7\u30ea\u3068\u74b0\u5883\u304c\u65b0\u3057\u3044\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8981\u4ef6 (<b>KrbtgtFullPacSignature<\/b>&nbsp;\u30b5\u30d6\u30ad\u30fc\u306e\u5024\u3092&nbsp;1 \u306b\u8a2d\u5b9a) \u306b\u6e96\u62e0\u3057\u3066\u3044\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/li>\n<li><b>2023 \u5e74 7 \u6708 11 \u65e5<\/b>\u4ee5\u964d\u306b\u30ea\u30ea\u30fc\u30b9\u3055\u308c\u305f Windows \u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u3067\u306f\u3001<b>KrbtgtFullPacSignature<\/b>&nbsp;\u30b5\u30d6\u30ad\u30fc\u306b&nbsp;\u5024&nbsp;<b>1<\/b>&nbsp;\u3092\u8a2d\u5b9a\u3059\u308b\u6a5f\u80fd\u304c\u524a\u9664\u3055\u308c\u307e\u3059\u3002\u307e\u305f\u3001\u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u306f\u5f37\u5236\u30e2\u30fc\u30c9 (\u65e2\u5b9a) (<b>KrbtgtFullPacSignature&nbsp;= 3<\/b>) \u306b\u79fb\u884c\u3057\u307e\u3059\u304c\u3001&nbsp;\u660e\u793a\u7684\u306a\u76e3\u67fb\u8a2d\u5b9a\u3092\u6301\u3064\u7ba1\u7406\u8005\u306f\u5f15\u304d\u7d9a\u304d\u30aa\u30fc\u30d0\u30fc\u30e9\u30a4\u30c9\u3067\u304d\u307e\u3059\u3002<\/li>\n<li><b>2023 \u5e74 10 \u6708 10<\/b> \u65e5\u4ee5\u964d\u306b\u30ea\u30ea\u30fc\u30b9\u3055\u308c\u305f Windows \u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0\u3067\u306f\u3001\u30ec\u30b8\u30b9\u30c8\u30ea \u30b5\u30d6\u30ad\u30fc&nbsp;<b>KrbtgtFullPacSignature<\/b> \u3068\u76e3\u67fb\u30e2\u30fc\u30c9\u306e\u30b5\u30dd\u30fc\u30c8\u304c\u524a\u9664\u3055\u308c\u307e\u3059\u3002\u65b0\u3057\u3044 PAC \u7f72\u540d\u306e\u306a\u3044\u3059\u3079\u3066\u306e\u30b5\u30fc\u30d3\u30b9 \u30c1\u30b1\u30c3\u30c8\u306f\u8a8d\u8a3c\u3092\u62d2\u5426\u3055\u308c\u307e\u3059\u3002<\/li>\n<\/ul>\n<div>  <\/div>\n<div><a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">CVE-2022-37967<\/a> \u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5f37\u5316\u306b\u95a2\u9023\u3059\u308b\u554f\u984c\u306e\u56de\u907f\u7b56\u3092\u4f7f\u7528\u3057\u3066\u3044\u306a\u3044\u5834\u5408\u3067\u3082\u3001\u6b21\u306e\u30d5\u30a7\u30fc\u30ba\u3067\u74b0\u5883\u5185\u306e\u554f\u984c\u306b\u5bfe\u51e6\u3059\u308b\u5fc5\u8981\u304c\u3042\u308b\u5834\u5408\u304c\u3042\u308a\u307e\u3059\u30022023 \u5e74 7 \u6708 11 \u65e5 &#8211; \u521d\u671f\u9069\u7528\u30d5\u30a7\u30fc\u30ba\u3001\u304a\u3088\u3073 2023 \u5e74 10 \u6708 10 \u65e5   &#8211; \u5b8c\u5168\u306a\u65bd\u884c\u30d5\u30a7\u30fc\u30ba\u3002\u5b8c\u5168\u306a\u30ac\u30a4\u30c0\u30f3\u30b9\u306b\u3064\u3044\u3066\u306f\u3001\u4ee5\u4e0b\u306e\u300c\u8ffd\u52a0\u60c5\u5831\u300d\u30bb\u30af\u30b7\u30e7\u30f3\u306e\u30ea\u30bd\u30fc\u30b9\u3092\u8abf\u3079\u3066\u304f\u3060\u3055\u3044\u3002<\/div>\n<div>  <\/div>\n<div><b>\u8ffd\u52a0\u60c5\u5831:<\/b><\/div>\n<ul>\n<li><a href=\"https:\/\/support.microsoft.com\/help\/5020805\" rel=\"noopener noreferrer\" target=\"_blank\">KB5020805:CVE-2022-37967\u306b\u95a2\u9023\u3059\u308bKerberos\u30d7\u30ed\u30c8\u30b3\u30eb\u306e\u5909\u66f4\u3092\u7ba1\u7406\u3059\u308b\u65b9\u6cd5<\/a><\/li>\n<li><a href=\"https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2022-37967\" rel=\"noopener noreferrer\" target=\"_blank\">CVE-2022-37967 &#8211; \u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u66f4\u65b0\u30d7\u30ed\u30b0\u30e9\u30e0 \u30ac\u30a4\u30c9 &#8211; \u30de\u30a4\u30af\u30ed\u30bd\u30d5\u30c8 &#8211; Windows Kerberos \u306e\u7279\u6a29\u306e\u6607\u683c\u306e\u8106\u5f31\u6027<\/a><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table><\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>MC541054 | Changes to the deployment phase for CVE-2022-37967 &#8211; now beginning June 13, 2023 Classificati [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-1096","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts\/1096","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/comments?post=1096"}],"version-history":[{"count":0,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts\/1096\/revisions"}],"wp:attachment":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/media?parent=1096"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/categories?post=1096"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/tags?post=1096"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}