Microsoft has not yet released patches for two zero-days that exploit vulnerabilities in the Microsoft Windows Support Diagnostic Tool. Follina was discovered on May 28 by a cybersecurity team in Japan known on Twitter as @nao_sec. DogWalk, first reported to Microsoft in January 2020 but not acted upon, was rediscovered on Tuesday by a security researcher called @j00sean on Twitter. Microsoft has issued a workaround advisory to disable the MSDT URL protocol to prevent the vulnerability from being invoked.”]
Source: https://www.cuinfosecurity.com/no-patch-yet-for-follina-dogwalk-windows-0-days-a-19312

