Microsoft has released the July updates to their software. Some of these updates address vulnerabilities that may allow a remote attacker to take control of a system. This includes a “wormable” remote code execution (RCE) vulnerability that affects all Windows Server versions configured as a DNS server. 
The IT Security Office advises owners of the software listed below to update as soon as possible.
Release Notes: July 2020 Security Updates
CVE-2020-1350 | Windows DNS Server Remote Code Execution Vulnerability
Additional information about these vulnerabilities can be viewed at:
Definitions for this notice:
Urgent: severity represents a broad threat to the entire campus community including remotely exploitable administrator or root type attacks.
Severe: severity includes worms & web or email based exploits.
Important: severity includes viruses and local exploits for commonly used services
OIT has defined the following categories to describe the severity of security risks:
URGENT severity represents a broad threat to the entire campus community.
SEVERE severity included remote exploits and worms.
IMPORTANT severity includes virus and local exploits for commonly used services.