← All CSA Flashcard Decks

Patch Management & Updates Flashcards

7 cards from real CSA practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Patch Management & Updates flashcards as text
  1. Which patch management phase involves identifying which systems are affected by a newly released vulnerability?

    Answer: Detection and identification

    Detection and identification is the phase where administrators assess which systems in the environment are vulnerable to a newly disclosed issue.

  2. A vendor releases a patch that conflicts with a critical line-of-business application. What is the BEST immediate action?

    Answer: Isolate affected systems and apply a compensating control while testing compatibility

    When a patch causes conflicts, isolating vulnerable systems and implementing compensating controls allows time for compatibility testing without leaving systems unprotected.

  3. What does the term 'patch Tuesday' refer to in a corporate environment?

    Answer: Microsoft's scheduled monthly release of security updates on the second Tuesday

    Patch Tuesday refers to Microsoft's practice of releasing security patches on the second Tuesday of each month, allowing organizations to plan maintenance windows around it.

  4. Which metric from the Common Vulnerability Scoring System (CVSS) MOST influences patch prioritization urgency?

    Answer: Base score severity rating

    The CVSS base score rates the intrinsic severity of a vulnerability, helping organizations prioritize which patches to apply first.

  5. An organization uses a tiered patching schedule: critical patches within 24 hours, high within 7 days, medium within 30 days. A CVSS 9.8 vulnerability is disclosed. When must it be patched?

    Answer: Within 24 hours

    A CVSS score of 9.8 is classified as critical (9.0–10.0), requiring patching within 24 hours under this tiered policy.

  6. What is the PRIMARY purpose of maintaining a patch inventory baseline?

    Answer: To know the current patch state of all assets so gaps can be identified

    A patch inventory baseline documents the current patch level of all assets, making it possible to identify unpatched systems and measure remediation progress.

  7. Which of the following BEST describes a 'zero-day' vulnerability in the context of patch management?

    Answer: An exploited flaw for which no vendor patch yet exists

    A zero-day vulnerability is one that is actively exploited before the vendor has released a patch, leaving defenders with no official fix.