This update addresses the vulnerability discussed in Microsoft Security Advisory (KB2987114). To find out if other security updates are available for you, see the Additional Information section at the bottom of this page.
Link Removed
This update addresses the vulnerability discussed in Microsoft Security Advisory (KB2987114).To find out if other security updates are available for you, see the Additional Information section at the bottom of this page.
Link Removed
Today, we are updating the Certificate Trust List (CTL) for all supported releases of Microsoft Windows to remove the trust of mis-issued third-party digital certificates. These certificates could be used to spoof content and perform phishing or man-in-the-middle attacks against web properties...
Today, we released Security Advisory 2974294 to inform global customers about an update for the Microsoft Malware Protection Engine. This update addresses a privately disclosed issue and fixes a vulnerability that could allow a denial of service if the Microsoft Malware Protection Engine scans a...
Today we provide advance notification for the release of seven Bulletins, two rated Critical and five rated Important in severity. These Updates are for Microsoft Word, Microsoft Office and Internet Explorer. The Update for Internet Explorer addresses Link Removed, which we have not seen used in...
advisory
bulletin
configuration
credentials
deployment
internet explorer
microsoft office
pdt
risk assessment
security
server 2008
server 2012
timeline
update
windows 7
windows 8
word
Revision Note: V1.0 (May 13, 2014): Advisory published.
Summary: Microsoft is announcing the availability of an update for Microsoft .NET Framework that disables RC4 in Transport Layer Security (TLS) through the modification of the system registry. Use of RC4 in TLS could allow an attacker to...
Revision Note: V1.0 (May 13, 2014): Advisory published.
Summary: With this advisory, Microsoft is revoking the digital signature for four private, third-party UEFI (Unified Extensible Firmware Interface) modules that could be loaded during UEFI Secure Boot.
Continue reading...
At approximately 10 a.m. PDT, we will release an out-of-band security update to address the issue affecting Internet Explorer (IE) that was first discussed in Security Advisory 2963983. This update is fully tested and ready for release for all affected versions of the browser.
The majority of...
advisory
automatic updates
guidance
ie11
internet explorer
malware
microsoft
migration
patch
response communications
security
security bulletin
support
technical
update
upgrade
webcast
windows 7
windows 8.1
windows xp
Severity Rating:
Revision Note: V22.0 (April 8, 2014): Added the 2942844 update to the Current Update section.
Summary: Microsoft is announcing the availability of an update for Adobe Flash Player in Internet Explorer on all supported editions of Windows 8, Windows Server 2012, Windows RT...
adobe
advisory
extended security updates
flash player
internet explorer
libraries
microsoft
patch
revision note
security
software
tech news
update
vulnerabilities
windows 8
windows 8.1
windows rt
windows server
windows server 2012 r2
Severity Rating:
Revision Note: V1.1 (February 28, 2014): Advisory revised to announce a detection change in the 2862152 update for Windows 8.1 for 32-bit Systems, Windows 8.1 for x64-based Systems, Windows Server 2012 R2, and Windows RT 8.1. This is a detection change only. There were no...
Severity Rating:
Revision Note: V2.0 (February 27, 2014): Revised advisory to rerelease update 2871690. The rereleased update addresses an issue where specific third-party BIOS versions did not properly validate the signature of the original update. Customers who have already successfully...
Severity Rating:
Revision Note: V2.0 (December 10, 2013): Advisory updated to reflect publication of security bulletin.
Summary: Microsoft has completed the investigation into a private report of this vulnerability. We have issued MS13-096 to address the Microsoft Graphics Component Memory...
Severity Rating:
Revision Note: V1.0 (November 12, 2013): Advisory published.
Summary: Microsoft is announcing the availability of an update for supported editions of Windows 7, Windows Server 2008 R2, Windows 8, Windows Server 2012, and Windows RT to address known weaknesses in RC4. The update...
advisory
application
cipher
crypto
cryptography
developers
november 2013
patch
rc4
registry
schannel
security
system
update
version 1.0
vulnerability
weakness
windows 7
windows 8
windows server
Severity Rating:
Revision Note: V2.0 (October 9, 2012): Revised advisory to rerelease the KB2661254 update for Windows XP and to announce that the KB2661254 update for all supported releases of Microsoft Windows is now offered through automatic updating. Customers who previously applied the...
Severity Rating:
Revision Note: V1.0 (May 8, 2012): Advisory published.
Summary: Microsoft is releasing a new set of ActiveX kill bits with this advisory.
Continue reading...
Severity Rating:
Revision Note: V2.0 (July 10, 2012): Advisory updated to reflect publication of security bulletin.
Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS12-043 to address this issue. For more information about this...
Severity Rating:
Revision Note: V2.0 (December 13, 2011): Advisory updated to reflect publication of security bulletins.
Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS11-087 to address this issue. For more information about this...
advisory
bulletin
cve-2011-3402
elevation
fonts
information
investigation
microsoft
october
patch
privilege
public
rating
revision
security
software
truetype
update
vulnerability
Severity Rating:
Revision Note: V1.0 (December, 10, 2013): Advisory published.
Summary: Microsoft is announcing the availability of an update for Microsoft ASP.NET to address a vulnerability in ASP.NET view state that exists when Machine Authentication Code (MAC) validation is disabled through...