-
Microsoft Security Advisory (2862152): Vulnerability in DirectAccess Could Allow Security...
Revision Note: V1.0 (November 12, 2013): Advisory published. Summary: Microsoft is announcing the availability of an update for all supported releases of Windows to address a vulnerability in how DirectAccess authenticates DirectAccess server connections to DirectAccess clients. Continue reading...- News
- Thread
- 2013 advisory authentication directaccess microsoft november security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
Clarification on Security Advisory 2896666 and the ANS for the November 2013 Security Bulletin...
Today, we’re providing advance notification for the release of eight bulletins, three Critical and five Important, for November 2013. The Critical updates address vulnerabilities in Internet Explorer and Microsoft Windows, and the Important updates address issues in Windows and Office. While...- News
- Thread
- advisory bulletin critical deployment gdi+ important internet explorer lync office office 2003 office 2007 office 2010 risk assessment security update vulnerabilities windows windows server windows vista windows xp
- Replies: 8
- Forum: Security Alerts
-
The October 2013 security updates
This month we release eight bulletins – four Critical and four Important - which address 26 unique CVEs in Microsoft Windows, Internet Explorer, SharePoint, .NET Framework, Office, and Silverlight. For those who need to prioritize their deployment planning, we recommend focusing on MS13-080...- News
- Thread
- advisory bulletin cve deployment exploitability internet explorer md5 microsoft net framework october office remote code execution security sharepoint ssl trustworthy computing update vulnerabilities webcast windows
- Replies: 0
- Forum: Security Alerts
-
Microsoft Releases Security Advisory 2887505
Today we released Security Advisory 2887505 regarding an issue that affects Internet Explorer. There are only reports of a limited number of targeted attacks specifically directed at Internet Explorer 8 and 9, although the issue could potentially affect all supported versions. This issue could...- News
- Thread
- active scripting activex controls advisory antivirus caution cve-2013-3893 cybersecurity firewall fix internet explorer microsoft mitigation remote code execution response communications security security zone software update threat landscape trusted sites vulnerability
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2854544): Updates to Improve Cryptography and Digital Certificate...
Revision Note: V1.1 (August 13, 2013): Added the 2862966 and 2862973 updates to the Available Updates and Release Notes section. Summary: Microsoft is announcing the availability of updates as part of ongoing efforts to improve cryptography and digital certificate handling in Windows. Microsoft...- News
- Thread
- advisory cryptography digital certificates infrastructure microsoft security threats update windows
- Replies: 1
- Forum: Security Alerts
-
Microsoft Security Advisory (2862973): Update for Deprecation of MD5 Hashing Algorithm for...
Revision Note: V1.0 (August 13, 2013): Advisory published. Summary: Microsoft is announcing the availability of an update for supported editions of Windows Vista, Windows Server 2008, Windows 7, Windows Server 2008 R2, Windows 8, and Windows Server 2012 that restricts the use of certificates...- News
- Thread
- advisory attack certificate deprecation hashing information man-in-the-middle md5 microsoft phishing root certificate safety security technology update vulnerability windows 7 windows 8 windows server windows vista
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2862973): Update for Deprecation of MD5 Hashing Algorithm for...
Revision Note: V1.0 (August 13, 2013): Advisory published. Summary: Microsoft is announcing the availability of an update for supported editions of Windows Vista, Windows Server 2008, Windows 7, Windows Server 2008 R2, Windows 8, and Windows Server 2012 that restricts the use of certificates...- News
- Thread
- advisory attack certificate cybersecurity encryption hashing man-in-the-middle md5 microsoft phishing protocol root certificate security threats update vulnerability windows 7 windows 8 windows server windows vista
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2861855): Updates to Improve Remote Desktop Protocol...
Revision Note: V1.0 (August 13, 2013): Advisory published. Summary: Microsoft is announcing the availability of updates as part of ongoing efforts to improve Network-level Authentication in the Remote Desktop Protocol. Microsoft will continue to announce additional updates via this advisory, all...- News
- Thread
- advisory authentication control microsoft network protocol remote desktop security update windows
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2264072): Elevation of Privilege Using Windows Service Isolation...
Revision Note: V1.0 (August 10, 2010): Advisory published. Summary: Microsoft is aware of the potential for attacks that leverage the Windows Service Isolation feature to gain elevation of privilege. This advisory discusses potential attack scenarios and provides suggested actions that can help...- News
- Thread
- advisory attack isolation microsoft privilege protection security tapi update windows
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (977377): Vulnerability in TLS/SSL Could Allow Spoofing - Version:...
Revision Note: V2.0 (August 10, 2010): Advisory updated to reflect publication of security bulletin. Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS10-049 to address this issue. For more information about this issue, including...- News
- Thread
- advisory cve knowledge base microsoft security spoofing ssl tls update vulnerability
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2501584): Release of Microsoft Office File Validation for...
Revision Note: V2.0 (June 30, 2011): Announced that the Office File Validation Add-in described in Microsoft Knowledge Base Article 2501584 is available through the Microsoft Update service. Summary: Microsoft is announcing the availability of the Office File Validation feature for supported...- News
- Thread
- advisory customer advisory data security file validation knowledge base malware microsoft office office 2003 office 2007 office 2010 scan security security features update validation vulnerability windows update
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2659883): Vulnerability in ASP.NET Could Allow Denial of Service...
Revision Note: V2.0 (December 29, 2011): Advisory updated to reflect publication of security bulletin. Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS11-100 to address this issue. For more information about this issue, including...- News
- Thread
- advisory asp.net cve-2011-3414 denial of service hashtable investigation microsoft ms11-100 public reports security update vulnerability
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2639658): Vulnerability in TrueType Font Parsing Could Allow...
Revision Note: V2.0 (December 13, 2011): Advisory updated to reflect publication of security bulletins. Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS11-087 to address this issue. For more information about this issue, including...- News
- Thread
- advisory bulletin cve-2011-3402 fonts investigation microsoft security truetype update vulnerability
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2562937): Update Rollup for ActiveX Kill Bits - Version: 1.0
Revision Note: V1.0 (August 9, 2011): Advisory published. Summary: Microsoft is releasing a new set of ActiveX kill bits with this advisory. Continue reading...- News
- Thread
- 2011 activex advisory kill bits microsoft security update
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2854544): Update to Improve Cryptography and Digital Certificate...
Revision Note: V1.0 (June 11, 2013): Advisory published. Summary: Microsoft is announcing the availability of an update as part of ongoing efforts to improve cryptography and digital certificate handling in Windows. Over the course of months, Microsoft will continue to announce additional...- News
- Thread
- advisory cryptography digital certificates handling infrastructure microsoft security threats update windows
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2719662): Vulnerabilities in Gadgets Could Allow Remote Code...
Revision Note: V1.1 (July 3, 2013): Clarified that disabling Windows Sidebar and Gadgets can help protect customers from potential attacks that leverage Gadgets to execute arbitrary code. This is an informational change only. Summary: Microsoft is announcing the availability of an automated...- News
- Thread
- advisory fix gadgets microsoft remote code execution security vulnerabilities windows 7 windows vista
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2695962): Update Rollup for ActiveX Kill Bits - Version: 1.0
Revision Note: V1.0 (May 8, 2012): Advisory published. Summary: Microsoft is releasing a new set of ActiveX kill bits with this advisory. Continue reading...- News
- Thread
- activex advisory kill bits microsoft revision security update version
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2647518): Update Rollup for ActiveX Kill Bits - Version: 1.0
Revision Note: V1.0 (March 13, 2012): Advisory published. Summary: Microsoft is releasing a new set of ActiveX kill bits with this advisory. Continue reading...- News
- Thread
- activex advisory deployment information internet kill bits management march 2012 microsoft patch release revision security software support technical update v1.0 version vulnerability
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2728973): Unauthorized Digital Certificates Could Allow Spoofing...
Revision Note: V1.2 (September 5, 2012): Corrected the common name for the "CN=Microsoft Online Svcs BPOS APAC CA4" certificate issued by Microsoft Services PCA. Summary: Microsoft is aware of Microsoft certificate authorities that are outside our recommended secure storage practices. Upon a...- News
- Thread
- advisory certificate digital certificates microsoft pki revision note security spoofing untrusted store windows
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (2736233): Update Rollup for ActiveX Kill Bits - Version: 1.0
Revision Note: V1.0 (September 11, 2012): Advisory published. Summary: Microsoft is releasing a new set of ActiveX kill bits with this advisory. Continue reading...- News
- Thread
- 2012 activex advisory kill bits microsoft security update version 1.0
- Replies: 0
- Forum: Security Alerts