A security vulnerability exists in Microsoft Office Compatibility Pack Service Pack 3 that could allow arbitrary code to run when a maliciously modified file is opened. This update resolves that vulnerability.
Link Removed
A security vulnerability exists in Microsoft Excel 2010 64-Bit Edition that could allow arbitrary code to run when a maliciously modified file is opened. This update resolves that vulnerability.
Link Removed
A security vulnerability exists in Microsoft Excel 2010 32-Bit Edition that could allow arbitrary code to run when a maliciously modified file is opened. This update resolves that vulnerability.
Link Removed
A security vulnerability exists in Microsoft Office 2010 32-Bit Edition that could allow arbitrary code to run when a maliciously modified file is opened. This update resolves that vulnerability.
Link Removed
Severity Rating: Important
Revision Note: V1.0 (March 10, 2015): Bulletin published.
Summary: This security update resolves two privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a...
Severity Rating: Important
Revision Note: V1.0 (March 10, 2015): Bulletin published.
Summary: This security update resolves two privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a...
arbitrarycode
elevation of privilege
local system
microsoft
security bulletin
security update
software update
user rights
vulnerabilities
windows kernel
Severity Rating: Critical
Revision Note: V1.0 (March 10, 2015): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file. An...
administrative rights
arbitrarycode
critical update
exploitation
microsoft office
remote code execution
security update
severity rating
user rights
vulnerabilities
Severity Rating: Important
Revision Note: V1.0 (February 10, 2015): Bulletin published.
Summary: This security update resolves one publicly disclosed vulnerability in Microsoft Office. The vulnerability could allow security feature bypass if a user opens a specially crafted Microsoft Office...
Original release date: November 14, 2014
Systems Affected
Microsoft Windows Vista, 7, 8, 8.1, RT, and RT 8.1
Microsoft Server 2003, Server 2008, Server 2008 R2, Server 2012, and Server 2012 R2
Microsoft Windows XP and 2000 may also be affected.
Overview
A critical vulnerability in...
Original release date: November 14, 2014
Systems Affected
Microsoft Windows Vista, 7, 8, 8.1, RT, and RT 8.1
Microsoft Server 2003, Server 2008, Server 2008 R2, Server 2012, and Server 2012 R2
Overview
A vulnerability in Microsoft Windows Object Linking and Embedding (OLE) could allow...
administrator
arbitrarycode
cve-2014-6332
execution
exploit
impact
internet explorer
memory
mitigation
ole
privileged access
remote code
safearrayredim
security
server 2003
server 2008
update
vbscript
vulnerability
windows
Severity Rating: Critical
Revision Note: V1.0 (November 11, 2014): Bulletin published.
Summary: This security update resolves two privately reported vulnerabilities in Microsoft Windows Object Linking and Embedding (OLE). The vulnerabilities could allow remote code execution if a user opens a...
Severity Rating: Important
Revision Note: V1.0 (October 14, 2014): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. An elevation of privilege vulnerability exists in the way the Windows FASTFAT system driver interacts with FAT32...
arbitrarycode
bulletin
driver
elevation
exploit
fastfat
fat32
important
microsoft
october 2014
patch
privately reported
privileges
risk
security
software
system driver
update
vulnerability
windows
Original release date: September 25, 2014
Systems Affected
GNU Bash through 4.3.
Linux, BSD, and UNIX distributions including but not limited to:
CentOS 5 through 7
Debian
Mac OS X
Red Hat Enterprise Linux 4 through 7
Link Removed 10.04 LTS, 12.04 LTS, and 14.04 LTS
Overview
A critical...
apache
arbitrarycode
attacks
bash
command execution
cve-2014-6271
debian
environment variables
impact
linux
mac os x
openssh
patch
red hat
remote execution
security
shellshock
solution
unix
vulnerability
Revision Note: V1.1 (July 3, 2013): Clarified that disabling Windows Sidebar and Gadgets can help protect customers from potential attacks that leverage Gadgets to execute arbitrary code. This is an informational change only.
Summary: Microsoft is announcing the availability of an automated...
advisory
arbitrarycode
attacks
automated solution
fix it
gadgets
informational
microsoft
protection
remote code
security
update
vulnerabilities
windows 7
windows sidebar
windows vista
Severity Rating: Important
Revision Note: V1.0 (July 9, 2013): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in Windows Defender for Windows 7 and Windows Defender when installed on Windows Server 2008 R2. The vulnerability...
Original release date: March 12, 2013
Systems Affected
Microsoft Windows
Microsoft Internet Explorer
Microsoft Office
Microsoft Server Software
Microsoft Silverlight
Overview Select Microsoft software products contain multiple vulnerabilities. Microsoft has released updates to...
admin
arbitrarycode
automatic updates
denial of service
impact
internet explorer
microsoft
office
remote access
security
security bulletin
server software
silverlight
solution
testing
unauthorized access
updates
vulnerabilities
windows
wsus
Original release date: December 12, 2012 | Last revised: January 24, 2013
Systems Affected
Microsoft Windows
Microsoft Office
Microsoft Server Software
Internet Explorer
Overview Select Microsoft software products contain multiple vulnerabilities. Microsoft has released...
administrator
arbitrarycode
automated updates
bulletin
denial of service
home users
impact
internet explorer
microsoft
office
release date
revision history
security
security bulletin
server
testing
unauthorized access
updates
vulnerabilities
windows
Original release date: January 08, 2013 | Last revised: February 06, 2013
Systems Affected
Microsoft Windows
Microsoft Office
Microsoft Server Software
Microsoft .NET Framework
Microsoft Developer Tools
Overview Select Microsoft software products contain multiple...
2013
arbitrarycode
automatic updates
denial of service
developer tools
malware protection
microsoft
net framework
office
patch management
remote attack
security
security bulletin
server
system security
testing
updates
user security
vulnerabilities
windows
Revision Note: V1.0 (July 10, 2012): Advisory published.
Summary: Microsoft is announcing the availability of an automated Microsoft Fix it solution that disables the Windows Sidebar and Gadgets on supported editions of Windows Vista and Windows 7. Disabling the Windows Sidebar and...
Revision Note: V1.0 (July 10, 2012): Advisory published.
Summary: Microsoft is announcing the availability of an automated Microsoft Fix it solution that disables the Windows Sidebar and Gadgets on supported editions of Windows Vista and Windows 7. Disabling the Windows Sidebar and...
advisory
arbitrarycode
automated solution
customer protection
fix it
gadgets
insecure gadgets
microsoft
remote code execution
security
untrusted sources
vulnerabilities
windows 7
windows sidebar
windows vista