bulletin

  1. MS15-023 - Important: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation of...

    Severity Rating: Important Revision Note: V1.0 (March 10, 2015): Bulletin published. Summary: This security update resolves four privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow security feature bypass if an attacker logs on to the...
  2. MS15-028 - Important: Vulnerability in Windows Task Scheduler Could Allow Security Feature...

    Severity Rating: Important Revision Note: V1.0 (March 10, 2015): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow Security Feature Bypass if a user runs a specially crafted application that is...
  3. MS15-MAR - Microsoft Security Bulletin Summary for March 2015 - Version: 1.0

    Revision Note: V1.0 (March 10, 2015): Bulletin Summary published. Summary: This bulletin summary lists security bulletins released for March 2015. Continue reading...
  4. MS15-014 - Important: Vulnerability in Group Policy Could Allow Security Feature Bypass...

    Severity Rating: Important Revision Note: V1.0 (February 10, 2015): V1.0 (February 10, 2015): Bulletin published. Summary: Bulletin published. Continue reading...
  5. MS15-FEB - Microsoft Security Bulletin Summary for February 2015 - Version: 1.0

    Revision Note: V1.0 (February 10, 2015): Bulletin Summary published. Summary: This bulletin summary lists security bulletins released for February 2015. Continue reading...
  6. MS15-002 - Critical: Vulnerability in Windows Telnet Service Could Allow Remote Code Execution...

    Severity Rating: Critical Revision Note: V1.0 (January 13, 2015): V1.0 (January 13, 2015): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker sends specially...
  7. MS15-005 - Important: Vulnerability in Network Location Awareness Service Could Allow Security...

    Severity Rating: Important Revision Note: V1.0 (January 13, 2015): V1.0 (January 13, 2015): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow security feature bypass by unintentionally relaxing the...
  8. MS15-004 - Important: Vulnerability in Windows Components Could Allow Elevation of Privilege...

    Severity Rating: Important Revision Note: V1.0 (January 13, 2015): V1.0 (January 13, 2015): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker convinces a user to...
  9. MS15-JAN - Microsoft Security Bulletin Summary for January 2015 - Version: 1.0

    Revision Note: V1.0 (January 13, 2015): Bulletin Summary published. Summary: This bulletin summary lists security bulletins released for January 2015. Continue reading...
  10. MS15-005 - Important: Vulnerability in Network Location Awareness Service Could Allow Security...

    Severity Rating: Important Revision Note: V1.0 (January 13, 2015): V1.0 (January 13, 2015): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow security feature bypass by unintentionally relaxing the...
  11. MS14-075 - Important: Vulnerabilities in Microsoft Exchange Server Could Allow Elevation of...

    Severity Rating: Important Revision Note: V1.0 (December 9, 2014): Bulletin published. Summary: This security update resolves four privately reported vulnerabilities in Microsoft Exchange Server. The most severe of these vulnerabilities could allow elevation of privilege if a user clicks a...
  12. MS14-085 - Important: Vulnerability in Microsoft Graphics Component Could Allow Information...

    Severity Rating: Important Revision Note: V1.0 (December 9, 2014): Bulletin published. Summary: This security update resolves a publicly disclosed vulnerability in Microsoft Windows. The vulnerability could allow information disclosure if a user browses to a website containing specially crafted...
  13. MS14-080 - Critical: Cumulative Security Update for Internet Explorer (3008923) - Version: 1.0

    Severity Rating: Critical Revision Note: V1.0 (December 9, 2014): Bulletin published. Summary: This security update resolves fourteen privately reported vulnerabilities in Internet Explorer. The most severe of these vulnerabilities could allow remote code execution if a user views a specially...
  14. Advance Notification Service for the December 2014 Security Bulletin Release

    Today, we provide advance notification for the release of seven Security Bulletins. Three of these updates are rated Critical and four are rated as Important in severity. These updates are for Microsoft Windows, Internet Explorer (IE), Office and Exchange. As per our monthly process, we’ve...
  15. MS14-DEC - Microsoft Security Bulletin Advance Notification for December 2014 - Version: 1.0

    Revision Note: V1.0 (December 4, 2014): Advance notification published. Summary: This is an advance notification of security bulletins that Microsoft is intending to release on December 9, 2014 Continue reading...
  16. Security Bulletin MS14-068 released

    Today, we released an out-of-band security update to address a vulnerability in Kerberos which could allow Elevation of Privilege. This update is for all supported versions of Windows Server and includes a defense-in-depth update for all supported versions of Windows. We strongly encourage...
  17. TA14-323A: Microsoft Windows Kerberos KDC Remote Privilege Escalation Vulnerability

    Original release date: November 19, 2014 Systems Affected Microsoft Windows Vista, 7, 8, and 8.1 Microsoft Server 2003, Server 2008, Server 2008 R2, Server 2012, and Server 2012 R2 Overview A remote escalation of privilege vulnerability exists in implementations of Kerberos Key Distribution...
  18. Out-of-band release for Security Bulletin MS14-068

    On Tuesday, November 18, 2014, at approximately 10 a.m. PST, we will release an out-of-band security update to address a vulnerability in Windows. We strongly encourage customers to apply this update as soon as possible, following the directions in the security bulletin. More information...
  19. TA14-318A: Microsoft Secure Channel (Schannel) Vulnerability (CVE-2014-6321)

    Original release date: November 14, 2014 Systems Affected Microsoft Windows Vista, 7, 8, 8.1, RT, and RT 8.1 Microsoft Server 2003, Server 2008, Server 2008 R2, Server 2012, and Server 2012 R2 Microsoft Windows XP and 2000 may also be affected. Overview A critical vulnerability in...
  20. MS14-079 - Moderate: Vulnerability in Kernel-Mode Driver Could Allow Denial of Service...

    Severity Rating: Moderate Revision Note: V1.0 (November 11, 2014): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if an attacker places a specially crafted TrueType font on a...