-
December 2014 Updates
Today, as part of Update Tuesday, we released seven security updates – three rated Critical and four rated Important in severity, to address 24 unique Common Vulnerabilities and Exposures (CVEs) in Microsoft Windows, Internet Explorer (IE), Office and Exchange. We encourage you to apply all of...- News
- Thread
- adobe flash bulletin critical update cumulative update december exchange server exploit index important updates internet explorer microsoft office msrc patch remote code execution security security advisory security bulletin technet update vulnerabilities vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS14-080 - Critical: Cumulative Security Update for Internet Explorer (3008923) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (December 9, 2014): Bulletin published. Summary: This security update resolves fourteen privately reported vulnerabilities in Internet Explorer. The most severe of these vulnerabilities could allow remote code execution if a user views a specially...- News
- Thread
- admin rights bulletin critical cumulative update extended security updates internet explorer ms14-058 remote code execution user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for the December 2014 Security Bulletin Release
Today, we provide advance notification for the release of seven Security Bulletins. Three of these updates are rated Critical and four are rated as Important in severity. These updates are for Microsoft Windows, Internet Explorer (IE), Office and Exchange. As per our monthly process, we’ve...- News
- Thread
- advance notification bulletin critical update cybersecurity december deployment exchange important updates information technology internet explorer microsoft office patch management pdt response communications security testing tracey pretorius update release windows
- Replies: 0
- Forum: Security Alerts
-
MS14-DEC - Microsoft Security Bulletin Advance Notification for December 2014 - Version: 1.0
Revision Note: V1.0 (December 4, 2014): Advance notification published. Summary: This is an advance notification of security bulletins that Microsoft is intending to release on December 9, 2014 Continue reading...- News
- Thread
- 2014 advance bulletin december microsoft notifications revision security technet update
- Replies: 0
- Forum: Security Alerts
-
Security Bulletin MS14-068 released
Today, we released an out-of-band security update to address a vulnerability in Kerberos which could allow Elevation of Privilege. This update is for all supported versions of Windows Server and includes a defense-in-depth update for all supported versions of Windows. We strongly encourage...- News
- Thread
- apply bulletin communication customers defense encourage kerberos out-of-band patch privilege release response security server support technet update version vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
TA14-323A: Microsoft Windows Kerberos KDC Remote Privilege Escalation Vulnerability
Original release date: November 19, 2014 Systems Affected Microsoft Windows Vista, 7, 8, and 8.1 Microsoft Server 2003, Server 2008, Server 2008 R2, Server 2012, and Server 2012 R2 Overview A remote escalation of privilege vulnerability exists in implementations of Kerberos Key Distribution...- News
- Thread
- administrator attack bulletin cve defense domain controller domain user escalation impact kerberos microsoft privilege escalation remote access research security service tickets systems affected update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
Out-of-band release for Security Bulletin MS14-068
On Tuesday, November 18, 2014, at approximately 10 a.m. PST, we will release an out-of-band security update to address a vulnerability in Windows. We strongly encourage customers to apply this update as soon as possible, following the directions in the security bulletin. More information...- News
- Thread
- bulletin cybersecurity microsoft out-of-band patch release security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
TA14-318A: Microsoft Secure Channel (Schannel) Vulnerability (CVE-2014-6321)
Original release date: November 14, 2014 Systems Affected Microsoft Windows Vista, 7, 8, 8.1, RT, and RT 8.1 Microsoft Server 2003, Server 2008, Server 2008 R2, Server 2012, and Server 2012 R2 Microsoft Windows XP and 2000 may also be affected. Overview A critical vulnerability in...- News
- Thread
- arbitrary code bulletin critical cve-2014-6321 exploit impact microsoft mitigation network traffic patch management remote attack risk schannel security server ssl tls update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS14-079 - Moderate: Vulnerability in Kernel-Mode Driver Could Allow Denial of Service...
Severity Rating: Moderate Revision Note: V1.0 (November 11, 2014): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if an attacker places a specially crafted TrueType font on a...- News
- Thread
- bulletin compromised websites denial of service email threats exploit internet safety kernel-mode microsoft network sharing november 2014 security technical article truetype update user content vulnerability web attack windows
- Replies: 0
- Forum: Security Alerts
-
MS14-072 - Important: Vulnerability in .NET Framework Could Allow Elevation of Privilege...
Severity Rating: Important Revision Note: V1.0 (November 11, 2014): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft .NET Framework. The vulnerability could allow elevation of privilege if an attacker sends specially crafted data to an...- News
- Thread
- attack bulletin elevation of privilege microsoft net framework remoting security update vulnerability workstation
- Replies: 0
- Forum: Security Alerts
-
MS14-076 - Important: Vulnerability in Internet Information Services (IIS) Could Allow...
Severity Rating: Important Revision Note: V1.0 (November 11, 2014): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Internet Microsoft Information Services (IIS) that could lead to a bypass of the "IP and domain restrictions" security feature...- News
- Thread
- bulletin domain restrictions exploitation iis internet information services ip rights microsoft security update vulnerability
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for the November 2014 Security Bulletin Release
Today, we provide advance notification for the release of 16 Security Bulletins. Five of these updates are rated Critical, nine are rated as Important, and two are rated Moderate in severity. These updates are for Microsoft Windows, Internet Explorer, Office, Exchange, .NET Framework, Internet...- News
- Thread
- ad fs bulletin deployment exchange guidance iis ime internet explorer kmd microsoft net framework notifications office rdp security testing update windows
- Replies: 0
- Forum: Security Alerts
-
MS14-NOV - Microsoft Security Bulletin Advance Notification for November 2014 - Version: 1.0
Revision Note: V1.0 (November 6, 2014): Advance notification published. Summary: This is an advance notification of security bulletins that Microsoft is intending to release on November 11, 2014 Continue reading...- News
- Thread
- 2014 advance bulletin microsoft notifications november revision security update v1.0
- Replies: 0
- Forum: Security Alerts
-
MS14-063 - Important: Vulnerability in FAT32 Disk Partition Driver Could Allow Elevation of...
Severity Rating: Important Revision Note: V1.0 (October 14, 2014): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. An elevation of privilege vulnerability exists in the way the Windows FASTFAT system driver interacts with FAT32...- News
- Thread
- arbitrary code bulletin drivers elevation exploit fastfat fat32 important microsoft october 2014 patch privately reported privilege risk security software update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS14-058 - Critical: Vulnerabilities in Kernel-Mode Driver Could Allow Remote Code Execution...
Severity Rating: Critical Revision Note: V1.0 (October 14, 2014): Bulletin published. Summary: Continue reading...- News
- Thread
- bulletin critical drivers execution kernel-mode ms14-058 remote code execution security update vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS14-062 - Important: Vulnerability in Message Queuing Service Could Allow Elevation of...
Severity Rating: Important Revision Note: V1.0 (October 14, 2014): Bulletin published. Summary: This security update resolves a publicly disclosed vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker sends a specially crafted input/output...- News
- Thread
- administrative bulletin elevation of privilege exploit message queuing patch security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
October 2014 Updates
Today, as part of Update Tuesday, we released eight security updates – three rated Critical and five rated Important - to address 24 Common Vulnerabilities & Exposures (CVEs) in Windows, Office, .NET Framework, .ASP.NET, and Internet Explorer (IE). We encourage you to apply all of these updates...- News
- Thread
- activex controls bulletin critical update deployment exploit index exposure important updates internet explorer java net framework october 2014 office patch management security advisories security updates silverlight vulnerabilities vulnerability management webcast windows
- Replies: 0
- Forum: Security Alerts
-
MS14-056 - Critical: Cumulative Security Update for Internet Explorer (2987107) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (October 14, 2014): Bulletin published. Summary: This security update resolves fourteen privately reported vulnerabilities in Internet Explorer. The most severe of these vulnerabilities could allow remote code execution if a user views a specially...- News
- Thread
- bulletin critical cumulative execution internet explorer remote access security update user rights vulnerability
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for the October 2014 Security Bulletin Release
Today, we provide advance notification for the release of nine Security Bulletins. Three of these updates are rated Critical, five are rated as Important, and one is rated Moderate in severity. These updates are for Microsoft Windows, Internet Explorer, Office, .NET Framework, and ASP.NET. As...- News
- Thread
- asp.net bulletin communication critical deployment guidance important internet explorer moderate net framework notifications october 2014 office security technology testing update webcast windows
- Replies: 0
- Forum: Security Alerts
-
MS14-OCT - Microsoft Security Bulletin Advance Notification for October 2014 - Version: 1.0
Revision Note: V1.0 (October 9, 2014): Advance notification published. Summary: This is an advance notification of security bulletins that Microsoft is intending to release on October 14, 2014 Continue reading...- News
- Thread
- 2014 advance bulletin microsoft notifications october security update
- Replies: 0
- Forum: Security Alerts