-
Certificate Trust List update and the June 2012 bulletins
For Update Tuesday we’re releasing seven security bulletins – three Critical-class and four Important – addressing 26 unique CVEs to further improve the security postures of Microsoft Windows, Internet Explorer, Dynamics AX, Microsoft Lync, and the Microsoft .NET Framework. In...- News
- Thread
- advisory automatic updates certificate critical update cve deployment dynamics ax internet explorer key length lync mitigation net framework rdp remote code execution rs256 security trustlist update webcast windows
- Replies: 0
- Forum: Security Alerts
-
MS11-093 - Important : Vulnerability in OLE Could Allow Remote Code Execution (2624667) - Version: 1
Severity Rating: Important Revision Note: V1.0 (December 13, 2011): Bulletin published. Summary: This security update resolves a privately reported vulnerability in all supported editions of Windows XP and Windows Server 2003. This security update is rated Important for all...- News
- Thread
- affected software attacker cve exploit extended security updates important microsoft ms11-093 ole patch remote code execution revision note security bulletin technet user rights vulnerability windows 2003 windows xp
- Replies: 0
- Forum: Security Alerts
-
Windows XP and Office 2003 countdown to end of support, and the April 2012 bulletins
Hello, As you know, today is Update Tuesday. Before I go into the bulletin details, however, I wanted to let you know that today we’re notifying customers that Windows XP and Office 2003 will go out of support in April 2014. We understand that preparing to deploy the latest versions of...- News
- Thread
- april 2012 automatic updates bulletin release critical update cve deployment end of support internet explorer malware microsoft office 2003 organizational upgrade remote code execution security bulletin security updates trustworthy computing update tuesday user rights webcast windows xp
- Replies: 0
- Forum: Security Alerts
-
December 2011 Out-Of-Band Security Bulletin Webcast Q&A
Hosts: Jonathan Ness, Security Development Manager, MSRC Pete Voss, Sr. Response Communications Manager, Trustworthy Computing Website: TechNet/Security Chat Topic: December 2011 Out-Of-Band Security Bulletin Release Date...- News
- Thread
- asp.net authentication custom code cve denial of service exchange 2010 exploitability forms authentication hashtable iis internet-facing patch management security server environment technical guidance update vulnerability web server windows server windows update
- Replies: 0
- Forum: Security Alerts
-
December 2011 Security Bulletin Webcast Q&A
Hosts: Jonathan Ness, Security Development Manager, MSRC Jerry Bryant, Group Manager, Trustworthy Computing Communications Website: TechNet/Security Chat Topic: December 2011 Security Bulletin Release Date: Wednesday, December 14...- News
- Thread
- access bulletin cve documents excel fix installation kill bits macro msrc network office performance security support update vulnerability windows word wsus
- Replies: 0
- Forum: Security Alerts
-
A look back at 2011’s security landscape
Hi everyone – Mike Reavey here. Today, we’re releasing our December set of security updates. As we do every month, we're providing a heads-up on what’s coming in this month’s release as well as offering links to more information so you can plan your deployment. However...- News
- Thread
- bulletin community coordination critical cve defense deployment infection mitigation office protection report research response risk security technology telemetry update windows
- Replies: 0
- Forum: Security Alerts
-
Microsoft hosts BlueHatv11, releases four bulletins
Hello, On this November Update Tuesday, we’re recapping the Link Removed, which Microsoft hosted in Redmond last week. We are also releasing four security updates, so please read on for details. Microsoft hosted its Link Removed of the BlueHat conference Nov. 2-4. The event featured...- News
- Thread
- bluehat bulletin cve deployment exploitability installation microsoft november protection remote code execution research research community security tcp/ip trustworthy computing update vulnerability webcast
- Replies: 0
- Forum: Security Alerts
-
Advance Notification for November 2011
Hello, As we do each month, we're providing advance notification on the release of four security bulletins, one Critical, two Important, and one Moderate, to address four CVEs in Windows. As usual, the bulletin release is scheduled for the second Tuesday of the month, Nov. 8, at approximately 10...- News
- Thread
- 2011 advance bulletin communication computing critical cve important microsoft moderate msrc notifications pete voss release response security trustworthy twitter update windows
- Replies: 0
- Forum: Security Alerts
-
October Update Tuesday: Security Intelligence Report volume 11 announced
Hello, On this October Update Tuesday, we are releasing the 11th volume of the Security Intelligence Report, Link Removed which puts zero-day vulnerabilities into context against other global threats. We are also releasing eight security updates so please read on for details. A new method of...- News
- Thread
- .net automatic updates critical update cve deployment important updates internet explorer malware october update remote code execution security bulletin security report security updates silverlight tech discussion trustworthy computing vulnerabilities webcast
- Replies: 0
- Forum: Security Alerts
-
MS08-069: Vulnerabilities in Microsoft XML Core Services could allow remote code execution
Resolves a security vulnerability that exists in Microsoft XML Core Services that could enable information disclosure. More...- News
- Thread
- cve information disclosure microsoft ms08-069 patch remote code execution security update vulnerability xml core services
- Replies: 0
- Forum: Knowledge Base (KB)
-
MS11-072 - Important : Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2587505
Severity Rating: Important Revision Note: V1.0 (September 13, 2011): Bulletin published. Summary: This security update resolves five privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially...- News
- Thread
- cve excel exploitation microsoft office patch remote code execution security update vulnerability
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (945713): Vulnerability in Web Proxy Auto-Discovery (WPAD) Could Allow I
Revision Note: V2.0 (June 9, 2009): Advisory updated to reflect publication of security bulletin MS09-008 and Microsoft Security Advisory 971888. Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS09-008 to address the WPAD...- News
- Thread
- advisory bulletin cve dns investigation microsoft security update vulnerability wpad
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Advisory (975191): Vulnerabilities in the FTP Service in Internet Information Ser
Revision Note: V3.0 (October 13, 2009): Advisory updated to reflect publication of security bulletin. Summary: Microsoft has completed the investigation into a public report of this issue. We have released MS09-053 to address this issue. For more information about this issue, including...- News
- Thread
- advisory cve dos ftp iis microsoft rce security update vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS11-044 - Critical: Vulnerability in .NET Framework Could Allow Remote Code Execution (2538814) - V
Severity Rating: Critical - Revision Note: V1.0 (June 14, 2011): Bulletin published.Summary: This security update resolves a publicly disclosed vulnerability in Microsoft .NET Framework. The vulnerability could allow remote code execution on a client system if a user views a specially crafted...- News
- Thread
- asp.net browser bulletin client code security critical cve exploit iis microsoft net framework patch remote code execution security server update user rights vulnerability web server xaml
- Replies: 0
- Forum: Security Alerts
-
MS11-045 - Important: Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2537146)
Severity Rating: Important - Revision Note: V1.0 (June 14, 2011): Bulletin published.Summary: This security update resolves eight privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An...- News
- Thread
- admin rights cve excel exploit file validation fix important information knowledge base microsoft office updates patch protected view remote code execution security update bulletin user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Exploitability Index Improvements Now Offer Additional Guidance
Exploitability Index Improvements Now Offer Additional Guidance In October of 2008, Microsoft published its first Link Removed a rating system that helps customers identify the likelihood that a specific vulnerability would be exploited within the first 30 days after bulletin release. As of...- News
- Thread
- assessment cooperation cve denial of service environmental risks exploitability indexing it administration microsoft mitigation monthly review recent platforms risk assessment security security updates software update technical analysis vulnerability windows 7
- Replies: 0
- Forum: Security Alerts
-
MS11-021 - Important: Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2489279)
Bulletin Severity Rating:Important - This security update resolves nine privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these...- News
- Thread
- admin rights attack bulletin cve excel exploit important microsoft office patch privately reported remote code execution security update user account user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS11-022 - Important: Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution (248
Bulletin Severity Rating:Important - This security update resolves three privately reported vulnerabilities in Microsoft PowerPoint. The vulnerabilities could allow remote code execution if a user opens a specially crafted PowerPoint file. An attacker who successfully exploited any of these...- News
- Thread
- cve fix knowledge base microsoft powerpoint remote code execution security update user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Bulletin Summary for February 2011
Revision Note: V1.1 (February 9, 2011): For MS11-013, corrected the Exploitability Index Assessment for CVE-2011-0091 to "3 – Functioning exploit code unlikely." This is an informational change only.Summary: This bulletin summary lists security bulletins released for February 2011. Link Removed...- News
- Thread
- assessment bulletin cve exploitability february microsoft ms11-013 security update vulnerability
- Replies: 0
- Forum: Security Alerts
-
TA10-348A: Microsoft Updates for Multiple Vulnerabilities
Microsoft Updates for Multiple Vulnerabilities Syndicated from the United States Security Readiness Team (US-CERT). Link Removed - Invalid URL- News
- Thread
- application certificate cve information microsoft patch security update us-cert vulnerabilities
- Replies: 0
- Forum: Security Alerts