Microsoft’s Secure Boot update FAQ makes clear that a coordinated, multi-step transition is now live: Windows will roll new 2023 signing certificates into UEFI variables and update the Windows boot manager to preserve Secure Boot protection ahead of the 2011 CA expirations, but the rollout...
20112011-certs
2023 ca
2023-certs
bios
bitlocker
boot manager
bootkit
ca2023
certificate
certificate expiration
certificate rollover
cve-2023-24932
db
dbx
dual boot
efi
enterprise it
esu
firmware
it administration
kek
lcu
linux
linux boot
linux compatibility
linux shim
oem
oem firmware
os upgrade
recovery
recovery media
recovery usb
rollback
secure boot
servicing stack update
shim
signaturedatabase
ssu
svn
uefi
vendor-update
virtual machine
virtualization
windows 10
windows 11
windows update
Revision Note: V1.0 (August 9, 2011): Advisory published.
Summary: Microsoft is releasing a new set of ActiveX kill bits with this advisory.
Continue reading...
This forty minute video demonstration examines the impact of solid state hard drives on various laptops, new and old. A Dell XPS 15z and Dell XPS M1330 are compared through boot tests, benchmarks, and actual gaming experiences. A solution to a problem with SSD installations and Sandy Bridge...
Microsoft has decided to end its' Windows Home Server (WHS) offering. So the current 2011 version looks like the end of a reasonably priced Server OS install.
Link Removed
Resolves a vulnerability in Microsoft Windows Object Linking and Embedding (OLE) Automation that could allow remote code execution if a user visits a website that contains a specially crafted Windows Metafile (WMF) image.
More...
Resolves a vulnerability in the Microsoft .NET Framework that could allow for remote code execution on a client system if a user views a specially crafted Webpage by using a Web browser that can run XAML Browser Applications (XBAPs).
Link Removed
Resolves a vulnerability in Windows Remote Desktop Client 7.0 that could allow remote code execution if a user opens a legitimate Remote Desktop configuration (.rdp) file located in the same network folder as a specially crafted library file.
More...
Resolves a vulnerability in the MHTML protocol handler in Microsoft Windows that could allow an attacker to cause a victim to run malicious scripts when visiting various Web sites, resulting in information disclosure.
More...
Resolves a vulnerability in Windows Remote Desktop Client that could allow remote code execution if a user opens a legitimate Remote Desktop configuration (.rdp) file that is located in the same network folder as a specially crafted library file.
More...
Resolves vulnerabilities in Windows Media Player and Windows Media Center that could allow remote code execution if a user opens a specially crafted Microsoft Digital Video Recording (.dvr-ms) file.
More...
Resolves a vulnerability in Microsoft Windows that could allow remote code execution if an attacker created a specially crafted SMB packet and sent the packet to an affected system.
More...
Resolves a vulnerability in AFD.sys that could allow elevation of privilege if an attacker logs on to a user's system and runs a specially crafted application.
More...
Resolves a vulnerability in the .NET Framework that could allow remote code execution on a client system if a user views a specially crafted webpage by using a web browser that can run XAML browser applications (XBAPs).
Link Removed
Resolves a vulnerability in Windows DNS resolution that could allow remote code execution if an attacker gained access to the network and then created a custom program to send specially crafted LLMNR broadcast queries to the target systems.
More...
This blog was posted in Oct of 2011. Thought it might be useful to folks struggling with the new interface. Some of the points seem to be valid, but others, for me at least, are made using inaccurate observations.
Anyway, just some light reading....
Link Removed
Previous cumulative time zone updates for Windows introduced a discrepancy in the 2011 calendar history of the following time zones: Samoa Standard Time Russian Standard Time Ekaterinburg Standard Time N. Central Asia Standard Time North Asia Standard...
More...
Hello,
Today we published the December 2011 Out-of-Band Security Bulletin Webcast Questions & Answers page. We fielded 41 questions on the subject of MS11-100 . There were four questions during the webcast that we were unable to answer and we have included those questions and answers on the...