-
3123479 - Deprecation of SHA-1 Hashing Algorithm for Microsoft Root Certificate Program -...
Revision Note: V1.0 (January 12, 2016): Advisory published. Summary: Microsoft is announcing a policy change to the Microsoft Root Certificate Program. The new policy no longer allows root certificate authorities to issue X.509 certificates using the SHA-1 hashing algorithm for the purposes of...- News
- Thread
- 2016 advisory attack certificate code signing deprecation digital certificates man-in-the-middle microsoft phishing policy change revision note root certificate security sha1 spoofing ssl technet v1.0 x.509
- Replies: 0
- Forum: Security Alerts
-
MS16-001 - Critical: Cumulative Security Update for Internet Explorer (3124903) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (January 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The more severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- administrative attack vector critical cumulative update cybersecurity data security exploit extended security updates internet explorer malware microsoft ms16-001 patch management remote code execution revision note security user rights vulnerability webpage
- Replies: 0
- Forum: Security Alerts
-
3118753 - Updates for ActiveX Kill Bits 3118753 - Version: 1.0
Revision Note: V1.0 (January 12, 2016): Advisory published. Summary: Microsoft is releasing a new set of ActiveX kill bits with this advisory. These ActiveX kill bits are included in the Internet Explorer cumulative update released on January 12, 2016. Continue reading...- News
- Thread
- 2016 activex advisory browser security content advisory cumulative update internet explorer kill bits microsoft patch management revision note security security advisory software update tech news update version 1.0 vulnerability web browsing
- Replies: 0
- Forum: Security Alerts
-
3118753 - Updates for ActiveX Kill Bits 3118753 - Version: 1.0
Revision Note: V1.0 (January 12, 2016): Advisory published. Summary: Microsoft is releasing a new set of ActiveX kill bits with this advisory. These ActiveX kill bits are included in the Internet Explorer cumulative update released on January 12, 2016. Continue reading...- News
- Thread
- 2016 activex advisory cumulative internet explorer kill bits microsoft revision note security update version 1.0 web security windows
- Replies: 0
- Forum: Security Alerts
-
MS16-002 - Critical: Cumulative Security Update for Microsoft Edge (3124904) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (January 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Edge. The vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Microsoft Edge. An attacker who...- News
- Thread
- 2016 administrative attack bulletin critical cumulative execution exploit impact microsoft edge ms16-002 remote code execution revision note security summary update user rights vulnerabilities webpage
- Replies: 0
- Forum: Security Alerts
-
3123479 - Deprecation of SHA-1 Hashing Algorithm for Microsoft Root Certificate Program -...
Revision Note: V1.0 (January 12, 2016): Advisory published. Summary: Microsoft is announcing a policy change to the Microsoft Root Certificate Program. The new policy no longer allows root certificate authorities to issue X.509 certificates using the SHA-1 hashing algorithm for the purposes of...- News
- Thread
- 2016 advisory attack certificate code signing content spoofing deprecation digital certificates hashing man-in-the-middle microsoft phishing policy change revision note root certificate security sha1 ssl x.509
- Replies: 0
- Forum: Security Alerts
-
MS15-135 - Important: Security Update for Windows Kernel-Mode Drivers to Address Elevation...
Severity Rating: Important Revision Note: V1.0 (December 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to a target system and runs a specially crafted...- News
- Thread
- 2015 application attacker bulletin critical drivers kernel-mode microsoft ms15-135 patch management privilege protection revision note security software system update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
3123040 - Inadvertently Disclosed Digital Certificate Could Allow Spoofing - Version: 1.0
Revision Note: V1.0 (December 8, 2015): Advisory published. Summary: Microsoft is aware of an SSL/TLS digital certificate for *.xboxlive.com for which the private keys were inadvertently disclosed. The certificate could be used in attempts to perform man-in-the-middle attacks. It cannot be used...- News
- Thread
- 2015 advisory certificate cybersecurity digital certificates man-in-the-middle microsoft private keys revision note security spoofing ssl support technet tls update v1.0 vulnerability windows xbox live
- Replies: 0
- Forum: Security Alerts
-
3119884 - Inadvertently Disclosed Digital Certificates Could Allow Spoofing - Version: 1.0
Revision Note: V1.0 (November 30, 2015): Advisory published. Summary: Microsoft is aware of unconstrained digital certificates from Dell Inc. for which the private keys were inadvertently disclosed. One of these unconstrained certificates could be used to issue other certificates, impersonate...- News
- Thread
- advisory attack prevention content spoofing cybersecurity dell digital certificates domain impersonation man-in-the-middle microsoft phishing private keys revision note security spoofing supported releases tech news v1.0 vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS15-112 - Critical: Cumulative Security Update for Internet Explorer (3104517) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (November 10, 2015): Click here to enter text. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using...- News
- Thread
- admin rights browser security critical cumulative update exploit internet explorer microsoft ms15-112 november 2015 patch remote code execution revision note security technet update update history user rights vulnerability webpage
- Replies: 0
- Forum: Security Alerts
-
MS15-105 - Important: Vulnerability in Windows Hyper-V Could Allow Security Feature Bypass...
Severity Rating: Important Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow security feature bypass if an attacker runs a specially crafted application that could cause Windows...- News
- Thread
- 2015 application attacker bulletin configuration extended security updates feature bypass hyper-v important microsoft ms15-105 patch revision note security technet update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS15-099 - Critical: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution...
Severity Rating: Critical Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file...- News
- Thread
- 2015 administration arbitrary code critical exploit file security microsoft ms15-099 office patch management protection remote code execution revision note risk assessment security threats update user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS15-097 - Critical: Vulnerabilities in Microsoft Graphics Component Could Allow Remote...
Severity Rating: Critical Revision Note: V1.1 (September 8, 2015): Revised bulletin to correct the security impact and the vulnerability information for CVE-2015-2506 (from denial of service to elevation of privilege). This is an informational change only. Summary: This security update resolves...- News
- Thread
- 2015 critical cve-2015-2506 denial of service document security elevation of privilege fonts informational lync ms15-097 office opentype patch remote code execution revision note security update vulnerabilities web security windows
- Replies: 0
- Forum: Security Alerts
-
MS15-099 - Critical: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution...
Severity Rating: Critical Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file...- News
- Thread
- 2015 critical cybersecurity exploitation malware microsoft office patch remote code execution revision note risk security update user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS15-094 - Critical: Cumulative Security Update for Internet Explorer (3089548) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- 2015 administrative access best practices critical cumulative update extended security updates internet explorer microsoft ms15-094 patch remote code execution revision note security security bulletin update user impact user rights vulnerabilities web attack
- Replies: 0
- Forum: Security Alerts
-
MS15-093 - Critical: Security Update for Internet Explorer (3088903) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (August 18, 2015): Bulletin published. Summary: This security update resolves a vulnerability in Internet Explorer. The vulnerability could allow remote code execution if a user views a specially crafted webpage using Internet Explorer. An attacker...- News
- Thread
- 2015 administrative bugs critical cybersecurity exploit internet explorer microsoft ms15-093 patch remote code execution revision note safety security update user account user rights vulnerability webpage
- Replies: 0
- Forum: Security Alerts
-
MS15-087 - Important: Vulnerability in UDDI Services Could Allow Elevation of Privilege...
Severity Rating: Important Revision Note: V1.0 (August 11, 2015): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker engineered a cross-site scripting (XSS) scenario by inserting a...- News
- Thread
- 2015 attack cross-site scripting cybersecurity elevation of privilege exploit extended security updates malicious scripts microsoft ms15-087 patch management revision note security bulletin technet uddi services vulnerability webpage xss
- Replies: 0
- Forum: Security Alerts
-
MS15-083 - Important: Vulnerability in Server Message Block Could Allow Remote Code...
Severity Rating: Important Revision Note: V1.0 (August 11, 2015): Bulletin published. Summary: This security update resolves a vulnerability affected software Microsoft Windows. The vulnerability could allow remote code execution if a user opens a specially crafted file that invokes the...- News
- Thread
- extended security updates microsoft ms15-083 remote code execution revision note sandboxed application server message block vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS15-091 - Critical: Cumulative Security Update for Microsoft Edge (3084525) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (August 11, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Edge. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Microsoft...- News
- Thread
- 2015 admin rights browser critical cumulative update cybersecurity exploit extended security updates microsoft edge ms15-091 network security patch remote code execution revision note software security user rights vulnerability web security windows update
- Replies: 0
- Forum: Security Alerts
-
MS15-079 - Critical: Cumulative Security Update for Internet Explorer (3082442) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (August 11, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- 2015 administrative critical cumulative exploitation extended security updates internet explorer microsoft ms15-079 patch remote code execution revision note risk security software support update user rights vulnerabilities webpage
- Replies: 0
- Forum: Security Alerts