Severity Rating: Important
Revision Note: V1.0 (August 12, 2014): Bulletin published.
Summary: This security update resolves two privately reported vulnerabilities in Microsoft SQL Server (one in SQL Server Master Data Services and the other in the SQL Server relational database management...
attack
bulletin
client-side
crafted websites
data services
database
email security
internet explorer
malware
management
microsoft
phishing
privilege escalation
revisionnote
security
sql server
update
user actions
vulnerabilities
web security
Severity Rating:
Revision Note: V22.0 (April 8, 2014): Added the 2942844 update to the Current Update section.
Summary: Microsoft is announcing the availability of an update for Adobe Flash Player in Internet Explorer on all supported editions of Windows 8, Windows Server 2012, Windows RT...
adobe
advisory
extended security updates
flash player
internet explorer
libraries
microsoft
patch
revisionnote
security
software
tech news
update
vulnerabilities
windows 8
windows 8.1
windows rt
windows server
windows server 2012 r2
Severity Rating:
Revision Note: V2.0 (December 10, 2013): Advisory updated to reflect publication of security bulletin.
Summary: Microsoft has completed the investigation into a private report of this vulnerability. We have issued MS13-096 to address the Microsoft Graphics Component Memory...
Severity Rating: Critical
Revision Note: V1.1 (February 28, 2014): Bulletin revised to announce a detection change in the 2900986 update for Windows 8.1 for 32-bit Systems, Windows 8.1 for x64-based Systems, Windows RT 8.1, and Windows Server 2012 R2. This is a detection change only. There were...
Severity Rating:
Revision Note: V2.0 (December 11, 2012): Added the KB2687627 and KB2687497 updates described in MS12-043, the KB2687501 and KB2687510 updates described in MS12-057, the KB2687508 update described in MS12-059, and the KB2726929 update described in MS12-060 to the list of...
Severity Rating:
Revision Note: V1.1 (June 13, 2012): Advisory revised to notify customers that Windows Mobile 6.x, Windows Phone 7, and Windows Phone 7.5 devices are not affected by the issue.
Summary: Microsoft is aware of active attacks using three unauthorized digital certificates derived...
access denied
active attacks
browser security
certificate
cybersecurity
digital certificates
extended security updates
internet explorer
man-in-the-middle
microsoft
phishing
revisionnote
security
security advisory
spoofing
vulnerability
web security
windows phone
Severity Rating: Critical
Revision Note: V1.0 (December 10, 2013): Bulletin published.
Summary: This security update resolves seven privately reported vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted...
admin rights
bulletin
critical
cumulative update
december 2013
extended security updates
internet explorer
microsoft
ms13-097
remote code execution
revisionnote
user rights
vulnerabilities
Revision Note: V1.0 (November 12, 2013): Advisory published.
Summary: Microsoft is announcing a policy change to the Microsoft Root Certificate Program. The new policy will no longer allow root certificate authorities to issue X.509 certificates using the SHA-1 hashing algorithm for the purposes...
Severity Rating: Critical
Revision Note: V1.2 (October 8, 2013): Bulletin revised to announce that the 2884101 update is available via Windows Update.
Summary: This security update resolves one publicly disclosed vulnerability and nine privately reported vulnerabilities in Internet Explorer. The...
Severity Rating: Important
Revision Note: V1.0 (August 13, 2013): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in the Windows NAT Driver in Microsoft Windows. The vulnerability could allow denial of service if an attacker sends a specially crafted...
Severity Rating: Important
Revision Note: V1.1 (May 29, 2013): Corrected update replacement entries in the Affected Software table for x64-based editions of Windows Server 2008 R2. This is a bulletin change only. There were no changes to detection logic or security update files.
Summary: This...
affected software
bulletin
denial of service
kerberos
microsoft
patch
remote attack
revisionnote
security
session request
severity rating
update
vulnerability
windows server
Revision Note: V1.2 (September 5, 2012): Corrected the common name for the "CN=Microsoft Online Svcs BPOS APAC CA4" certificate issued by Microsoft Services PCA.
Summary: Microsoft is aware of Microsoft certificate authorities that are outside our recommended secure storage practices. Upon a...
Revision Note: Advance Notification published.
Summary: This is an advance notification of security bulletins that Microsoft is intending to release on July 9, 2013.
More...
Severity Rating: Critical
Revision Note: V2.0 (June 25, 2013): Revised bulletin to rerelease the 2813347 update for Remote Desktop Connection 7.0 Client on Windows XP Service Pack 3. Microsoft recommends that customers running the affected software apply the rereleased security...
Severity Rating: Critical
Revision Note: V1.0 (May 14, 2013): Bulletin published.
Summary: This security update resolves one publicly disclosed vulnerability in Internet Explorer. The vulnerability could allow remote code execution if a user views a specially crafted...
bulletin
critical
exploit
internet explorer
ms13-038
patch
remote code execution
revisionnote
security
software
update
user rights
vulnerability
webpage
windows
Severity Rating: Important
Revision Note: (May 14, 2013): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if an attacker sends a specially crafted HTTP packet...
Severity Rating: Important
Revision Note: V1.0 (May 14, 2013): Bulletin published.
Summary: This security update resolves eleven privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user open a specially crafted...
Revision Note: Advance Notification published.
Summary: This is an advance notification of security bulletins that Microsoft is intending to release on March 12, 2013.
More...
Severity Rating: Critical
Revision Note: V1.1 (January 8, 2013): Corrected download links for Microsoft XML Core Services 3.0 on Windows Server 2003 with SP2 for Itanium-based Systems and for Microsoft XML Core Services 6.0 when installed on Windows Server 2003 with SP2 for...
affected software
attack vector
critical update
email threats
execution
extended security updates
informational change
internet explorer
ms11-003
remote code execution
revisionnote
security
server core
service pack
update
users
vulnerabilities
windows server
xml