Severity Rating: Important
Revision Note: V1.0 (August 12, 2014): Bulletin published.
Summary: This security update resolves two privately reported vulnerabilities in Microsoft SQL Server (one in SQL Server Master Data Services and the other in the SQL Server relational database management...
attacks
bulletin
client-side
crafted websites
data services
database
email security
internet explorer
malware
management system
microsoft
phishing
privilege escalation
revisionnote
security
sql server
update
user actions
vulnerabilities
web security
Severity Rating:
Revision Note: V22.0 (April 8, 2014): Added the 2942844 update to the Current Update section.
Summary: Microsoft is announcing the availability of an update for Adobe Flash Player in Internet Explorer on all supported editions of Windows 8, Windows Server 2012, Windows RT...
adobe
advisory
flash player
internet explorer
library
microsoft
patch
revisionnote
security
security update
software
tech news
update
vulnerabilities
windows 8
windows 8.1
windows rt
windows server
windows server 2012 r2
Severity Rating:
Revision Note: V2.0 (December 10, 2013): Advisory updated to reflect publication of security bulletin.
Summary: Microsoft has completed the investigation into a private report of this vulnerability. We have issued MS13-096 to address the Microsoft Graphics Component Memory...
Severity Rating: Critical
Revision Note: V1.1 (February 28, 2014): Bulletin revised to announce a detection change in the 2900986 update for Windows 8.1 for 32-bit Systems, Windows 8.1 for x64-based Systems, Windows RT 8.1, and Windows Server 2012 R2. This is a detection change only. There were...
Severity Rating:
Revision Note: V1.1 (June 13, 2012): Advisory revised to notify customers that Windows Mobile 6.x, Windows Phone 7, and Windows Phone 7.5 devices are not affected by the issue.
Summary: Microsoft is aware of active attacks using three unauthorized digital certificates derived...
active attacks
browser security
certificate authority
cybersecurity
digital certificates
internet explorer
it security
man-in-the-middle
microsoft
phishing
revisionnote
security advisory
security update
spoofing
unauthorized access
vulnerability
web security
windows mobile
windows phone
Severity Rating: Critical
Revision Note: V1.0 (December 10, 2013): Bulletin published.
Summary: This security update resolves seven privately reported vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted...
administrative rights
bulletin
critical
cumulative update
december 2013
internet explorer
microsoft
ms13-097
remote code execution
revisionnote
security update
user rights
vulnerabilities
Revision Note: V1.0 (November 12, 2013): Advisory published.
Summary: Microsoft is announcing a policy change to the Microsoft Root Certificate Program. The new policy will no longer allow root certificate authorities to issue X.509 certificates using the SHA-1 hashing algorithm for the purposes...
Severity Rating: Critical
Revision Note: V1.2 (October 8, 2013): Bulletin revised to announce that the 2884101 update is available via Windows Update.
Summary: This security update resolves one publicly disclosed vulnerability and nine privately reported vulnerabilities in Internet Explorer. The...
Severity Rating: Important
Revision Note: V1.0 (August 13, 2013): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in the Windows NAT Driver in Microsoft Windows. The vulnerability could allow denial of service if an attacker sends a specially crafted...
Severity Rating: Important
Revision Note: V1.1 (May 29, 2013): Corrected update replacement entries in the Affected Software table for x64-based editions of Windows Server 2008 R2. This is a bulletin change only. There were no changes to detection logic or security update files.
Summary: This...
2013 bulletin
affected software
denial of service
kerberos
microsoft
patch
remote attack
revisionnote
security
session request
severity
update
vulnerability
windows server
Revision Note: V1.2 (September 5, 2012): Corrected the common name for the "CN=Microsoft Online Svcs BPOS APAC CA4" certificate issued by Microsoft Services PCA.
Summary: Microsoft is aware of Microsoft certificate authorities that are outside our recommended secure storage practices. Upon a...
Revision Note: Advance Notification published.
Summary: This is an advance notification of security bulletins that Microsoft is intending to release on July 9, 2013.
More...
Severity Rating: Critical
Revision Note: V2.0 (June 25, 2013): Revised bulletin to rerelease the 2813347 update for Remote Desktop Connection 7.0 Client on Windows XP Service Pack 3. Microsoft recommends that customers running the affected software apply the rereleased security...
Severity Rating: Critical
Revision Note: V1.0 (May 14, 2013): Bulletin published.
Summary: This security update resolves one publicly disclosed vulnerability in Internet Explorer. The vulnerability could allow remote code execution if a user views a specially crafted...
bulletin
critical
exploit
internet explorer
ms13-038
patch
remote code execution
revisionnote
security
software
update
user rights
vulnerability
webpage
windows
Severity Rating: Important
Revision Note: (May 14, 2013): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if an attacker sends a specially crafted HTTP packet...
Severity Rating: Important
Revision Note: V1.0 (May 14, 2013): Bulletin published.
Summary: This security update resolves eleven privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user open a specially crafted...
Revision Note: Advance Notification published.
Summary: This is an advance notification of security bulletins that Microsoft is intending to release on March 12, 2013.
More...
Severity Rating: Critical
Revision Note: V1.1 (January 8, 2013): Corrected download links for Microsoft XML Core Services 3.0 on Windows Server 2003 with SP2 for Itanium-based Systems and for Microsoft XML Core Services 6.0 when installed on Windows Server 2003 with SP2 for...
affected software
attack vector
code execution
critical update
email threats
information change
internet explorer
microsoft xml
ms13-002
remote code execution
revisionnote
security
security update
server core
service pack
update
users
vulnerabilities
windows server
Revision Note: Advance Notification published.
Summary: This is an advance notification of security bulletins that Microsoft is intending to release on January 8, 2013.
More...