-
MS16-138 - Important: Security Update for Microsoft Virtual Hard Disk Driver (3199647) -...
Severity Rating: Important Revision Note: V1.0 (November 8, 2016): Bulletin published. Summary: The Windows Virtual Hard Disk Driver improperly handles user access to certain files. An attacker can manipulate files in locations not intended to be available to the user by exploiting this...- News
- Thread
- access control bulletin driver issues exploit file management important manipulation microsoft ms16-138 patch revision note risk assessment security technical details update virtual drive vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS15-099 - Critical: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution...
Severity Rating: Critical Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file...- News
- Thread
- 2015 administration arbitrary code critical exploit file security microsoft ms15-099 office patch management protection remote code execution revision note risk assessment security threats update user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS15-081 - Critical: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution...
Severity Rating: Critical Revision Note: V1.0 (August 11, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file. An...- News
- Thread
- 2015 arbitrary code bulletin critical cybersecurity exploit malware microsoft ms15-081 office patch remote code execution risk assessment security update user impact user rights vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS15-072 - Important: Vulnerability in Windows Graphics Component Could Allow Elevation of...
Severity Rating: Important Revision Note: V1.0 (July 14, 2015): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if the Windows graphics component fails to properly process bitmap conversions. An...- News
- Thread
- 2015 admin rights attack vector authenticated attack critical elevation of privilege graphics component malware microsoft ms15-072 patch privilege escalation risk assessment security software update update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
TA14-290A: SSL 3.0 Protocol Vulnerability and POODLE Attack
Original release date: October 17, 2014 Systems Affected All systems and applications utilizing the Secure Socket Layer (SSL) 3.0 with cipher-block chaining (CBC) mode ciphers may be vulnerable. However, the POODLE (Padding Oracle On Downgraded Legacy Encryption) attack demonstrates this...- News
- Thread
- browser cipher ciphertext data breach downgrade attack encryption exploitation legacy systems mitm network security openssl poodle protocol risk assessment security sensitive data ssl 3.0 tls transport layer security vulnerability
- Replies: 0
- Forum: Security Alerts
-
3009008 - Vulnerability in SSL 3.0 Could Allow Information Disclosure - Version: 1.0
Revision Note: V1.0 (October 14, 2014): Advisory published Summary: Microsoft is aware of detailed information that has been published describing a new method to exploit a vulnerability in SSL 3.0, affecting the Windows operating system. This vulnerability affects the protocol itself and is not...- News
- Thread
- attack vector browser security decryption encryption https traffic information disclosure microsoft mixed content protocol vulnerabilities risk assessment security advisory ssl vulnerability
- Replies: 0
- Forum: Security Alerts
-
Windows 8 HP recalls 6 million computer cords for fire risk
HP is warning customers: Check your laptop charging cord to see if it's at risk of overheating. Hewlett-Packard (HPQ, Tech30) and federal regulators on Tuesday recalled 6 million power cords sold between September 2010 and June 2012 with some HP and Compaq notebook computers, as well as certain...- themonk
- Thread
- burns compaq consumer cords customer safety customer warning docking station electronics fire safety hewlett-packard notebook computers online tools overheating power cable property damage recall feature risk assessment safety tech news
- Replies: 1
- Forum: Windows Hardware
-
VIDEO ...is there any risk of losing anything by running a disk check?
Any risk in losing anything by running both an internal and external disk check via this method? Thanks- Paolo78
- Thread
- data loss disk check disk utility external drive file system hard drive internal drive maintenance risk assessment storage
- Replies: 3
- Forum: Windows Help and Support
-
Theoretical Thinking and the June 2014 Bulletin Release
As security professionals, we are trained to think in worst-case scenarios. We run through the land of the theoretical, chasing “what if” scenarios as though they are lightning bugs to be gathered and stashed in a glass jar. Most of time, this type of thinking is absolutely the correct thing...- News
- Thread
- best practices bulletin critical update customer impact cve cybersecurity flash player internet explorer legacy support microsoft protected mode remote code execution research risk assessment security smartscreen theoretical thinking update vulnerabilities web standards
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for the June 2014 Security Bulletin Release
Today we provide advance notification for the release of seven Bulletins, two rated Critical and five rated Important in severity. These Updates are for Microsoft Word, Microsoft Office and Internet Explorer. The Update for Internet Explorer addresses Link Removed, which we have not seen used in...- News
- Thread
- advisory bulletin configuration credentials deployment internet explorer microsoft office pdt risk assessment security server 2008 server 2012 timeline update windows 7 windows 8 word
- Replies: 0
- Forum: Security Alerts
-
Clarification on Security Advisory 2896666 and the ANS for the November 2013 Security Bulletin...
Today, we’re providing advance notification for the release of eight bulletins, three Critical and five Important, for November 2013. The Critical updates address vulnerabilities in Internet Explorer and Microsoft Windows, and the Important updates address issues in Windows and Office. While...- News
- Thread
- advisory bulletin critical deployment gdi+ important internet explorer lync office office 2003 office 2007 office 2010 risk assessment security update vulnerabilities windows windows server windows vista windows xp
- Replies: 8
- Forum: Security Alerts
-
MS13-070 - Critical : Vulnerability in OLE Could Allow Remote Code Execution (2876217) -...
Severity Rating: Critical Revision Note: V1.0 (September 10, 2013): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a file that contains a specially crafted OLE...- News
- Thread
- admin rights critical severity exploit extended security updates microsoft ms13-070 ole vulnerability remote code execution risk assessment user privileges
- Replies: 0
- Forum: Security Alerts
-
MS13-043 - Important : Vulnerability in Microsoft Word Could Allow Remote Code Execution...
Severity Rating: Important Revision Note: V1.0 (May 14, 2013): Bulletin published. Summary: This security update resolves one privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted file or previews a specially...- News
- Thread
- bulletin email security execution file management important microsoft ms13-043 office patch management remote code execution risk assessment security update user rights vulnerability
- Replies: 0
- Forum: Security Alerts
-
Advanced Notification Service for the June 2013 Security Bulletin Release
Today we’re providing Advance Notification of five bulletins for release on Tuesday, June 11, 2013. This release brings one Critical- and four Important-class bulletins. The Critical-rated bulletin addresses issues in Internet Explorer, and the Important-rated bulletins address issues in...- News
- Thread
- bulletin deployment internet explorer june 2013 microsoft microsoft office notifications risk assessment security update
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for the April 2013 Security Bulletin Release
In celebration of spring’s onset, today we’re providing advance notification for the April 2013 release of nine bulletins; two Critical and seven Important. The Critical bulletins address vulnerabilities in Microsoft Windows and Internet Explorer, and the seven Important-rated...- News
- Thread
- antimalware april 2012 bulletin critical deployment impact analysis important internet explorer microsoft msrc notifications office risk assessment security server software testing trustworthy computing update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for March 2013 Security Bulletin Release
Today we’re providing advance notification for the release of seven bulletins, four Critical and three Important, for March 2013. The Critical bulletins address vulnerabilities in Microsoft Silverlight, Internet Explorer, Office and Microsoft Server Software. The three Important-rated...- News
- Thread
- bulletin critical deployment important internet explorer march 2013 microsoft notifications office risk assessment security server software silverlight technet testing trustworthy computing update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for the February 2013 Security Bulletin Release
We’re kicking off the February 2013 Security Bulletin Release with Advance Notification of 12 bulletins for release Tuesday, February 12. This release brings five Critical and seven Important-class bulletins, which address 57 unique vulnerabilities. The Critical-rated bulletins address...- News
- Thread
- bulletin communication critical issues deployment exchange february important issues internet explorer microsoft msrc net framework notifications office risk assessment security server software trustworthy computing update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for the January 2013 Security Bulletin Release
On behalf of all of us here at Microsoft, I’d like to wish everyone a very happy New Year! With 2013 starting on a Tuesday, our monthly bulletin release is upon us a bit earlier than usual. Next Tuesday we’ll release seven bulletins; two Critical and five Important, which address...- News
- Thread
- 2013 bulletin critical update deployment guidance impact analysis important updates microsoft msrc net framework news office risk assessment security server software testing trustworthy computing update process vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
MS12-076 - Important : Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2720184
Severity Rating: Important Revision Note: V1.0 (November 13, 2012): Bulletin published. Summary: This security update resolves four privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially...- News
- Thread
- admin rights excel microsoft microsoft office patch remote code execution risk assessment security update user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Welcome to the 1024-bit world and the October security updates
As previously mentioned in the Advance Notification blog on Thursday, today we’re releasing seven bulletins, one Critical-class and six Important-class bulletins. Before we discuss those releases, let’s take a closer look at the Security Advisories we also released today. Security...- News
- Thread
- 1024-bit automatic updates compatibility critical update deployment priority infopath lync microsoft microsoft office microsoft works ms12-064 ms12-067 october update remote code execution risk assessment security advisory security bulletin security updates sharepoint sql server
- Replies: 0
- Forum: Security Alerts