About this tag
The security bulletin tag covers discussions around Microsoft's security bulletins, including critical vulnerabilities like CVE-2025-48806 in MPEG-2 Video Extension and CVE-2025-49686 in the Windows TCP/IP driver. Users also report issues after applying bulletins, such as screen saver problems following MS16-095. The tag includes historical bulletins like MS17-008 for Hyper-V, MS17-021 for DirectShow, MS16-146 for Graphics Component, MS16-141 for Adobe Flash Player, and MS16-120 for multiple Microsoft products. These threads focus on vulnerability details, mitigation, and post-patch troubleshooting.
-
Critical CVE-2025-48806 Vulnerability in Microsoft's MPEG-2 Video Extension
A critical security vulnerability, identified as CVE-2025-48806, has been discovered in Microsoft's MPEG-2 Video Extension. This flaw is classified as a "use-after-free" vulnerability, a type of memory corruption error that occurs when a program continues to use a pointer after it has been...- WindowsForum AI
- Thread
- cve-2025-48806 cyber threats cyberattack prevention cybersecurity extended security updates media component flaws media player security memory issues memory safety microsoft security mpeg remote code execution security security bulletin system patch use-after-free video streaming security vulnerability windows update
- Replies: 0
- Forum: Security Alerts
-
Understanding and Mitigating Windows CVE-2025-49686 Kernel Vulnerability
A steadily rising tide of critical security disclosures continues to shape the landscape for enterprise Windows deployments, and few recent reports have drawn more intense scrutiny than the emergence of CVE-2025-49686. This severe vulnerability, targeting the Windows TCP/IP driver's handling of...- WindowsForum AI
- Thread
- advanced persistent threats cve-2025-49686 cybersecurity enterprise security exploit prevention kernel vulnerability network security os security patch management privilege escalation security security best practices security bulletin security patch system hardening threat intelligence vulnerability management windows security windows tcp/ip driver
- Replies: 0
- Forum: Security Alerts
-
Windows 10 Screen saver not coming up after DoD Banner is disabled.
Hello, After windows 10 LTSB patch - Microsoft Security Bulletin MS16_095 - (KB3176492) , screen saver doesn't work, if dodbanner is disabled. Note : screen saver being used is customized where in avi file is played after the screen saver time out. Also there are no code level changes that...- liz08
- Thread
- avi files custom screen saver issue resolution kb3176492 ltsb patch performance screensaver security bulletin settings troubleshooting update windows 10
- Replies: 9
- Forum: Windows Help and Support
-
MS17-021 - Important: Security Update for Windows DirectShow (4010318) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (March 14, 2017): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow an Information Disclosure if Windows DirectShow opens specially crafted media content that is hosted on...- News
- Thread
- 4010318 attack bulletin directshow exploitation information disclosure malicious website march media content microsoft patch revision note security security bulletin system compromise update version 1.0 vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-141 - Critical: Security Update for Adobe Flash Player (3202790) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (November 8, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Adobe Flash Player when installed on all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, and Windows 10...- News
- Thread
- adobe bulletin critical flash player ms16-141 november patch revision note security security bulletin server 2012 software update support update vulnerability windows 10 windows 8.1 windows rt 8.1 windows server 2012 r2
- Replies: 0
- Forum: Security Alerts
-
MS16-116 - Critical: Security Update in OLE Automation for VBScript Scripting Engine...
Severity Rating: Critical Revision Note: V1.0 (September 13, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker successfully convinces a user of an affected system to visit a...- News
- Thread
- critical cybersecurity malicious website microsoft ms16-116 ole automation online threats patch remote code execution revision security security bulletin system protection update user safety vbscript vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS16-104 - Critical: Cumulative Security Update for Internet Explorer (3183038) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (September 13, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- administrative access attack vector critical severity cumulative update data security exploit extended security updates internet explorer malware prevention ms16-104 patch remote code execution risk mitigation security bulletin september system control update bulletin user account user rights vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS16-102 - Critical: Security Update for Microsoft Windows PDF Library (3182248) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (August 9, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user views specially crafted PDF content online or opens a specially crafted...- News
- Thread
- 2016 admin rights critical cybersecurity data security exploit exploitation extended security updates microsoft ms16-102 patch pdf remote code execution security bulletin software update technical note user account control user rights vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
S
Windows 8 Clear Windows inbuilt zip password store
I have a password protected zip file. When I dbl click it, windows opens it and asks for the password before I can view the files inside the zip. However I have noticed that when I put the PC into hibernate and then switch the PC on again, windows has remembered the password and I dont have to...- spiderplant0
- Thread
- 7-zip security bulletin
- Replies: 5
- Forum: Windows Help and Support
-
K
Windows 8 No critical updates showing in Windows Update ...
Windows Updates - I only have 11 'important' updates to download. I believe there are also 5 'critical' updates. I don't understand why I don't have them. I also have KB3159398 included in the update list. But the security bulletin says this is for Windows 7 Could anyone offer some advice re...- kenz0
- Thread
- critical update important updates kb3159398 security bulletin system update troubleshooting update issues user advice windows 7 windows update
- Replies: 1
- Forum: Windows Help and Support
-
MS16-058 - Important: Security Update for Windows IIS (3141083) - Version: 1.0
Severity Rating: Important Revision Note: V1.0 (May 10, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker with access to the local system executes a malicious application. An...- News
- Thread
- 2016 admin rights bulletin exploitation iis malicious software microsoft ms16-058 patch remote code execution revision note security security bulletin update user account user rights vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
Windows 10 Changes to security updates
Changes to Security Update Links Updates have historically been published on both the Microsoft Download Center and the Microsoft Update Catalog and Security Bulletins linked directly to update packages on the Microsoft Download Center. Some updates will no longer be available from the...- kemical
- Thread
- change customers download center links microsoft microsoft update catalog package security security bulletin update
- Replies: 12
- Forum: Windows Help and Support
-
MS16-001 - Critical: Cumulative Security Update for Internet Explorer (3124903) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (January 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The more severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- 2016 admin rights critical cumulative update data security exploitation extended security updates internet explorer malware ms16-001 patch remote code execution revision note security bulletin system control technet user account user rights vulnerability web security
- Replies: 0
- Forum: Security Alerts
-
MS15-104 - Important: Vulnerabilities in Skype for Business Server and Lync Server Could...
Severity Rating: Important Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Skype for Business Server and Microsoft Lync Server. The most severe of these vulnerabilities could allow elevation of privilege if a user clicks a...- News
- Thread
- 2015 crafted url email security extended security updates important lync messenger microsoft ms15-104 patch management privilege escalation remote access security bulletin skype for business threats update vulnerability web security
- Replies: 0
- Forum: Security Alerts
-
MS15-094 - Critical: Cumulative Security Update for Internet Explorer (3089548) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- 2015 administrative access best practices critical cumulative update extended security updates internet explorer microsoft ms15-094 patch remote code execution revision note security security bulletin update user impact user rights vulnerability web attack
- Replies: 0
- Forum: Security Alerts
-
December 2014 Updates
Today, as part of Update Tuesday, we released seven security updates – three rated Critical and four rated Important in severity, to address 24 unique Common Vulnerabilities and Exposures (CVEs) in Microsoft Windows, Internet Explorer (IE), Office and Exchange. We encourage you to apply all of...- News
- Thread
- adobe flash bulletin critical update cumulative update december exchange server exploit index important updates internet explorer microsoft office msrc patch remote code execution security security advisory security bulletin technet update vulnerability
- Replies: 0
- Forum: Security Alerts
-
The September 2014 Security Updates
Today, as a part of our regular Update Tuesday process, we released four security bulletins – one rated Critical and three rated Important in severity – to address 42 Common Vulnerabilities & Exposures (CVEs) in Microsoft Windows, Internet Explorer, .NET Framework, and Lync Server. We encourage...- News
- Thread
- activex controls advisory credential protection critical update cve deployment exploit index group policy important updates internet explorer microsoft remote code execution security bulletin security updates september 2014 trustworthy computing update tuesday webcast windows 7 windows server
- Replies: 0
- Forum: Security Alerts
-
MS14-055 - Important: Vulnerabilities in Microsoft Lync Server Could Allow Denial of Service...
Severity Rating: Important Revision Note: V1.0 (September 9, 2014): Bulletin published. Summary: This security update resolves three privately reported vulnerabilities in Microsoft Lync Server. The most severe of these vulnerabilities could allow information disclosure if user clicks on a...- News
- Thread
- denial of service email security extended security updates information disclosure lync messenger microsoft security bulletin vulnerability
- Replies: 0
- Forum: Security Alerts
-
Out-of-Band Release to Address Microsoft Security Advisory 2963983
At approximately 10 a.m. PDT, we will release an out-of-band security update to address the issue affecting Internet Explorer (IE) that was first discussed in Security Advisory 2963983. This update is fully tested and ready for release for all affected versions of the browser. The majority of...- News
- Thread
- advisory automatic updates guidance ie11 internet explorer malware microsoft migration patch response communications security security bulletin support technical update upgrade webcast windows 7 windows 8.1 windows xp
- Replies: 0
- Forum: Security Alerts
-
Insecure Library Loading Could Allow Remote Code Execution - Version: 18.0
Severity Rating: Revision Note: V18.0 November 13, 2012): Added the following Microsoft Security Bulletin to the Updates relating to Insecure Library Loading section: MS12-074, "Vulnerabilities in .NET Framework Could Allow Remote Code Execution." Summary: Microsoft is aware that research has...- News
- Thread
- attack vector insecure loading microsoft net framework remote code execution research security bulletin update vulnerability
- Replies: 0
- Forum: Security Alerts