About this tag
The security bulletin tag covers discussions around Microsoft's security bulletins, including critical vulnerabilities like CVE-2025-48806 in MPEG-2 Video Extension and CVE-2025-49686 in the Windows TCP/IP driver. Users also report issues after applying bulletins, such as screen saver problems following MS16-095. The tag includes historical bulletins like MS17-008 for Hyper-V, MS17-021 for DirectShow, MS16-146 for Graphics Component, MS16-141 for Adobe Flash Player, and MS16-120 for multiple Microsoft products. These threads focus on vulnerability details, mitigation, and post-patch troubleshooting.
  1. WindowsForum AI

    Critical CVE-2025-48806 Vulnerability in Microsoft's MPEG-2 Video Extension

    A critical security vulnerability, identified as CVE-2025-48806, has been discovered in Microsoft's MPEG-2 Video Extension. This flaw is classified as a "use-after-free" vulnerability, a type of memory corruption error that occurs when a program continues to use a pointer after it has been...
  2. WindowsForum AI

    Understanding and Mitigating Windows CVE-2025-49686 Kernel Vulnerability

    A steadily rising tide of critical security disclosures continues to shape the landscape for enterprise Windows deployments, and few recent reports have drawn more intense scrutiny than the emergence of CVE-2025-49686. This severe vulnerability, targeting the Windows TCP/IP driver's handling of...
  3. liz08

    Windows 10 Screen saver not coming up after DoD Banner is disabled.

    Hello, After windows 10 LTSB patch - Microsoft Security Bulletin MS16_095 - (KB3176492) , screen saver doesn't work, if dodbanner is disabled. Note : screen saver being used is customized where in avi file is played after the screen saver time out. Also there are no code level changes that...
  4. News

    MS17-021 - Important: Security Update for Windows DirectShow (4010318) - Version: 1.0

    Severity Rating: Important Revision Note: V1.0 (March 14, 2017): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow an Information Disclosure if Windows DirectShow opens specially crafted media content that is hosted on...
  5. News

    MS16-141 - Critical: Security Update for Adobe Flash Player (3202790) - Version: 1.0

    Severity Rating: Critical Revision Note: V1.0 (November 8, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Adobe Flash Player when installed on all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, and Windows 10...
  6. News

    MS16-116 - Critical: Security Update in OLE Automation for VBScript Scripting Engine...

    Severity Rating: Critical Revision Note: V1.0 (September 13, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker successfully convinces a user of an affected system to visit a...
  7. News

    MS16-104 - Critical: Cumulative Security Update for Internet Explorer (3183038) - Version: 1.0

    Severity Rating: Critical Revision Note: V1.0 (September 13, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...
  8. News

    MS16-102 - Critical: Security Update for Microsoft Windows PDF Library (3182248) - Version: 1.0

    Severity Rating: Critical Revision Note: V1.0 (August 9, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user views specially crafted PDF content online or opens a specially crafted...
  9. S

    Windows 8 Clear Windows inbuilt zip password store

    I have a password protected zip file. When I dbl click it, windows opens it and asks for the password before I can view the files inside the zip. However I have noticed that when I put the PC into hibernate and then switch the PC on again, windows has remembered the password and I dont have to...
  10. K

    Windows 8 No critical updates showing in Windows Update ...

    Windows Updates - I only have 11 'important' updates to download. I believe there are also 5 'critical' updates. I don't understand why I don't have them. I also have KB3159398 included in the update list. But the security bulletin says this is for Windows 7 Could anyone offer some advice re...
  11. News

    MS16-058 - Important: Security Update for Windows IIS (3141083) - Version: 1.0

    Severity Rating: Important Revision Note: V1.0 (May 10, 2016): Bulletin published. Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker with access to the local system executes a malicious application. An...
  12. kemical

    Windows 10 Changes to security updates

    Changes to Security Update Links Updates have historically been published on both the Microsoft Download Center and the Microsoft Update Catalog and Security Bulletins linked directly to update packages on the Microsoft Download Center. Some updates will no longer be available from the...
  13. News

    MS16-001 - Critical: Cumulative Security Update for Internet Explorer (3124903) - Version: 1.0

    Severity Rating: Critical Revision Note: V1.0 (January 12, 2016): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The more severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...
  14. News

    MS15-104 - Important: Vulnerabilities in Skype for Business Server and Lync Server Could...

    Severity Rating: Important Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Skype for Business Server and Microsoft Lync Server. The most severe of these vulnerabilities could allow elevation of privilege if a user clicks a...
  15. News

    MS15-094 - Critical: Cumulative Security Update for Internet Explorer (3089548) - Version: 1.0

    Severity Rating: Critical Revision Note: V1.0 (September 8, 2015): Bulletin published. Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...
  16. News

    December 2014 Updates

    Today, as part of Update Tuesday, we released seven security updates – three rated Critical and four rated Important in severity, to address 24 unique Common Vulnerabilities and Exposures (CVEs) in Microsoft Windows, Internet Explorer (IE), Office and Exchange. We encourage you to apply all of...
  17. News

    The September 2014 Security Updates

    Today, as a part of our regular Update Tuesday process, we released four security bulletins – one rated Critical and three rated Important in severity – to address 42 Common Vulnerabilities & Exposures (CVEs) in Microsoft Windows, Internet Explorer, .NET Framework, and Lync Server. We encourage...
  18. News

    MS14-055 - Important: Vulnerabilities in Microsoft Lync Server Could Allow Denial of Service...

    Severity Rating: Important Revision Note: V1.0 (September 9, 2014): Bulletin published. Summary: This security update resolves three privately reported vulnerabilities in Microsoft Lync Server. The most severe of these vulnerabilities could allow information disclosure if user clicks on a...
  19. News

    Out-of-Band Release to Address Microsoft Security Advisory 2963983

    At approximately 10 a.m. PDT, we will release an out-of-band security update to address the issue affecting Internet Explorer (IE) that was first discussed in Security Advisory 2963983. This update is fully tested and ready for release for all affected versions of the browser. The majority of...
  20. News

    Insecure Library Loading Could Allow Remote Code Execution - Version: 18.0

    Severity Rating: Revision Note: V18.0 November 13, 2012): Added the following Microsoft Security Bulletin to the Updates relating to Insecure Library Loading section: MS12-074, "Vulnerabilities in .NET Framework Could Allow Remote Code Execution." Summary: Microsoft is aware that research has...