PDA

View Full Version : Microsoft Release 7 patches 3 Critical 4 Important



Nick VR4
12-12-2006, 08:43 PM
Bulletin IdentifierMicrosoft Security Bulletin MS06-072Bulletin Title
Cumulative Security Update for Internet Explorer (925454) (http://go.microsoft.com/fwlink/?LinkId=77563)
Executive Summary
This update resolves vulnerabilities in Internet Explorer that could allow remote code execution.
Maximum Severity Rating
Critical (http://go.microsoft.com/fwlink/?LinkId=21140)
Impact of Vulnerability
Remote Code Execution
Affected Software
Windows, Internet Explorer. For more information, see the Affected Software and Download Locations section.

Bulletin IdentifierMicrosoft Security Bulletin MS06-073Bulletin Title
Vulnerability in Visual Studio 2005 Could Allow Remote Code Execution (925674) (http://go.microsoft.com/fwlink/?LinkId=79426)
Executive Summary
This update resolves a vulnerability in Visual Studio 2005 that could allow remote code execution.
Maximum Severity Rating
Critical (http://go.microsoft.com/fwlink/?LinkId=21140)
Impact of Vulnerability
Remote Code Execution
Affected Software
Visual Studio 2005. For more information, see the Affected Software and Download Locations section.

Bulletin IdentifierMicrosoft Security Bulletin MS06-078Bulletin Title
Vulnerability in Windows Media Format Could Allow Remote Code Execution (923689) (http://go.microsoft.com/fwlink/?LinkId=76487)
Executive Summary
This update resolves a vulnerability in Windows Media Player that could allow remote code execution.
Maximum Severity Rating
Critical (http://go.microsoft.com/fwlink/?LinkId=21140)
Impact of Vulnerability
Remote Code Execution
Affected Software
Windows. For more information, see the Affected Software and Download Locations section.

http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif (http://www.microsoft.com/technet/security/bulletin/ms06-dec.mspx#E5C)Top of section (http://www.microsoft.com/technet/security/bulletin/ms06-dec.mspx#E5C)


Bulletin IdentifierMicrosoft Security Bulletin MS06-074Bulletin Title
Vulnerability in SNMP Could Allow Remote Code Execution (926247) (http://go.microsoft.com/fwlink/?LinkId=78533)
Executive Summary
This update resolves a vulnerability in Simple Network Management Protocol (SNMP) that could allow remote code execution. The SNMP service is not installed by default in any supported version of Windows.
Maximum Severity Rating
Important (http://go.microsoft.com/fwlink/?LinkId=21140)
Impact of Vulnerability
Remote Code Execution
Affected Software
Windows. For more information, see the Affected Software and Download Locations section.

Bulletin IdentifierMicrosoft Security Bulletin MS06-075Bulletin Title
Vulnerability in Windows Could Allow Elevation of Privilege (926255) (http://go.microsoft.com/fwlink/?LinkId=77797)
Executive Summary
A vulnerability exists in Windows that could allow elevation of privilege on an affected system. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.
Maximum Severity Rating
Important (http://go.microsoft.com/fwlink/?LinkId=21140)
Impact of Vulnerability
Elevation of Privilege
Affected Software
Windows. For more information, see the Affected Software and Download Locations section.

Bulletin IdentifierMicrosoft Security Bulletin MS06-076Bulletin Title
Cumulative Security Update for Outlook Express (923694) (http://go.microsoft.com/fwlink/?LinkId=73835)
Executive Summary
This update resolves a vulnerability in Outlook Express that could allow remote code execution. User interaction is required for an attacker to exploit this vulnerability.
Maximum Severity Rating
Important (http://go.microsoft.com/fwlink/?LinkId=21140)
Impact of Vulnerability
Remote Code Execution
Affected Software
Windows, Outlook Express. For more information, see the Affected Software and Download Locations section.

Bulletin IdentifierMicrosoft Security Bulletin MS06-077Bulletin Title
Vulnerability in Remote Installation Service Could Allow Remote Code Execution (926121) (http://go.microsoft.com/fwlink/?LinkId=78537)
Executive Summary
This update resolves a vulnerability in Remote Installation Service (RIS) that could allow remote code execution. RIS is not installed by default.
Maximum Severity Rating
Important (http://go.microsoft.com/fwlink/?LinkId=21140)
Impact of Vulnerability
Remote Code Execution
Affected Software
Windows. For more information, see the Affected Software and Download Locations section.

KiwiTT
12-12-2006, 11:01 PM
Sheesh ... It seems like only yesterday when I went to Windows Update. Oh well. I'll expect my updates to rollout to my networks soon.

We use WSUS to keep our 500+ PCs up to date.

Nick VR4
12-12-2006, 11:28 PM
Sheesh ... It seems like only yesterday when I went to Windows Update. Oh well. I'll expect my updates to rollout to my networks soon.

We use WSUS to keep our 500+ PCs up to date.

There are exploits out already some AV are adding to sig files