<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>gHacks Technology News &#124; Latest Tech News, Software And Tutorials &#187; microsoft patch day</title> <atom:link href="http://www.ghacks.net/tag/microsoft-patch-day/feed/" rel="self" type="application/rss+xml" /><link>http://www.ghacks.net</link> <description>A technology news blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description> <lastBuildDate>Sat, 11 Feb 2012 09:52:46 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><atom:link rel="hub" href="http://superfeedr.com/hubbub"/> <item><title>Microsoft Patch Day November 2011 Overview</title><link>http://www.ghacks.net/2011/11/08/microsoft-patch-day-november-2011-overview/</link> <comments>http://www.ghacks.net/2011/11/08/microsoft-patch-day-november-2011-overview/#comments</comments> <pubDate>Tue, 08 Nov 2011 18:42:29 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft patch day]]></category> <category><![CDATA[patch day]]></category> <category><![CDATA[security bulletin]]></category> <category><![CDATA[windows patches]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=52475</guid> <description><![CDATA[Today Microsoft has released security updates exclusively for Microsoft Windows operating systems. Of the four bulletins released today, one has received the maximum severity rating of critical while the other three have received one of important. Maximum severity means that at least one Microsoft operating system has received the critical vulnerability rating. In this case, [...]]]></description> <content:encoded><![CDATA[<p>Today Microsoft has released security updates exclusively for Microsoft Windows operating systems. Of the four bulletins released today, one has received the maximum severity rating of critical while the other three have received one of important. Maximum severity means that at least one Microsoft operating system has received the critical vulnerability rating.</p><p>In this case, the critical rating applies to all operating systems that Microsoft supplies with security patches. This includes the client operating systems Windows XP, Vista and Windows 7 as well as the server operating systems Windows Server 2008 and 2008 R2.</p><p>Here are two graphs visualizing the severity and exploitability index and the bulletin deployment priority.</p><p><a
href="http://www.ghacks.net/wp-content/uploads/2011/11/november2011-bulletin-deployment.png"><img
src="http://www.ghacks.net/wp-content/uploads/2011/11/november2011-bulletin-deployment-600x337.png" alt="november2011 bulletin deployment" title="november2011 bulletin deployment" width="600" height="337" class="alignnone size-medium wp-image-52476" /></a></p><p><a
href="http://www.ghacks.net/wp-content/uploads/2011/11/november2011-severity.png"><img
src="http://www.ghacks.net/wp-content/uploads/2011/11/november2011-severity-600x337.png" alt="november2011 severity" title="november2011 severity" width="600" height="337" class="alignnone size-medium wp-image-52477" /></a></p><p>Here is the list of security bulletins released in November 2011 by Microsoft.</p><ul><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-083">MS11-083</a> &#8211; Vulnerability in TCP/IP Could Allow Remote Code Execution (2588516) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker sends a continuous flow of specially crafted UDP packets to a closed port on a target system.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-085">MS11-085</a> &#8211; Vulnerability in Windows Mail and Windows Meeting Space Could Allow Remote Code Execution (2620704) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a legitimate file (such as an .eml or .wcinv file) that is located in the same network directory as a specially crafted dynamic link library (DLL) file. Then, while opening the legitimate file, Windows Mail or Windows Meeting Space could attempt to load the DLL file and execute any code it contained. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open a legitimate file (such as an .eml or .wcinv file) from this location that is then loaded by a vulnerable application.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-086">MS11-086</a> &#8211; Vulnerability in Active Directory Could Allow Elevation of Privilege (2630837) &#8211; This security update resolves a privately reported vulnerability in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS). The vulnerability could allow elevation of privilege if Active Directory is configured to use LDAP over SSL (LDAPS) and an attacker acquires a revoked certificate that is associated with a valid domain account and then uses that revoked certificate to authenticate to the Active Directory domain. By default, Active Directory is not configured to use LDAP over SSL.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-084">MS11-084</a> &#8211; Vulnerability in Windows Kernel-Mode Drivers Could Allow Denial of Service (2617657) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if a user opens a specially crafted TrueType font file as an e-mail attachment or navigates to a network share or WebDAV location containing a specially crafted TrueType font file. For an attack to be successful, a user must visit the untrusted remote file system location or WebDAV share containing the specially crafted TrueType font file, or open the file as an e-mail attachment. In all cases, however, an attacker would have no way to force users to perform these actions. Instead, an attacker would have to persuade users to do so, typically by getting them to click a link in an e-mail message or Instant Messenger message.</li></ul><p>Microsoft has published a video in which Jerry Bryant discusses this month&#8217;s bulletins (Silverlight required).</p><div
style="width:480px;height:270px" ><object
type="application/x-silverlight-2" data="data:application/x-silverlight-2," width="480" height="270" ><param
name="source" value="http://www.microsoft.com/global/en-us/showcase/RichMedia/player-en.xap" /><param
name="initParams" value="Culture=en-us,Uuid=3619b004-8dd9-40f0-ae88-2d0be504684b,Autoplay=False,ShowMarketingOverlay=true,MiscControls=FullScreen;Detached,ShowMenu=true,Tabs=Embed;Email;Share;Info;,ShowCaption=false,AgeGate=True,AgeGateDayMonthYearOrder=MDY,VideoUrl=http://www.microsoft.com/en-us/showcase/details.aspx?uuid=3619b004-8dd9-40f0-ae88-2d0be504684b,Mode=Player" /><param
name="enableHtmlAccess" value="true" /><param
name="allowHtmlPopupwindow" value="true" /><param
name="background" value="#FF000000" /><param
name="minRuntimeVersion" value="4.0.50401.0" /><param
name="autoUpgrade" value="true" /><div><a
href="http://go.microsoft.com/fwlink/?LinkID=149156" style="text-decoration: none;" onmousedown="javascript:new Image().src = 'http://m.webtrends.com/dcsygm2gb10000kf9xm7kfvub_9p1t/dcs.gif?dcsdat=' + new Date().getTime() + '&#038;dcssip=www.microsoft.com&#038;dcsuri=' + window.location.href + '&#038;WT.tz=-8&#038;WT.bh=16&#038;WT.ul=en-US&#038;WT.cd=32&#038;WT.jo=Yes&#038;WT.ti=&#038;WT.js=Yes&#038;WT.jv=1.5&#038;WT.fi=Yes&#038;WT.fv=10.0&#038;WT.sli=Not%20Installed&#038;WT.slv=Version%20Unavailable&#038;WT.dl=1&#038;WT.seg_1=Not%20Logged%20In&#038;WT.vt_f_a=2&#038;WT.vt_f=2&#038;WT.vt_nvr1=2&#038;WT.vt_nvr2=2&#038;WT.vt_nvr3=2&#038;WT.vt_nvr4=2&#038;vp_site=Embedded&#038;wtEvtSrc=' + window.location.href + '&#038;vp_sli=Embedded'"><img
src="http://img.microsoft.com/showcase/Content/img/resx/en-US/installSL.gif" alt="Get Microsoft Silverlight" style="border-style: none"/></a></div><div
style='margin-top: -80px; text-align: center;'><a
style='text-align: center; color: #7db0d2; text-decoration: none; font-size: 80%; font-family: "Segoe UI", Segoe, Tahoma, Verdana, sans-serif;' href='http://content4.catalog.video.msn.com/e2/ds/fdf9929c-c9e7-480c-aa13-ea4155cefb8b.mp4'>View this video as a WMV</a></div><p><noscript><div><img
alt="DCSIMG" id="DCSIMG" width="1" height="1" src="http://m.webtrends.com/dcsygm2gb10000kf9xm7kfvub_9p1t/njs.gif?dcsuri=/nojavascript&amp;WT.js=No"/></div><p></noscript></object></div><p><script type="text/javascript">document.write("<script type='text/javascript' src='" + (window.location.protocol) + "//c.microsoft.com/ms.js'><\/script>");</script></p><p>Additional information about this month's security bulletins are available on the Technet Blog <a
href="http://blogs.technet.com/b/msrc/">page</a> and the Microsoft Security bulletin <a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-nov">Summary</a> for November 2011.</p><p>The updates are already available on Windows Update. Users who have started their computer earlier today may need to run a manual update check in Windows Update.</p><p><a
href="http://www.ghacks.net/wp-content/uploads/2011/11/windows-updates.jpg"><img
src="http://www.ghacks.net/wp-content/uploads/2011/11/windows-updates.jpg" alt="windows updates" title="windows updates" width="567" height="275" class="alignnone size-full wp-image-52478" /></a></p><p>The updates will also be available <a
href="http://www.microsoft.com/download/en/default.aspx">shortly</a> at Microsoft's Download center.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2011/11/08/microsoft-patch-day-november-2011-overview/feed/</wfw:commentRss> <slash:comments>3</slash:comments> <enclosure
url="http://content4.catalog.video.msn.com/e2/ds/fdf9929c-c9e7-480c-aa13-ea4155cefb8b.mp4" length="0" type="video/mp4" /> </item> <item><title>Microsoft, Adobe Ready Security Updates</title><link>http://www.ghacks.net/2011/09/13/microsoft-adobe-ready-security-updates/</link> <comments>http://www.ghacks.net/2011/09/13/microsoft-adobe-ready-security-updates/#comments</comments> <pubDate>Tue, 13 Sep 2011 18:34:06 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Adobe]]></category> <category><![CDATA[Microsoft]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[adobe update]]></category> <category><![CDATA[microsoft patch day]]></category> <category><![CDATA[security bulletin]]></category> <category><![CDATA[windows-update]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=50399</guid> <description><![CDATA[It is the second Tuesday of the month again and this means security patch day at Microsoft and Adobe. Adobe has just released a security bulletin for Adobe Reader and Acrobat that fix several critical vulnerabilities in versions of the pdf software. Vulnerabilities affect Adobe Reader X and earlier versions for Windows and Macintosh, Adobe [...]]]></description> <content:encoded><![CDATA[<p>It is the second Tuesday of the month again and this means security patch day at Microsoft and Adobe. Adobe has just released a security bulletin for Adobe Reader and Acrobat that fix several critical vulnerabilities in versions of the pdf software.</p><p>Vulnerabilities affect Adobe Reader X and earlier versions for Windows and Macintosh, Adobe Reader 9.4.2 and earlier for Unix, and Adobe Acrobat 10.1 and earlier for Windows and Macintosh.</p><p>Adobe as usually recommends to update Adobe Reader to the new version released today. This is Adobe Reader 10.1.1 for Windows and Macintosh, and Adobe Raeder 9.4.5 for Unix, as well as Adobe Acrobat 10.1.1 for Windows and Macintosh.</p><p>The security bulletin <a
href="http://www.adobe.com/support/security/bulletins/apsb11-24.html">offers</a> vulnerability details and download links for all Adobe Reader and Acrobat updates.</p><p>Microsoft today has released five security bulletins that affect Microsoft Windows, Microsoft Server Software and Microsoft Office. The maximum severity of all five bulletins is Important, the second highest rating available.</p><p><img
src="http://www.ghacks.net/wp-content/uploads/2011/09/windows-updates.png" alt="windows-updates" title="windows-updates" width="592" height="329" class="alignnone size-full wp-image-50410" /></p><p>Windows Update is already picking up the updates online. Windows users can check for updates in their operating system to download and install the patches right now.</p><p>You find summaries for all five bulletins below. Follow the link for detailed descriptions of each security bulletin.</p><ul><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-070">MS11-070</a> &#8211; Vulnerability in WINS Could Allow Elevation of Privilege (2571621) &#8211; This security update resolves a privately reported vulnerability in the Windows Internet Name Service (WINS). The vulnerability could allow elevation of privilege if a user received a specially crafted WINS replication packet on an affected system running the WINS service. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-071">MS11-071</a> &#8211; Vulnerability in Windows Components Could Allow Remote Code Execution (2570947) &#8211; This security update resolves a publicly disclosed vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a legitimate rich text format file (.rtf), text file (.txt), or Word document (.doc) that is located in the same network directory as a specially crafted dynamic link library (DLL) file. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-072">MS11-072</a> &#8211; Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2587505) &#8211; This security update resolves five privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. Installing and configuring Office File Validation (OFV) to prevent the opening of suspicious files blocks the attack vectors for exploiting the vulnerabilities described in CVE-2011-1986 and CVE-2011-1987.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-073">MS11-073</a> &#8211; Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (2587634) &#8211; This security update resolves two privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Office file or if a user opens a legitimate Office file that is located in the same network directory as a specially crafted library file. An attacker who successfully exploited either of the vulnerabilities could gain the same user rights as the logged on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-074">MS11-074</a> &#8211; Vulnerabilities in Microsoft SharePoint Could Allow Elevation of Privilege (2451858) &#8211; This security update resolves five privately reported vulnerabilities and one publicly disclosed vulnerability in Microsoft SharePoint and Windows SharePoint Services. The most severe vulnerabilities could allow elevation of privilege if a user clicked on a specially crafted URL or visited a specially crafted Web site. For the most severe vulnerabilities, Internet Explorer 8 and Internet Explorer 9 users browsing to a SharePoint site in the Internet Zone are at a reduced risk because, by default, the XSS Filter in Internet Explorer 8 and Internet Explorer 9 helps to block the attacks in the Internet Zone. The XSS Filter in Internet Explorer 8 and Internet Explorer 9, however, is not enabled by default in the Intranet Zone.</li></ul><p>You find deployment priority information and the severity index <a
href="http://blogs.technet.com/b/msrc/archive/2011/09/13/more-on-diginotar-certificates-and-september-bulletins.aspx">at the</a> Technet blog.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2011/09/13/microsoft-adobe-ready-security-updates/feed/</wfw:commentRss> <slash:comments>5</slash:comments> </item> <item><title>Microsoft Patch Day March 2009</title><link>http://www.ghacks.net/2009/03/10/microsoft-patch-day-march-2009/</link> <comments>http://www.ghacks.net/2009/03/10/microsoft-patch-day-march-2009/#comments</comments> <pubDate>Tue, 10 Mar 2009 17:26:36 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft patch day]]></category> <category><![CDATA[microsoft security]]></category> <category><![CDATA[microsoft security bulletin]]></category> <category><![CDATA[patch day]]></category> <category><![CDATA[remote code execution]]></category> <category><![CDATA[security bulletin]]></category> <category><![CDATA[spoofing]]></category> <category><![CDATA[windows security]]></category> <category><![CDATA[windows vulnerabilities]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=11081</guid> <description><![CDATA[Just a few minutes ago the patches for this month&#8217;s patch day have been uploaded to Windows Update and Microsoft Update. Users are encouraged to update their Microsoft operating system as soon as possible to close the recently discovered security vulnerabilities. Among the affected operating systems are practically all Microsoft operating systems since and including [...]]]></description> <content:encoded><![CDATA[<p>Just a few minutes ago the patches for this month&#8217;s patch day have been uploaded to Windows Update and Microsoft Update. Users are encouraged to update their Microsoft operating system as soon as possible to close the recently discovered security vulnerabilities. Among the affected operating systems are practically all Microsoft operating systems since and including Windows 2000. This means the popular operating systems Windows XP and Vista are affected as well as Windows Server 2003 and 2008.</p><p>One security vulnerability has a critical rating for all affected operating systems while the other two are rated important by Microsoft&#8217;s security research team.</p><p>Details about the Security Bulletins can be found by following these links: Microsoft Security Bulletin <a
href="http://www.microsoft.com/technet/security/bulletin/MS09-006.mspx">MS09-006</a>, <a
href="http://www.microsoft.com/technet/security/bulletin/MS09-007.mspx">MS09-007</a> or <a
href="http://www.microsoft.com/technet/security/bulletin/MS09-008.mspx">MS09-008</a>. Another possibility is to <a
href="http://www.microsoft.com/technet/security/bulletin/ms09-mar.mspx">access</a> the Security Bulletin Summary at Microsoft Technet.</p><p>The vulnerabilities fix one remote code execution vulnerability and two spoofing vulnerabilities on the affected Windows operating systems:</p><ul><li>Vulnerabilities in Windows Kernel Could Allow Remote Code Execution</li><li>Vulnerability in SChannel Could Allow Spoofing</li><li>Vulnerabilities in DNS and WINS Server Could Allow Spoofing</li></ul><p><span
id="more-11081"></span></p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/03/10/microsoft-patch-day-march-2009/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>Microsoft February Security Updates</title><link>http://www.ghacks.net/2009/02/11/microsoft-february-security-updates/</link> <comments>http://www.ghacks.net/2009/02/11/microsoft-february-security-updates/#comments</comments> <pubDate>Wed, 11 Feb 2009 07:18:51 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[ie]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[ie security updates]]></category> <category><![CDATA[internet explorer 7]]></category> <category><![CDATA[internet explorer 8]]></category> <category><![CDATA[internet explorer security]]></category> <category><![CDATA[internet-explorer]]></category> <category><![CDATA[microsoft]]></category> <category><![CDATA[microsoft exchange]]></category> <category><![CDATA[microsoft office visio]]></category> <category><![CDATA[microsoft patch day]]></category> <category><![CDATA[microsoft security]]></category> <category><![CDATA[microsoft sql server]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=10470</guid> <description><![CDATA[Microsoft has released a cumulative security update for Internet Explorer 7 and 8 that fixes several critical vulnerabilities in the web browser. It is recommended to update Internet Explorer as soon as possible to fix those vulnerabilities. The vulnerabilities are rated critical for Internet Explorer versions running under Windows XP or Windows Vista and moderate [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has <a
href="http://www.microsoft.com/technet/security/Bulletin/MS09-002.mspx">released</a> a cumulative security update for Internet Explorer 7 and 8 that fixes several critical vulnerabilities in the web browser. It is recommended to update Internet Explorer as soon as possible to fix those vulnerabilities. The vulnerabilities are rated critical for Internet Explorer versions running under Windows XP or Windows Vista and moderate for Windows Server 2003 and Windows Server 2008. The article is mentioning downloads for Internet Explorer 8 beta but the linked article is not containing any. This seems to suggest that Internet Explorer 8 is affected by the vulnerability as well. This probably only affects pre release candidate builds of Internet Explorer 8.</p><p>The security update fixes the following two vulnerabilities: Uninitialized Memory Corruption Vulnerability and CSS Memory Corruption Vulnerability. Since it is a cumulative update it does apply all previous security updates for Internet Explorer on the computer system.</p><p>The easiest way to update affected systems is to use Microsoft Update which will download and apply the security updates automatically. The other possibility is to <a
href="Http://www.microsoft.com/download/en/default.aspx">download</a> the patch from Microsoft Download and apply it manually.</p><p><span
id="more-10470"></span>Microsoft has released three additional security bulletins:</p><ul><li>Vulnerabilities in Microsoft Exchange Could Allow Remote Code Execution (<a
href="http://www.microsoft.com/technet/security/bulletin/MS09-003.mspx">959239</a>)</li><li>Vulnerability in Microsoft SQL Server Could Allow Remote Code Execution (<a
href="http://www.microsoft.com/technet/security/bulletin/ms09-004.mspx">959420</a>)</li><li>Vulnerabilities in Microsoft Office Visio Could Allow Remote Code Execution (<a
href="http://www.microsoft.com/technet/security/bulletin/MS09-005.mspx">957634</a>)</li></ul> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/02/11/microsoft-february-security-updates/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> </channel> </rss>
