<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; microsoft patchday</title>
	<atom:link href="http://www.ghacks.net/tag/microsoft-patchday/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 09:43:13 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Microsoft Patch Tuesday December 08</title>
		<link>http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/</link>
		<comments>http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/#comments</comments>
		<pubDate>Wed, 10 Dec 2008 21:06:27 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft patchday]]></category>
		<category><![CDATA[microsoft patches]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[windows patches]]></category>
		<category><![CDATA[windows security]]></category>
		<category><![CDATA[windows-update]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=8835</guid>
		<description><![CDATA[Microsoft released another batch of patches using their regular schedule. A total of eight security bulletins have been published that contain descriptions of security vulnerabilities of which six have been classified as critical and two as important.
The easiest way to install the patches is by downloading and installing the security patches at Windows Update which [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft released another batch of patches using their regular schedule. A total of eight security bulletins have been published that contain descriptions of security vulnerabilities of which six have been classified as critical and two as important.</p>
<p>The easiest way to install the patches is by downloading and installing the security patches at <a href="http://www.update.microsoft.com">Windows Update</a> which provides access to all security updates even for users who run a non legit version of Windows.</p>
<p>Microsoft did also release a new version of the Windows Malicious Software Removal Tool which is now able to detect two new families of malware (Win32/FakeXPA and Win32/Yektel)</p>
<p><span id="more-8835"></span>
<ul>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-070.mspx">MS08-070</a>: Vulnerabilities in Visual Basic 6.0 Runtime Extended Files (ActiveX Controls) Could Allow Remote Code Execution (932349) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-071.mspx">MS08-071</a>: Vulnerabilities in GDI Could Allow Remote Code Execution (956802) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-072.mspx">MS08-072</a>: Vulnerabilities in Microsoft Office Word Could Allow Remote Code Execution (957173) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-073.mspx">MS08-073</a>: Cumulative Security Update for Internet Explorer (958215) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-074.mspx">MS08-074</a>: Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution (959070) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-075.mspx">MS08-075</a>: Vulnerabilities in Windows Search Could Allow Remote Code Execution (959349) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-076.mspx">MS08-076</a>: Vulnerabilities in Windows Media Components Could Allow Remote Code Execution (959807) which is rated &#8220;Important&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-077.mspx">MS08-077</a>: Vulnerability in Microsoft Office SharePoint Server Could Cause Elevation of Privilege (957175) which is rated &#8220;Important&#8221;</li>
</ul>
<p>Windows users should install the updates as soon as possible to secure their computer system.</p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-patchday/" title="microsoft patchday" rel="tag">microsoft patchday</a>, <a href="http://www.ghacks.net/tag/microsoft-patches/" title="microsoft patches" rel="tag">microsoft patches</a>, <a href="http://www.ghacks.net/tag/patch-tuesday/" title="patch tuesday" rel="tag">patch tuesday</a>, <a href="http://www.ghacks.net/tag/vulnerabilities/" title="vulnerabilities" rel="tag">vulnerabilities</a>, <a href="http://www.ghacks.net/tag/windows-patches/" title="windows patches" rel="tag">windows patches</a>, <a href="http://www.ghacks.net/tag/windows-security/" title="windows security" rel="tag">windows security</a>, <a href="http://www.ghacks.net/tag/windows-update/" title="windows-update" rel="tag">windows-update</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/11/11/microsoft-security-updates-november-2009/" title="Microsoft Security Updates November 2009 (November 11, 2009)">Microsoft Security Updates November 2009</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/06/10/microsoft-security-patches-for-june-2009/" title="Microsoft Security Patches for June 2009 (June 10, 2009)">Microsoft Security Patches for June 2009</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/04/08/microsoft-security-patches-april-2008/" title="Microsoft Security Patches April 2008 (April 8, 2008)">Microsoft Security Patches April 2008</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/11/12/microsoft-patch-tuesday-november-08/" title="Microsoft Patch Tuesday November 08 (November 12, 2008)">Microsoft Patch Tuesday November 08</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/" title="Microsoft Security Updates April 2009 (April 15, 2009)">Microsoft Security Updates April 2009</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Microsoft Security Bulletin March 2008</title>
		<link>http://www.ghacks.net/2008/03/12/microsoft-security-bulletin-march-2008/</link>
		<comments>http://www.ghacks.net/2008/03/12/microsoft-security-bulletin-march-2008/#comments</comments>
		<pubDate>Wed, 12 Mar 2008 20:35:08 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[microsoft patchday]]></category>
		<category><![CDATA[security bulletin]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/03/12/microsoft-security-bulletin-march-2008/</guid>
		<description><![CDATA[Microsoft released their monthly Security Bulletin yesterday which consisted of four critical issues all affecting various editions of Microsoft Office. All four patches fix remote code execution vulnerabilities and it is recommended that they are installed as soon as possible if Microsoft Office is installed on the computer.]]></description>
			<content:encoded><![CDATA[<p>Microsoft released their monthly Security Bulletin yesterday which consisted of four critical issues all affecting various editions of Microsoft Office. All four patches fix remote code execution vulnerabilities and it is recommended that they are installed as soon as possible if Microsoft Office is installed on the computer.</p>
<p>Two of the vulnerabilities allow remote code execution if the user opens a specially prepared file while the the other two make it possible with specially crafted mailto links and websites. It should be noted that not only Office 2000, Office 2003 and Office 2007<br />
are affected but also Office for Mac, to be price Office 2004 and 2008 for Mac.</p>
<p>You can use the Microsoft Baseline Analyzer [<a href="http://go.microsoft.com/fwlink/?LinkId=21134">link</a>] to find out if your system is affected. My suggestion is to simply <a href="http://www.microsoft.com/technet/security/bulletin/ms08-mar.mspx">download</a> the four patches and see if they install. You would get an error message if your system would not be affected.</p>
<p><span id="more-3496"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a href="http://www.ghacks.net/tag/microsoft-patchday/" title="microsoft patchday" rel="tag">microsoft patchday</a>, <a href="http://www.ghacks.net/tag/security-bulletin/" title="security bulletin" rel="tag">security bulletin</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/02/13/microsoft-releases-11-security-bulletins/" title="Microsoft releases 11 security bulletins (February 13, 2008)">Microsoft releases 11 security bulletins</a> (0)</li>
	<li><a href="http://www.ghacks.net/2007/08/15/get-your-microsoft-security-patches-now/" title="Get your Microsoft Security Patches now (August 15, 2007)">Get your Microsoft Security Patches now</a> (0)</li>
	<li><a href="http://www.ghacks.net/2007/01/20/zune-does-not-allow-to-share-all-songs/" title="Zune does not allow to share all songs (January 20, 2007)">Zune does not allow to share all songs</a> (3)</li>
	<li><a href="http://www.ghacks.net/2006/10/21/zoom-it/" title="Zoom It (October 21, 2006)">Zoom It</a> (4)</li>
	<li><a href="http://www.ghacks.net/2008/04/23/yuck-new-windows-vista-ultimate-extras/" title="Yuck new Windows Vista Ultimate Extras (April 23, 2008)">Yuck new Windows Vista Ultimate Extras</a> (20)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/03/12/microsoft-security-bulletin-march-2008/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Get your Microsoft Security Patches now</title>
		<link>http://www.ghacks.net/2007/08/15/get-your-microsoft-security-patches-now/</link>
		<comments>http://www.ghacks.net/2007/08/15/get-your-microsoft-security-patches-now/#comments</comments>
		<pubDate>Wed, 15 Aug 2007 05:58:52 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[microsoft patchday]]></category>
		<category><![CDATA[windows-update]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/08/15/get-your-microsoft-security-patches-now/</guid>
		<description><![CDATA[Microsoft released a total of nine security patches yesterday fixing six critical and three important vulnerabilities on its August Patchday. Those updates were available on both my Windows XP and Windows Vista system and Microsoft in Windows Update but can also be downloaded as single updates from the Microsoft website.]]></description>
			<content:encoded><![CDATA[<p>Microsoft released a total of nine security patches yesterday fixing six critical and three important vulnerabilities on its August Patchday. Those updates were available on both my Windows XP and Windows Vista system and Microsoft in Windows Update but can also be downloaded as single updates from the Microsoft website.</p>
<p>I decided to list all patches with links to their downloads at the Microsoft website to make it easier to install all those patches if you do not want to use Windows Update. Remember that those patches fix serious vulnerabilities and should be installed immediately:</p>
<p><span id="more-1874"></span>Installing those patches manually will take some time. Below are links that display a page listing the affected softwares and links to the patches. </p>
<ul>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=88350">MS07-042</a> (critical) &#8211; This critical security update resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. The vulnerability could be exploited through attacks on Microsoft XML Core Services. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=70249">MS07-043</a> (critical) &#8211; This critical security update resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE). Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=96778">MS07-044</a> (critical) &#8211; This security update resolves a privately reported vulnerability in addition to other security issues identified during the course of the investigation. These vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=91712">MS07-045</a> (critical) &#8211;
<p>This critical security update resolves three privately reported vulnerabilities. These vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=94466">MS07-046</a> (critical) &#8211; This critical security update resolves a privately reported vulnerability. A remote code execution vulnerability exists in the Graphics Rendering Engine in the way that it handles specially crafted images. An attacker could exploit the vulnerability by constructing a specially crafted image that could potentially allow remote code execution if a user opened a specially crafted attachment in e-mail. An attacker who successfully exploited this vulnerability could take complete control of an affected system.</li>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=94737">MS07-050</a> (critical) &#8211; This security update resolves a privately reported vulnerability in the Vector Markup Language (VML) implementation in Windows. The vulnerability could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=88628">MS07-047</a> (important) &#8211; This important security update resolves two privately reported vulnerabilities. These vulnerabilities could allow code execution if a user viewed a specially crafted file in Windows Media Player. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=94465">MS07-048</a> (important) &#8211; This important security update resolves two privately reported vulnerabilities in addition to other vulnerabilities identified during the course of the investigation. These vulnerabilities could allow an anonymous remote attacker to run code with the privileges of the logged on user. If a user subscribed to a malicious RSS feed in the Feed Headlines Gadget or added a malicious contacts file in the Contacts Gadget or a user clicked on a malicious link in the Weather Gadget an attacker could potentially run code on the system. In all attack vectors, users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li>Microsoft Security Bulletin <a href="http://go.microsoft.com/fwlink/?LinkId=92734">MS07-049</a> (important) &#8211; This important security update resolves one privately reported vulnerability. This is an elevation of privilege vulnerability. The vulnerability in Microsoft Virtual PC and Microsoft Virtual Server could allow a guest operating system user to run code on the host or another guest operating systems. Only guest operating system users who are granted administrative permissions to the guest operating system would be able to exploit this vulnerability. Guest operating system users not granted administrative permissions to the guest operating system would be unable to exploit this vulnerability.</li>
</ul>

	Tags: <a href="http://www.ghacks.net/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a href="http://www.ghacks.net/tag/microsoft-patchday/" title="microsoft patchday" rel="tag">microsoft patchday</a>, <a href="http://www.ghacks.net/tag/windows-update/" title="windows-update" rel="tag">windows-update</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/04/15/windows-vista-sp1-all-languages-released/" title="Windows Vista SP1 all languages released (April 15, 2008)">Windows Vista SP1 all languages released</a> (3)</li>
	<li><a href="http://www.ghacks.net/2009/04/13/windows-update-fix/" title="Windows Update Fix (April 13, 2009)">Windows Update Fix</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/09/10/windows-security-updates-september-2008/" title="Windows Security Updates September 2008 (September 10, 2008)">Windows Security Updates September 2008</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/05/10/steps-to-take-before-you-install-windows-xp-service-pack-3/" title="Steps to take before you install Windows XP Service Pack 3 (May 10, 2008)">Steps to take before you install Windows XP Service Pack 3</a> (5)</li>
	<li><a href="http://www.ghacks.net/2008/01/27/project-dakota-full-windows-xp-update-cd/" title="Project Dakota Full Windows XP Update CD (January 27, 2008)">Project Dakota Full Windows XP Update CD</a> (7)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/08/15/get-your-microsoft-security-patches-now/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
