<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; patch tuesday</title>
	<atom:link href="http://www.ghacks.net/tag/patch-tuesday/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Wed, 25 Nov 2009 15:55:11 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Microsoft Security Updates November 2009</title>
		<link>http://www.ghacks.net/2009/11/11/microsoft-security-updates-november-2009/</link>
		<comments>http://www.ghacks.net/2009/11/11/microsoft-security-updates-november-2009/#comments</comments>
		<pubDate>Tue, 10 Nov 2009 22:54:26 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft-office]]></category>
		<category><![CDATA[office updates]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[security updates]]></category>
		<category><![CDATA[windows security]]></category>
		<category><![CDATA[windows-update]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=18376</guid>
		<description><![CDATA[Microsoft has released six security bulletins today as part of their monthly Tuesday patch day which fix a total of 15 different security vulnerabilities in Microsoft Office and Microsoft Windows. The maximum severity rating for the bulletins contain three critical and three important patches for vulnerabilities that can allow remote code execution and denial of [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released six security bulletins today as part of their monthly Tuesday patch day which fix a total of 15 different security vulnerabilities in Microsoft Office and Microsoft Windows. The maximum severity rating for the bulletins contain three critical and three important patches for vulnerabilities that can allow remote code execution and denial of service attacks.</p>
<p>Microsoft Windows and Microsoft Office users are encouraged to update their computer systems as soon as possible to protect the PCs from possible exploits that could attack the systems successfully. The usual options to download the patches are provided including automatic updates, Windows updates, Microsoft update or manually by following the links posted in the different security bulletins.</p>
<p><span id="more-18376"></span></p>
<ul>
<li><a href="http://go.microsoft.com/fwlink/?LinkID=163840">MS09-063</a> Vulnerability in Web Services on Devices API Could Allow Remote Code Execution (973565) &#8211; This security update resolves a privately reported vulnerability in the Web Services on Devices Application Programming Interface (WSDAPI) on the Windows operating system. The vulnerability could allow remote code execution if an affected Windows system receives a specially crafted packet. Only attackers on the local subnet would be able to exploit this vulnerability.</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkID=163841">MS09-064</a> &#8211; Vulnerability in License Logging Server Could Allow Remote Code Execution (974783) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows 2000. The vulnerability could allow remote code execution if an attacker sent a specially crafted network message to a computer running the License Logging Server. An attacker who successfully exploited this vulnerability could take complete control of the system. Firewall best practices and standard default firewall configurations can help protect networks from attacks that originate outside the enterprise perimeter.</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=162428">MS09-065</a> &#8211; Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Remote Code Execution (969947) &#8211; This security update resolves several privately reported vulnerabilities in the Windows kernel. The most severe of the vulnerabilities could allow remote code execution if a user viewed content rendered in a specially crafted Embedded OpenType (EOT) font. In a Web-based attack scenario, an attacker would have to host a Web site that contains specially crafted embedded fonts that are used to attempt to exploit this vulnerability. In addition, compromised Web sites and Web sites that accept or host user-provided content could contain specially crafted content that could exploit this vulnerability. An attacker would have no way to force users to visit a specially crafted Web site. Instead, an attacker would have to convince the user to visit the Web site, typically by getting them to click a link in an e-mail message or Instant Messenger message that takes the user to the attacker&#8217;s site.</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkID=157862">MS09-066</a> &#8211; Vulnerability in Active Directory Could Allow Denial of Service (973309) &#8211; This security update resolves a privately reported vulnerability in Active Directory directory service, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS). The vulnerability could allow denial of service if stack space was exhausted during execution of certain types of LDAP or LDAPS requests. This vulnerability only affects domain controllers and systems configured to run ADAM or AD LDS.</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=165431">MS09-067</a> &#8211; Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution (972652) &#8211; This security update resolves several privately reported vulnerabilities in Microsoft Office Excel. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=165890">MS09-068</a> &#8211; Vulnerability in Microsoft Office Word Could Allow Remote Code Execution (976307) &#8211; This security update resolves a privately reported vulnerability that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
</ul>
<p>Detailed information are available in the security bulletins linked above or at the security bulletin summary page <a href="http://www.microsoft.com/technet/security/bulletin/ms09-nov.mspx">here</a>.</p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-office/" title="microsoft-office" rel="tag">microsoft-office</a>, <a href="http://www.ghacks.net/tag/office-updates/" title="office updates" rel="tag">office updates</a>, <a href="http://www.ghacks.net/tag/patch-tuesday/" title="patch tuesday" rel="tag">patch tuesday</a>, <a href="http://www.ghacks.net/tag/security-updates/" title="security updates" rel="tag">security updates</a>, <a href="http://www.ghacks.net/tag/windows-security/" title="windows security" rel="tag">windows security</a>, <a href="http://www.ghacks.net/tag/windows-update/" title="windows-update" rel="tag">windows-update</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/" title="Microsoft Security Updates April 2009 (April 15, 2009)">Microsoft Security Updates April 2009</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/" title="Microsoft Patch Tuesday December 08 (December 10, 2008)">Microsoft Patch Tuesday December 08</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/09/10/windows-security-updates-september-2008/" title="Windows Security Updates September 2008 (September 10, 2008)">Windows Security Updates September 2008</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/06/10/microsoft-security-patches-for-june-2009/" title="Microsoft Security Patches for June 2009 (June 10, 2009)">Microsoft Security Patches for June 2009</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/04/08/microsoft-security-patches-april-2008/" title="Microsoft Security Patches April 2008 (April 8, 2008)">Microsoft Security Patches April 2008</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/11/11/microsoft-security-updates-november-2009/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Microsoft Patch Tuesday December 08</title>
		<link>http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/</link>
		<comments>http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/#comments</comments>
		<pubDate>Wed, 10 Dec 2008 21:06:27 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft patchday]]></category>
		<category><![CDATA[microsoft patches]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[windows patches]]></category>
		<category><![CDATA[windows security]]></category>
		<category><![CDATA[windows-update]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=8835</guid>
		<description><![CDATA[Microsoft released another batch of patches using their regular schedule. A total of eight security bulletins have been published that contain descriptions of security vulnerabilities of which six have been classified as critical and two as important.
The easiest way to install the patches is by downloading and installing the security patches at Windows Update which [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft released another batch of patches using their regular schedule. A total of eight security bulletins have been published that contain descriptions of security vulnerabilities of which six have been classified as critical and two as important.</p>
<p>The easiest way to install the patches is by downloading and installing the security patches at <a href="http://www.update.microsoft.com">Windows Update</a> which provides access to all security updates even for users who run a non legit version of Windows.</p>
<p>Microsoft did also release a new version of the Windows Malicious Software Removal Tool which is now able to detect two new families of malware (Win32/FakeXPA and Win32/Yektel)</p>
<p><span id="more-8835"></span>
<ul>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-070.mspx">MS08-070</a>: Vulnerabilities in Visual Basic 6.0 Runtime Extended Files (ActiveX Controls) Could Allow Remote Code Execution (932349) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-071.mspx">MS08-071</a>: Vulnerabilities in GDI Could Allow Remote Code Execution (956802) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-072.mspx">MS08-072</a>: Vulnerabilities in Microsoft Office Word Could Allow Remote Code Execution (957173) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-073.mspx">MS08-073</a>: Cumulative Security Update for Internet Explorer (958215) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-074.mspx">MS08-074</a>: Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution (959070) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-075.mspx">MS08-075</a>: Vulnerabilities in Windows Search Could Allow Remote Code Execution (959349) which is rated &#8220;Critical&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-076.mspx">MS08-076</a>: Vulnerabilities in Windows Media Components Could Allow Remote Code Execution (959807) which is rated &#8220;Important&#8221;</li>
<li><a href="http://www.microsoft.com/technet/security/Bulletin/MS08-077.mspx">MS08-077</a>: Vulnerability in Microsoft Office SharePoint Server Could Cause Elevation of Privilege (957175) which is rated &#8220;Important&#8221;</li>
</ul>
<p>Windows users should install the updates as soon as possible to secure their computer system.</p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-patchday/" title="microsoft patchday" rel="tag">microsoft patchday</a>, <a href="http://www.ghacks.net/tag/microsoft-patches/" title="microsoft patches" rel="tag">microsoft patches</a>, <a href="http://www.ghacks.net/tag/patch-tuesday/" title="patch tuesday" rel="tag">patch tuesday</a>, <a href="http://www.ghacks.net/tag/vulnerabilities/" title="vulnerabilities" rel="tag">vulnerabilities</a>, <a href="http://www.ghacks.net/tag/windows-patches/" title="windows patches" rel="tag">windows patches</a>, <a href="http://www.ghacks.net/tag/windows-security/" title="windows security" rel="tag">windows security</a>, <a href="http://www.ghacks.net/tag/windows-update/" title="windows-update" rel="tag">windows-update</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/11/11/microsoft-security-updates-november-2009/" title="Microsoft Security Updates November 2009 (November 11, 2009)">Microsoft Security Updates November 2009</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/06/10/microsoft-security-patches-for-june-2009/" title="Microsoft Security Patches for June 2009 (June 10, 2009)">Microsoft Security Patches for June 2009</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/04/08/microsoft-security-patches-april-2008/" title="Microsoft Security Patches April 2008 (April 8, 2008)">Microsoft Security Patches April 2008</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/11/12/microsoft-patch-tuesday-november-08/" title="Microsoft Patch Tuesday November 08 (November 12, 2008)">Microsoft Patch Tuesday November 08</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/" title="Microsoft Security Updates April 2009 (April 15, 2009)">Microsoft Security Updates April 2009</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Microsoft Patch Tuesday November 08</title>
		<link>http://www.ghacks.net/2008/11/12/microsoft-patch-tuesday-november-08/</link>
		<comments>http://www.ghacks.net/2008/11/12/microsoft-patch-tuesday-november-08/#comments</comments>
		<pubDate>Wed, 12 Nov 2008 13:55:43 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft patches]]></category>
		<category><![CDATA[microsoft security]]></category>
		<category><![CDATA[microsoft security bulletin]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[security vulnerabilities]]></category>
		<category><![CDATA[windows patches]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=8233</guid>
		<description><![CDATA[Microsoft released only two patches for their products on this November&#8217;s Patch Tuesday. The Microsoft Security Bulletins MS08-069 and MS08-068 patched two vulnerability with the status critical and important.
The vulnerability rated as critical could allow remote code execution in the in Microsoft XML Core Services while the vulnerability rated important could allow remote code execution [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft released only two patches for their products on this November&#8217;s Patch Tuesday. The Microsoft Security Bulletins <a href="http://www.microsoft.com/technet/security/bulletin/ms08-069.mspx">MS08-069</a> and <a href="http://www.microsoft.com/technet/security/bulletin/ms08-068.mspx">MS08-068</a> patched two vulnerability with the status critical and important.</p>
<p>The vulnerability rated as critical could allow remote code execution in the in Microsoft XML Core Services while the vulnerability rated important could allow remote code execution in Microsoft Server Message Block (SMB) Protocol.</p>
<p>Both security vulnerabilities can be fixed by using Windows Update or by downloading the security updates directly from the Microsoft Download website by following the two links given above in this article.</p>
<p><span id="more-8233"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-patches/" title="microsoft patches" rel="tag">microsoft patches</a>, <a href="http://www.ghacks.net/tag/microsoft-security/" title="microsoft security" rel="tag">microsoft security</a>, <a href="http://www.ghacks.net/tag/microsoft-security-bulletin/" title="microsoft security bulletin" rel="tag">microsoft security bulletin</a>, <a href="http://www.ghacks.net/tag/patch-tuesday/" title="patch tuesday" rel="tag">patch tuesday</a>, <a href="http://www.ghacks.net/tag/security-vulnerabilities/" title="security vulnerabilities" rel="tag">security vulnerabilities</a>, <a href="http://www.ghacks.net/tag/windows-patches/" title="windows patches" rel="tag">windows patches</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/04/08/microsoft-security-patches-april-2008/" title="Microsoft Security Patches April 2008 (April 8, 2008)">Microsoft Security Patches April 2008</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/07/15/microsoft-security-patches-july-2009/" title="Microsoft Security Patches July 2009 (July 15, 2009)">Microsoft Security Patches July 2009</a> (5)</li>
	<li><a href="http://www.ghacks.net/2009/06/10/microsoft-security-patches-for-june-2009/" title="Microsoft Security Patches for June 2009 (June 10, 2009)">Microsoft Security Patches for June 2009</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/" title="Microsoft Patch Tuesday December 08 (December 10, 2008)">Microsoft Patch Tuesday December 08</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/01/09/microsoft-releases-two-security-patches-for-windows/" title="Microsoft releases two security patches for Windows (January 9, 2008)">Microsoft releases two security patches for Windows</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/11/12/microsoft-patch-tuesday-november-08/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Security Patches April 2008</title>
		<link>http://www.ghacks.net/2008/04/08/microsoft-security-patches-april-2008/</link>
		<comments>http://www.ghacks.net/2008/04/08/microsoft-security-patches-april-2008/#comments</comments>
		<pubDate>Tue, 08 Apr 2008 19:34:07 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[microsoft patches]]></category>
		<category><![CDATA[microsoft-office]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[security vulnerabilities]]></category>
		<category><![CDATA[windows patches]]></category>
		<category><![CDATA[windows-vista]]></category>
		<category><![CDATA[windows-xp]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=3759</guid>
		<description><![CDATA[Microsoft have released their Security Bulletin Summary for April 2008 today which contains information and download links to eight patches for various Microsoft operating systems and applications like Microsoft Office and Microsoft Internet Explorer. Five of the eight security patches are patching critical vulnerabilities while three patch important ones. The update is recommended for every [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft have released their Security Bulletin Summary for <a href="http://www.microsoft.com/technet/security/bulletin/ms08-apr.mspx">April 2008</a> today which contains information and download links to eight patches for various Microsoft operating systems and applications like Microsoft Office and Microsoft <a href="http://www.ghacks.net/tag/internet-explorer/">Internet Explorer</a>. Five of the eight security patches are patching critical vulnerabilities while three patch important ones. The update is recommended for every user that uses Windows and or Microsoft Office.</p>
<p>All critical vulnerabilities which affect Microsoft Windows, Microsoft Office and Internet Explorer allow Remote Code Execution. The easiest way to patch these security vulnerabilities is by visiting the Windows Update website with Internet Explorer and let a script check the available updates for your system. Please note that you will be asked if you want to install Service Pack 3 Refresh 2 for Windows XP if you use that operating system. My advise would be to not install this version yet and wait for the release version.</p>
<p>All security updates will be displayed and are selected for immediate download and installation. You could follow the link above which leads to the Microsoft website that explains the vulnerabilities and leads to downloads of the patches. This means that you have to make sure to pick the correct downloads for your operating system and software.</p>
<p><span id="more-3759"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a href="http://www.ghacks.net/tag/microsoft-patches/" title="microsoft patches" rel="tag">microsoft patches</a>, <a href="http://www.ghacks.net/tag/microsoft-office/" title="microsoft-office" rel="tag">microsoft-office</a>, <a href="http://www.ghacks.net/tag/patch-tuesday/" title="patch tuesday" rel="tag">patch tuesday</a>, <a href="http://www.ghacks.net/tag/security-vulnerabilities/" title="security vulnerabilities" rel="tag">security vulnerabilities</a>, <a href="http://www.ghacks.net/tag/windows-patches/" title="windows patches" rel="tag">windows patches</a>, <a href="http://www.ghacks.net/tag/windows-vista/" title="windows-vista" rel="tag">windows-vista</a>, <a href="http://www.ghacks.net/tag/windows-xp/" title="windows-xp" rel="tag">windows-xp</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/05/16/microsoft-security-updates-may-2008/" title="Microsoft Security Updates May 2008 (May 16, 2008)">Microsoft Security Updates May 2008</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/09/microsoft-releases-two-security-patches-for-windows/" title="Microsoft releases two security patches for Windows (January 9, 2008)">Microsoft releases two security patches for Windows</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/11/12/microsoft-patch-tuesday-november-08/" title="Microsoft Patch Tuesday November 08 (November 12, 2008)">Microsoft Patch Tuesday November 08</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/05/07/xp-sp3-and-vista-sp-1-available-through-windows-update/" title="XP SP3 and Vista SP 1 available through Windows Update (May 7, 2008)">XP SP3 and Vista SP 1 available through Windows Update</a> (6)</li>
	<li><a href="http://www.ghacks.net/2008/08/26/windows-xp-wga-to-mimic-that-of-windows-vista/" title="Windows XP WGA To Mimic That Of Windows Vista (August 26, 2008)">Windows XP WGA To Mimic That Of Windows Vista</a> (18)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/04/08/microsoft-security-patches-april-2008/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
