<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; security bulletin</title>
	<atom:link href="http://www.ghacks.net/tag/security-bulletin/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 23:31:44 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Microsoft Security Patches July 2009</title>
		<link>http://www.ghacks.net/2009/07/15/microsoft-security-patches-july-2009/</link>
		<comments>http://www.ghacks.net/2009/07/15/microsoft-security-patches-july-2009/#comments</comments>
		<pubDate>Wed, 15 Jul 2009 11:49:35 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft patches]]></category>
		<category><![CDATA[microsoft security]]></category>
		<category><![CDATA[microsoft security patches]]></category>
		<category><![CDATA[security bulletin]]></category>
		<category><![CDATA[security patches]]></category>
		<category><![CDATA[windows patches]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=14410</guid>
		<description><![CDATA[Microsoft has released the Security Bulletin Summary for July 2009 which contains security patches for several Microsoft products. Six security patches are provided by Microsoft this time that include three rated critical and three rated important. Affected programs are Microsoft Windows, Microsoft Office, Microsoft ISA Server, Virtual PC and Virtual Server. Affected operating systems are [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.ghacks.net/wp-content/uploads/2009/04/microsoft.jpg" alt="microsoft" title="microsoft" width="156" height="125" class="alignleft size-full wp-image-12026" />Microsoft has released the Security Bulletin Summary for July 2009 which contains security patches for several Microsoft products. Six security patches are provided by Microsoft this time that include three rated critical and three rated important. Affected programs are Microsoft Windows, Microsoft Office, Microsoft ISA Server, Virtual PC and Virtual Server. Affected operating systems are pretty much all from Windows 2000 onwards although the severity rating varies depending on the operating system. </p>
<p>Critical ratings for Windows XP or Windows Server 2003 are usually important or moderate ratings for Windows Vista or Windows Server 2008 thanks to the increased security in those operating systems. Downloads are already available from various official sources including Automatic Updates, Windows Update or Microsoft Update. </p>
<p><span id="more-14410"></span>
<ul>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=152887">MS09-028</a> &#8211; Vulnerabilities in the Embedded OpenType Font Engine Could Allow Remote Code Execution (961371) &#8211; This security update resolves two privately reported vulnerabilities in the Microsoft Windows component, Embedded OpenType (EOT) Font Engine. The vulnerabilities could allow remote code execution. An attacker who successfully exploited either of these vulnerabilities could take complete control of an affected system remotely. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkID=139788">MS09-029</a> &#8211; Vulnerabilities in Microsoft DirectShow Could Allow Remote Code Execution (971633) &#8211; This security update resolves one publicly disclosed vulnerability and two privately reported vulnerabilities in Microsoft DirectShow. The vulnerabilities could allow remote code execution if a user opened a specially crafted QuickTime media file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
<li>
<li><a href="http://go.microsoft.com/fwlink/?LinkID=147424">MS09-030</a> &#8211; Cumulative Security Update of ActiveX Kill Bits (973346) &#8211; This security update resolves a privately reported vulnerability that is currently being exploited. The vulnerability in Microsoft Video ActiveX Control could allow remote code execution if a user views a specially crafted Web page with <a href="http://www.ghacks.net/tag/internet-explorer/">Internet Explorer</a>, instantiating the ActiveX control. This ActiveX control was never intended to be instantiated in Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=154993">MS09-031</a> &#8211; Vulnerability in Virtual PC and Virtual Server Could Allow Elevation of Privilege (969856) &#8211; This security update resolves a privately reported vulnerability in Microsoft Virtual PC and Microsoft Virtual Server. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control of an affected guest operating system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=157386">MS09-032</a> -Vulnerability in Microsoft ISA Server 2006 Could Cause Elevation of Privilege (970953) &#8211; This security update resolves a privately reported vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2006. The vulnerability could allow elevation of privilege if an attacker successfully impersonates an administrative user account for an ISA server that is configured for Radius One Time Password (OTP) authentication and authentication delegation with Kerberos Constrained Delegation.</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=153891">MS09-033</a> &#8211; Vulnerability in Microsoft Office Publisher Could Allow Remote Code Execution (969516) &#8211; This security update resolves a privately reported vulnerability in Microsoft Office Publisher that could allow remote code execution if a user opens a specially crafted Publisher file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li>
</ul>
<p>It is recommended to install the Microsoft Security Patches as soon as possible to close the security vulnerabilities.</p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-patches/" title="microsoft patches" rel="tag">microsoft patches</a>, <a href="http://www.ghacks.net/tag/microsoft-security/" title="microsoft security" rel="tag">microsoft security</a>, <a href="http://www.ghacks.net/tag/microsoft-security-patches/" title="microsoft security patches" rel="tag">microsoft security patches</a>, <a href="http://www.ghacks.net/tag/security-bulletin/" title="security bulletin" rel="tag">security bulletin</a>, <a href="http://www.ghacks.net/tag/security-patches/" title="security patches" rel="tag">security patches</a>, <a href="http://www.ghacks.net/tag/windows-patches/" title="windows patches" rel="tag">windows patches</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/11/12/microsoft-patch-tuesday-november-08/" title="Microsoft Patch Tuesday November 08 (November 12, 2008)">Microsoft Patch Tuesday November 08</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/09/09/microsoft-security-patches-september-2009/" title="Microsoft Security Patches September 2009 (September 9, 2009)">Microsoft Security Patches September 2009</a> (6)</li>
	<li><a href="http://www.ghacks.net/2009/06/10/microsoft-security-patches-for-june-2009/" title="Microsoft Security Patches for June 2009 (June 10, 2009)">Microsoft Security Patches for June 2009</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/04/08/microsoft-security-patches-april-2008/" title="Microsoft Security Patches April 2008 (April 8, 2008)">Microsoft Security Patches April 2008</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/12/10/microsoft-patch-tuesday-december-08/" title="Microsoft Patch Tuesday December 08 (December 10, 2008)">Microsoft Patch Tuesday December 08</a> (3)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/07/15/microsoft-security-patches-july-2009/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Microsoft Security Bulletin May 2009</title>
		<link>http://www.ghacks.net/2009/05/13/microsoft-security-bulletin-may-2009/</link>
		<comments>http://www.ghacks.net/2009/05/13/microsoft-security-bulletin-may-2009/#comments</comments>
		<pubDate>Wed, 13 May 2009 14:05:31 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft security bulleting]]></category>
		<category><![CDATA[microsoft-office]]></category>
		<category><![CDATA[security bulletin]]></category>
		<category><![CDATA[security vulnerability]]></category>
		<category><![CDATA[windows updates]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2009/05/13/microsoft-security-bulletin-may-2009/</guid>
		<description><![CDATA[Microsoft has released the Security Bulletin for May 2009 which contains one Microsoft Office PowerPoint vulnerability which affects various editions of Microsoft Office but also the Microsoft Office PowerPoint Viewer and Microsoft Office Compatibility Pack. Affected are Microsoft Office PowerPoint editions in Microsoft Office 2000, Office XP, Office 2003 and Microsoft Office 2007. The security [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.ghacks.net/wp-content/uploads/2009/04/microsoft_office.jpg" alt="microsoft office" title="microsoft office" width="128" height="105" class="alignleft size-full wp-image-12120" />Microsoft has released the Security Bulletin for May 2009 which contains one Microsoft Office PowerPoint vulnerability which affects various editions of Microsoft Office but also the Microsoft Office PowerPoint Viewer and Microsoft Office Compatibility Pack. Affected are Microsoft Office PowerPoint editions in Microsoft Office 2000, Office XP, Office 2003 and Microsoft Office 2007. The security update is rated as critical for Microsoft Office 2000 editions and important for all other affected editions of Microsoft Office and software programs by Microsoft.</p>
<p><span id="more-12792"></span><br />
<blockquote>This security update resolves a publicly disclosed vulnerability and several privately reported vulnerabilities in Microsoft Office PowerPoint that could allow remote code execution if a user opens a specially crafted PowerPoint file. An attacker who successfully exploited any of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</p></blockquote>
<p>The security update is available on Windows Update and Microsoft Update. Additional information and links can be found at the <a href="http://www.microsoft.com/technet/security/bulletin/ms09-017.mspx">Security Bulletin</a> that has been created for the security vulnerability. Users of affected software programs are encouraged to perform the security update as soon as possible.</p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-security-bulleting/" title="microsoft security bulleting" rel="tag">microsoft security bulleting</a>, <a href="http://www.ghacks.net/tag/microsoft-office/" title="microsoft-office" rel="tag">microsoft-office</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/security-bulletin/" title="security bulletin" rel="tag">security bulletin</a>, <a href="http://www.ghacks.net/tag/security-vulnerability/" title="security vulnerability" rel="tag">security vulnerability</a>, <a href="http://www.ghacks.net/tag/windows-updates/" title="windows updates" rel="tag">windows updates</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/" title="Microsoft Security Updates April 2009 (April 15, 2009)">Microsoft Security Updates April 2009</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/03/10/microsoft-patch-day-march-2009/" title="Microsoft Patch Day March 2009 (March 10, 2009)">Microsoft Patch Day March 2009</a> (4)</li>
	<li><a href="http://www.ghacks.net/2008/08/13/microsoft-august-2008-security-updates/" title="Microsoft August 2008 Security Updates (August 13, 2008)">Microsoft August 2008 Security Updates</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/08/08/game-over-for-windows-vistas-security/" title="Game Over For Windows Vista&#8217;s Security? (August 8, 2008)">Game Over For Windows Vista&#8217;s Security?</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/02/27/february-2008-security-releases-iso-image/" title="February 2008 Security Releases ISO Image (February 27, 2008)">February 2008 Security Releases ISO Image</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/05/13/microsoft-security-bulletin-may-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Security Updates April 2009</title>
		<link>http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/</link>
		<comments>http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/#comments</comments>
		<pubDate>Wed, 15 Apr 2009 11:25:15 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[microsoft update]]></category>
		<category><![CDATA[microsoft-office]]></category>
		<category><![CDATA[microsoft-windows]]></category>
		<category><![CDATA[office security]]></category>
		<category><![CDATA[office updates]]></category>
		<category><![CDATA[security bulletin]]></category>
		<category><![CDATA[security updates]]></category>
		<category><![CDATA[windows security]]></category>
		<category><![CDATA[windows-update]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/</guid>
		<description><![CDATA[Microsoft releases security bulletins once a month that outline new security updates and patches for Microsoft products. The security updates for April 2009 list a total of eight vulnerabilities for various Microsoft applications including Microsoft Windows and Microsoft Office. Six of the eight patches affect various Microsoft operating systems. Windows XP and Windows Server 2003 [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.ghacks.net/wp-content/uploads/2009/04/microsoft.jpg" alt="microsoft" title="microsoft" width="156" height="125" class="alignleft size-full wp-image-12026" />Microsoft releases security bulletins once a month that outline new security updates and patches for Microsoft products. The security updates for April 2009 list a total of eight vulnerabilities for various Microsoft applications including Microsoft Windows and Microsoft Office. Six of the eight patches affect various Microsoft operating systems. Windows XP and Windows Server 2003 face three critical, two important and one moderate security vulnerability while Windows Vista and Windows Server 2008 bring it to two critical, one important and one moderate vulnerability. Below is a list of links that point to all eight Microsoft Security Bulletins. These bulletins contain extensive information about the vulnerabilities including the systems affected.</p>
<p><span id="more-12027"></span>
<ul>
<li>Vulnerabilities in Microsoft Office Excel Could Cause Remote Code Execution (<a href="http://www.microsoft.com/technet/security/bulletin/MS09-009.mspx">968557</a>)</li>
<li>Vulnerabilities in WordPad and Office Text Converters Could Allow Remote Code Execution (<a href="http://www.microsoft.com/technet/security/bulletin/MS09-010.mspx">960477</a>)</li>
<li>Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution (<a href="http://www.microsoft.com/technet/security/Bulletin/ms09-011.mspx">961373</a>)</li>
<li>Vulnerabilities in Windows Could Allow Elevation of Privilege (<a href="http://www.microsoft.com/technet/security/Bulletin/ms09-012.mspx">959454</a>)</li>
<li>Vulnerabilities in Windows HTTP Services Could Allow Remote Code Execution (<a href="http://www.microsoft.com/technet/security/bulletin/MS09-013.mspx">960803</a>)</li>
<li>Cumulative Security Update for Internet Explorer (<a href="http://www.microsoft.com/technet/security/Bulletin/MS09-014.mspx">963027</a>)</li>
<li>Blended Threat Vulnerability in SearchPath Could Allow Elevation of Privilege (<a href="http://www.microsoft.com/technet/security/Bulletin/MS09-015.mspx">959426</a>)</li>
<li>Vulnerabilities in Microsoft ISA Server and Forefront Threat Management Gateway (Medium Business Edition) Could Cause Denial of Service (<a href="http://www.microsoft.com/technet/security/bulletin/MS09-016.mspx">961759</a>)</li>
</ul>
<p>The easiest way to update is by visiting Windows Update or Microsoft Update. Please read our <a href="http://www.ghacks.net/2009/04/13/windows-update-fix/">Windows Update Fix</a> article if Windows Update is not working properly on your computer system. Alternatives are so called offline updates like <a href="http://www.ghacks.net/2008/01/21/update-windows-with-offline-update/">Offline Update</a>, <a href="http://www.ghacks.net/2007/08/20/autopatcher-august-2007-released/">Autopatcher</a> or <a href="http://www.ghacks.net/2007/02/11/update-windows-without-microsoft/">Update Windows Without Microsoft</a>.</p>
<p>It is recommended to update the computer system as soon as possible to close the vulnerabilities.</p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-update/" title="microsoft update" rel="tag">microsoft update</a>, <a href="http://www.ghacks.net/tag/microsoft-office/" title="microsoft-office" rel="tag">microsoft-office</a>, <a href="http://www.ghacks.net/tag/microsoft-windows/" title="microsoft-windows" rel="tag">microsoft-windows</a>, <a href="http://www.ghacks.net/tag/office-security/" title="office security" rel="tag">office security</a>, <a href="http://www.ghacks.net/tag/office-updates/" title="office updates" rel="tag">office updates</a>, <a href="http://www.ghacks.net/tag/security-bulletin/" title="security bulletin" rel="tag">security bulletin</a>, <a href="http://www.ghacks.net/tag/security-updates/" title="security updates" rel="tag">security updates</a>, <a href="http://www.ghacks.net/tag/windows/" title="Windows" rel="tag">Windows</a>, <a href="http://www.ghacks.net/tag/windows-security/" title="windows security" rel="tag">windows security</a>, <a href="http://www.ghacks.net/tag/windows-update/" title="windows-update" rel="tag">windows-update</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/11/11/microsoft-security-updates-november-2009/" title="Microsoft Security Updates November 2009 (November 11, 2009)">Microsoft Security Updates November 2009</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/09/10/windows-security-updates-september-2008/" title="Windows Security Updates September 2008 (September 10, 2008)">Windows Security Updates September 2008</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/10/15/microsoft-october-2008-patch-day-patches-11-security-vulnerabilities/" title="Microsoft October 2008 Patch Day Patches 11 Security Vulnerabilities (October 15, 2008)">Microsoft October 2008 Patch Day Patches 11 Security Vulnerabilities</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/08/13/microsoft-august-2008-security-updates/" title="Microsoft August 2008 Security Updates (August 13, 2008)">Microsoft August 2008 Security Updates</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/01/14/january-2009-microsoft-security-bulletin/" title="January 2009 Microsoft Security Bulletin (January 14, 2009)">January 2009 Microsoft Security Bulletin</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Microsoft Patch Day March 2009</title>
		<link>http://www.ghacks.net/2009/03/10/microsoft-patch-day-march-2009/</link>
		<comments>http://www.ghacks.net/2009/03/10/microsoft-patch-day-march-2009/#comments</comments>
		<pubDate>Tue, 10 Mar 2009 17:26:36 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft patch day]]></category>
		<category><![CDATA[microsoft security]]></category>
		<category><![CDATA[microsoft security bulletin]]></category>
		<category><![CDATA[patch day]]></category>
		<category><![CDATA[remote code execution]]></category>
		<category><![CDATA[security bulletin]]></category>
		<category><![CDATA[spoofing]]></category>
		<category><![CDATA[windows security]]></category>
		<category><![CDATA[windows vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=11081</guid>
		<description><![CDATA[Just a few minutes ago the patches for this month&#8217;s patch day have been uploaded to Windows Update and Microsoft Update. Users are encouraged to update their Microsoft operating system as soon as possible to close the recently discovered security vulnerabilities. Among the affected operating systems are practically all Microsoft operating systems since and including [...]]]></description>
			<content:encoded><![CDATA[<p>Just a few minutes ago the patches for this month&#8217;s patch day have been uploaded to Windows Update and Microsoft Update. Users are encouraged to update their Microsoft operating system as soon as possible to close the recently discovered security vulnerabilities. Among the affected operating systems are practically all Microsoft operating systems since and including Windows 2000. This means the popular operating systems Windows XP and Vista are affected as well as Windows Server 2003 and 2008.</p>
<p>One security vulnerability has a critical rating for all affected operating systems while the other two are rated important by Microsoft&#8217;s security research team. </p>
<p>Details about the Security Bulletins can be found by following these links: Microsoft Security Bulletin <a href="http://www.microsoft.com/technet/security/bulletin/MS09-006.mspx">MS09-006</a>, <a href="http://www.microsoft.com/technet/security/bulletin/MS09-007.mspx">MS09-007</a> or <a href="http://www.microsoft.com/technet/security/bulletin/MS09-008.mspx">MS09-008</a>. Another possibility is to <a href="http://www.microsoft.com/technet/security/bulletin/ms09-mar.mspx">access</a> the Security Bulletin Summary at Microsoft Technet.</p>
<p>The vulnerabilities fix one remote code execution vulnerability and two spoofing vulnerabilities on the affected Windows operating systems:</p>
<ul>
<li>Vulnerabilities in Windows Kernel Could Allow Remote Code Execution</li>
<li>Vulnerability in SChannel Could Allow Spoofing</li>
<li>Vulnerabilities in DNS and WINS Server Could Allow Spoofing</li>
</ul>
<p><span id="more-11081"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-patch-day/" title="microsoft patch day" rel="tag">microsoft patch day</a>, <a href="http://www.ghacks.net/tag/microsoft-security/" title="microsoft security" rel="tag">microsoft security</a>, <a href="http://www.ghacks.net/tag/microsoft-security-bulletin/" title="microsoft security bulletin" rel="tag">microsoft security bulletin</a>, <a href="http://www.ghacks.net/tag/patch-day/" title="patch day" rel="tag">patch day</a>, <a href="http://www.ghacks.net/tag/remote-code-execution/" title="remote code execution" rel="tag">remote code execution</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/security-bulletin/" title="security bulletin" rel="tag">security bulletin</a>, <a href="http://www.ghacks.net/tag/spoofing/" title="spoofing" rel="tag">spoofing</a>, <a href="http://www.ghacks.net/tag/windows-security/" title="windows security" rel="tag">windows security</a>, <a href="http://www.ghacks.net/tag/windows-vulnerabilities/" title="windows vulnerabilities" rel="tag">windows vulnerabilities</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/09/09/new-security-vulnerability-affects-windows-operating-systems/" title="New Security Vulnerability Affects Windows Operating Systems (September 9, 2009)">New Security Vulnerability Affects Windows Operating Systems</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/08/12/microsoft-security-updates-august-2009/" title="Microsoft Security Updates August 2009 (August 12, 2009)">Microsoft Security Updates August 2009</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/" title="Microsoft Security Updates April 2009 (April 15, 2009)">Microsoft Security Updates April 2009</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/07/15/microsoft-security-patches-july-2009/" title="Microsoft Security Patches July 2009 (July 15, 2009)">Microsoft Security Patches July 2009</a> (5)</li>
	<li><a href="http://www.ghacks.net/2009/06/10/microsoft-security-patches-for-june-2009/" title="Microsoft Security Patches for June 2009 (June 10, 2009)">Microsoft Security Patches for June 2009</a> (12)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/03/10/microsoft-patch-day-march-2009/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>January 2009 Microsoft Security Bulletin</title>
		<link>http://www.ghacks.net/2009/01/14/january-2009-microsoft-security-bulletin/</link>
		<comments>http://www.ghacks.net/2009/01/14/january-2009-microsoft-security-bulletin/#comments</comments>
		<pubDate>Wed, 14 Jan 2009 14:49:13 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft security bulletin]]></category>
		<category><![CDATA[microsoft update]]></category>
		<category><![CDATA[security bulletin]]></category>
		<category><![CDATA[update windows]]></category>
		<category><![CDATA[windows patch]]></category>
		<category><![CDATA[windows vulnerability]]></category>
		<category><![CDATA[windows-update]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=9886</guid>
		<description><![CDATA[Microsoft has the habit of releasing security patches on one Tuesday each month. Time critical patches can be delivered out of schedule but that did not happen that often in the past. Only one security bulletin has been released on the patch Tuesday in January 2009. Security Bullein MS09-001 has been rated critical for Windows [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has the habit of releasing security patches on one Tuesday each month. Time critical patches can be delivered out of schedule but that did not happen that often in the past. Only one security bulletin has been released on the patch Tuesday in January 2009. Security Bullein <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-001.mspx">MS09-001</a> has been rated critical for Windows XP and Windows Server 2003 respectively moderate for Windows Vista and Windows Server 2008.</p>
<p>The security bulletin resolves three vulnerabilities in Microsoft Server Message Block (SMB) Protocol which could allow remote code execution on affected systems. An attacker could run programs, create new user accounts and view, change or delete data on the computer system. It is <a href="http://blogs.technet.com/msrc/archive/2009/01/13/january-2009-monthly-bulletin-release.aspx">interesting</a> to note that <a href="http://windows7news.com/">Windows 7</a> is affected as well even though it is not mentioned in the security bulletin.</p>
<p>The security vulnerability would be rated as moderate for the upcoming operating system which is why Microsoft will not provide a patch at the current time (They chose to only patch critical security vulnerabilities immediately). A patch will be released with the next public release of Windows 7.</p>
<p><span id="more-9886"></span>Patches can be applied as usual through the various official update channels.</p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft-security-bulletin/" title="microsoft security bulletin" rel="tag">microsoft security bulletin</a>, <a href="http://www.ghacks.net/tag/microsoft-update/" title="microsoft update" rel="tag">microsoft update</a>, <a href="http://www.ghacks.net/tag/security-bulletin/" title="security bulletin" rel="tag">security bulletin</a>, <a href="http://www.ghacks.net/tag/update-windows/" title="update windows" rel="tag">update windows</a>, <a href="http://www.ghacks.net/tag/windows-patch/" title="windows patch" rel="tag">windows patch</a>, <a href="http://www.ghacks.net/tag/windows-vulnerability/" title="windows vulnerability" rel="tag">windows vulnerability</a>, <a href="http://www.ghacks.net/tag/windows-update/" title="windows-update" rel="tag">windows-update</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/05/24/offline-update-6-adds-linux-support/" title="Offline Update 6 Adds Linux Support (May 24, 2009)">Offline Update 6 Adds Linux Support</a> (3)</li>
	<li><a href="http://www.ghacks.net/2009/04/15/microsoft-security-updates-april-2009/" title="Microsoft Security Updates April 2009 (April 15, 2009)">Microsoft Security Updates April 2009</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/04/13/windows-update-fix/" title="Windows Update Fix (April 13, 2009)">Windows Update Fix</a> (3)</li>
	<li><a href="http://www.ghacks.net/2009/03/10/microsoft-patch-day-march-2009/" title="Microsoft Patch Day March 2009 (March 10, 2009)">Microsoft Patch Day March 2009</a> (4)</li>
	<li><a href="http://www.ghacks.net/2008/05/04/windows-xp-service-pack-3-uxthemedll-patch/" title="Windows XP Service Pack 3 Uxtheme.dll patch (May 4, 2008)">Windows XP Service Pack 3 Uxtheme.dll patch</a> (41)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/01/14/january-2009-microsoft-security-bulletin/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Microsoft Security Bulletin March 2008</title>
		<link>http://www.ghacks.net/2008/03/12/microsoft-security-bulletin-march-2008/</link>
		<comments>http://www.ghacks.net/2008/03/12/microsoft-security-bulletin-march-2008/#comments</comments>
		<pubDate>Wed, 12 Mar 2008 20:35:08 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[microsoft patchday]]></category>
		<category><![CDATA[security bulletin]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/03/12/microsoft-security-bulletin-march-2008/</guid>
		<description><![CDATA[Microsoft released their monthly Security Bulletin yesterday which consisted of four critical issues all affecting various editions of Microsoft Office. All four patches fix remote code execution vulnerabilities and it is recommended that they are installed as soon as possible if Microsoft Office is installed on the computer.]]></description>
			<content:encoded><![CDATA[<p>Microsoft released their monthly Security Bulletin yesterday which consisted of four critical issues all affecting various editions of Microsoft Office. All four patches fix remote code execution vulnerabilities and it is recommended that they are installed as soon as possible if Microsoft Office is installed on the computer.</p>
<p>Two of the vulnerabilities allow remote code execution if the user opens a specially prepared file while the the other two make it possible with specially crafted mailto links and websites. It should be noted that not only Office 2000, Office 2003 and Office 2007<br />
are affected but also Office for Mac, to be price Office 2004 and 2008 for Mac.</p>
<p>You can use the Microsoft Baseline Analyzer [<a href="http://go.microsoft.com/fwlink/?LinkId=21134">link</a>] to find out if your system is affected. My suggestion is to simply <a href="http://www.microsoft.com/technet/security/bulletin/ms08-mar.mspx">download</a> the four patches and see if they install. You would get an error message if your system would not be affected.</p>
<p><span id="more-3496"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a href="http://www.ghacks.net/tag/microsoft-patchday/" title="microsoft patchday" rel="tag">microsoft patchday</a>, <a href="http://www.ghacks.net/tag/security-bulletin/" title="security bulletin" rel="tag">security bulletin</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/02/13/microsoft-releases-11-security-bulletins/" title="Microsoft releases 11 security bulletins (February 13, 2008)">Microsoft releases 11 security bulletins</a> (0)</li>
	<li><a href="http://www.ghacks.net/2007/08/15/get-your-microsoft-security-patches-now/" title="Get your Microsoft Security Patches now (August 15, 2007)">Get your Microsoft Security Patches now</a> (0)</li>
	<li><a href="http://www.ghacks.net/2007/01/20/zune-does-not-allow-to-share-all-songs/" title="Zune does not allow to share all songs (January 20, 2007)">Zune does not allow to share all songs</a> (3)</li>
	<li><a href="http://www.ghacks.net/2006/10/21/zoom-it/" title="Zoom It (October 21, 2006)">Zoom It</a> (4)</li>
	<li><a href="http://www.ghacks.net/2008/04/23/yuck-new-windows-vista-ultimate-extras/" title="Yuck new Windows Vista Ultimate Extras (April 23, 2008)">Yuck new Windows Vista Ultimate Extras</a> (20)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/03/12/microsoft-security-bulletin-march-2008/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Microsoft releases 11 security bulletins</title>
		<link>http://www.ghacks.net/2008/02/13/microsoft-releases-11-security-bulletins/</link>
		<comments>http://www.ghacks.net/2008/02/13/microsoft-releases-11-security-bulletins/#comments</comments>
		<pubDate>Wed, 13 Feb 2008 07:48:04 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[internet-explorer]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[office]]></category>
		<category><![CDATA[security bulletin]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/02/13/microsoft-releases-11-security-bulletins/</guid>
		<description><![CDATA[Microsoft released their monthly security bulletin yesterday which listed 11 security bulletins containing a total of 17 patches for operating systems and software like Internet Explorer and Microsoft Office. Six of the eleven security bulletins are critical while the remaining five are considered important.]]></description>
			<content:encoded><![CDATA[<p>Microsoft released their monthly security bulletin yesterday which listed 11 security bulletins containing a total of 17 patches for operating systems and software like <a href="http://www.ghacks.net/tag/internet-explorer/">Internet Explorer</a> and Microsoft Office. Six of the eleven security bulletins are critical while the remaining five are considered important.</p>
<p>All critical vulnerabilities have the impact of remote code execution while the impact of the important vulnerabilities can be elevation of privilege, Denial of Service and remote code execution. Downloads are available at Windows Update and as single downloads if you follow the links in the security bulletins.</p>
<p>Information regarding all 11 security bulletins including download links can be found at the security bulletin overview website <a href="http://www.microsoft.com/technet/security/bulletin/ms08-feb.mspx">at</a> Microsoft. Every user should update his system as soon as possible.</p>

	Tags: <a href="http://www.ghacks.net/tag/internet-explorer/" title="internet-explorer" rel="tag">internet-explorer</a>, <a href="http://www.ghacks.net/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a href="http://www.ghacks.net/tag/office/" title="office" rel="tag">office</a>, <a href="http://www.ghacks.net/tag/security-bulletin/" title="security bulletin" rel="tag">security bulletin</a>, <a href="http://www.ghacks.net/tag/windows/" title="Windows" rel="tag">Windows</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/11/29/watch-three-webcasts-get-vista-and-office-for-free/" title="Watch three webcasts get vista and office for free (November 29, 2006)">Watch three webcasts get vista and office for free</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/10/15/microsoft-october-2008-patch-day-patches-11-security-vulnerabilities/" title="Microsoft October 2008 Patch Day Patches 11 Security Vulnerabilities (October 15, 2008)">Microsoft October 2008 Patch Day Patches 11 Security Vulnerabilities</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/04/08/microsoft-download-portals-overview/" title="Microsoft Download Portals Overview (April 8, 2009)">Microsoft Download Portals Overview</a> (7)</li>
	<li><a href="http://www.ghacks.net/2008/03/19/indexdat-suite/" title="Index.dat Suite (March 19, 2008)">Index.dat Suite</a> (5)</li>
	<li><a href="http://www.ghacks.net/2008/04/06/export-internet-explorers-trusted-and-restricted-sites/" title="Export Internet Explorer&#8217;s Trusted and Restricted Sites (April 6, 2008)">Export Internet Explorer&#8217;s Trusted and Restricted Sites</a> (5)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/02/13/microsoft-releases-11-security-bulletins/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
