<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>gHacks Technology News &#124; Latest Tech News, Software And Tutorials &#187; windows updates</title> <atom:link href="http://www.ghacks.net/tag/windows-updates/feed/" rel="self" type="application/rss+xml" /><link>http://www.ghacks.net</link> <description>A technology news blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description> <lastBuildDate>Fri, 10 Feb 2012 20:51:26 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><atom:link rel="hub" href="http://superfeedr.com/hubbub"/> <item><title>Microsoft Patch Day November 2011 Overview</title><link>http://www.ghacks.net/2011/11/08/microsoft-patch-day-november-2011-overview/</link> <comments>http://www.ghacks.net/2011/11/08/microsoft-patch-day-november-2011-overview/#comments</comments> <pubDate>Tue, 08 Nov 2011 18:42:29 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft patch day]]></category> <category><![CDATA[patch day]]></category> <category><![CDATA[security bulletin]]></category> <category><![CDATA[windows patches]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=52475</guid> <description><![CDATA[Today Microsoft has released security updates exclusively for Microsoft Windows operating systems. Of the four bulletins released today, one has received the maximum severity rating of critical while the other three have received one of important. Maximum severity means that at least one Microsoft operating system has received the critical vulnerability rating. In this case, [...]]]></description> <content:encoded><![CDATA[<p>Today Microsoft has released security updates exclusively for Microsoft Windows operating systems. Of the four bulletins released today, one has received the maximum severity rating of critical while the other three have received one of important. Maximum severity means that at least one Microsoft operating system has received the critical vulnerability rating.</p><p>In this case, the critical rating applies to all operating systems that Microsoft supplies with security patches. This includes the client operating systems Windows XP, Vista and Windows 7 as well as the server operating systems Windows Server 2008 and 2008 R2.</p><p>Here are two graphs visualizing the severity and exploitability index and the bulletin deployment priority.</p><p><a
href="http://www.ghacks.net/wp-content/uploads/2011/11/november2011-bulletin-deployment.png"><img
src="http://www.ghacks.net/wp-content/uploads/2011/11/november2011-bulletin-deployment-600x337.png" alt="november2011 bulletin deployment" title="november2011 bulletin deployment" width="600" height="337" class="alignnone size-medium wp-image-52476" /></a></p><p><a
href="http://www.ghacks.net/wp-content/uploads/2011/11/november2011-severity.png"><img
src="http://www.ghacks.net/wp-content/uploads/2011/11/november2011-severity-600x337.png" alt="november2011 severity" title="november2011 severity" width="600" height="337" class="alignnone size-medium wp-image-52477" /></a></p><p>Here is the list of security bulletins released in November 2011 by Microsoft.</p><ul><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-083">MS11-083</a> &#8211; Vulnerability in TCP/IP Could Allow Remote Code Execution (2588516) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker sends a continuous flow of specially crafted UDP packets to a closed port on a target system.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-085">MS11-085</a> &#8211; Vulnerability in Windows Mail and Windows Meeting Space Could Allow Remote Code Execution (2620704) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a legitimate file (such as an .eml or .wcinv file) that is located in the same network directory as a specially crafted dynamic link library (DLL) file. Then, while opening the legitimate file, Windows Mail or Windows Meeting Space could attempt to load the DLL file and execute any code it contained. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open a legitimate file (such as an .eml or .wcinv file) from this location that is then loaded by a vulnerable application.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-086">MS11-086</a> &#8211; Vulnerability in Active Directory Could Allow Elevation of Privilege (2630837) &#8211; This security update resolves a privately reported vulnerability in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS). The vulnerability could allow elevation of privilege if Active Directory is configured to use LDAP over SSL (LDAPS) and an attacker acquires a revoked certificate that is associated with a valid domain account and then uses that revoked certificate to authenticate to the Active Directory domain. By default, Active Directory is not configured to use LDAP over SSL.</li><li><a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-084">MS11-084</a> &#8211; Vulnerability in Windows Kernel-Mode Drivers Could Allow Denial of Service (2617657) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if a user opens a specially crafted TrueType font file as an e-mail attachment or navigates to a network share or WebDAV location containing a specially crafted TrueType font file. For an attack to be successful, a user must visit the untrusted remote file system location or WebDAV share containing the specially crafted TrueType font file, or open the file as an e-mail attachment. In all cases, however, an attacker would have no way to force users to perform these actions. Instead, an attacker would have to persuade users to do so, typically by getting them to click a link in an e-mail message or Instant Messenger message.</li></ul><p>Microsoft has published a video in which Jerry Bryant discusses this month&#8217;s bulletins (Silverlight required).</p><div
style="width:480px;height:270px" ><object
type="application/x-silverlight-2" data="data:application/x-silverlight-2," width="480" height="270" ><param
name="source" value="http://www.microsoft.com/global/en-us/showcase/RichMedia/player-en.xap" /><param
name="initParams" value="Culture=en-us,Uuid=3619b004-8dd9-40f0-ae88-2d0be504684b,Autoplay=False,ShowMarketingOverlay=true,MiscControls=FullScreen;Detached,ShowMenu=true,Tabs=Embed;Email;Share;Info;,ShowCaption=false,AgeGate=True,AgeGateDayMonthYearOrder=MDY,VideoUrl=http://www.microsoft.com/en-us/showcase/details.aspx?uuid=3619b004-8dd9-40f0-ae88-2d0be504684b,Mode=Player" /><param
name="enableHtmlAccess" value="true" /><param
name="allowHtmlPopupwindow" value="true" /><param
name="background" value="#FF000000" /><param
name="minRuntimeVersion" value="4.0.50401.0" /><param
name="autoUpgrade" value="true" /><div><a
href="http://go.microsoft.com/fwlink/?LinkID=149156" style="text-decoration: none;" onmousedown="javascript:new Image().src = 'http://m.webtrends.com/dcsygm2gb10000kf9xm7kfvub_9p1t/dcs.gif?dcsdat=' + new Date().getTime() + '&#038;dcssip=www.microsoft.com&#038;dcsuri=' + window.location.href + '&#038;WT.tz=-8&#038;WT.bh=16&#038;WT.ul=en-US&#038;WT.cd=32&#038;WT.jo=Yes&#038;WT.ti=&#038;WT.js=Yes&#038;WT.jv=1.5&#038;WT.fi=Yes&#038;WT.fv=10.0&#038;WT.sli=Not%20Installed&#038;WT.slv=Version%20Unavailable&#038;WT.dl=1&#038;WT.seg_1=Not%20Logged%20In&#038;WT.vt_f_a=2&#038;WT.vt_f=2&#038;WT.vt_nvr1=2&#038;WT.vt_nvr2=2&#038;WT.vt_nvr3=2&#038;WT.vt_nvr4=2&#038;vp_site=Embedded&#038;wtEvtSrc=' + window.location.href + '&#038;vp_sli=Embedded'"><img
src="http://img.microsoft.com/showcase/Content/img/resx/en-US/installSL.gif" alt="Get Microsoft Silverlight" style="border-style: none"/></a></div><div
style='margin-top: -80px; text-align: center;'><a
style='text-align: center; color: #7db0d2; text-decoration: none; font-size: 80%; font-family: "Segoe UI", Segoe, Tahoma, Verdana, sans-serif;' href='http://content4.catalog.video.msn.com/e2/ds/fdf9929c-c9e7-480c-aa13-ea4155cefb8b.mp4'>View this video as a WMV</a></div><p><noscript><div><img
alt="DCSIMG" id="DCSIMG" width="1" height="1" src="http://m.webtrends.com/dcsygm2gb10000kf9xm7kfvub_9p1t/njs.gif?dcsuri=/nojavascript&amp;WT.js=No"/></div><p></noscript></object></div><p><script type="text/javascript">document.write("<script type='text/javascript' src='" + (window.location.protocol) + "//c.microsoft.com/ms.js'><\/script>");</script></p><p>Additional information about this month's security bulletins are available on the Technet Blog <a
href="http://blogs.technet.com/b/msrc/">page</a> and the Microsoft Security bulletin <a
href="http://technet.microsoft.com/en-us/security/bulletin/ms11-nov">Summary</a> for November 2011.</p><p>The updates are already available on Windows Update. Users who have started their computer earlier today may need to run a manual update check in Windows Update.</p><p><a
href="http://www.ghacks.net/wp-content/uploads/2011/11/windows-updates.jpg"><img
src="http://www.ghacks.net/wp-content/uploads/2011/11/windows-updates.jpg" alt="windows updates" title="windows updates" width="567" height="275" class="alignnone size-full wp-image-52478" /></a></p><p>The updates will also be available <a
href="http://www.microsoft.com/download/en/default.aspx">shortly</a> at Microsoft's Download center.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2011/11/08/microsoft-patch-day-november-2011-overview/feed/</wfw:commentRss> <slash:comments>3</slash:comments> <enclosure
url="http://content4.catalog.video.msn.com/e2/ds/fdf9929c-c9e7-480c-aa13-ea4155cefb8b.mp4" length="0" type="video/mp4" /> </item> <item><title>Microsoft May 2011 Patch Day Overview</title><link>http://www.ghacks.net/2011/05/10/microsoft-may-2011-patch-day-overview/</link> <comments>http://www.ghacks.net/2011/05/10/microsoft-may-2011-patch-day-overview/#comments</comments> <pubDate>Tue, 10 May 2011 20:34:53 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft security]]></category> <category><![CDATA[patch day]]></category> <category><![CDATA[windows security]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=44985</guid> <description><![CDATA[Microsoft has released two security bulletins on this month&#8217;s patch day. Every second Tuesday of a month is so called patch day at Microsoft where a number of security related updates are released. One of the security bulletin addresses securities in Microsoft Windows, the other in Microsoft Office. If you look at the maximum severity [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has released two security bulletins on this month&#8217;s patch day. Every second Tuesday of a month is so called patch day at Microsoft where a number of security related updates are released. One of the security bulletin addresses securities in Microsoft Windows, the other in Microsoft Office.</p><p>If you look at the maximum severity rating you notice that the Windows vulnerabilities have received a severity rating of critical, the highest possible rating. The Office bulletin on the other hand received a rating of important, the second highest rating.</p><p>Microsoft Security Bulletin MS11-035 offers detailed information about the Windows vulnerability. It affects only Windows Server products, from Windows Server 2003 to Windows Server 2008 R2. Not affected are all client operating systems of Microsoft.</p><p>If you look at Microsoft Security Bulletin MS11-036 you notice that Office XP, 2003 and 2007 are affected on Windows. Furthermore affected are Microsoft Office 2004 and 2008 for Mac, the Open XML File Format Converter for Mac and the Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Service Pack 2.</p><p>Why is not Office 2010 affected by the vulnerability? Because Office File Validation mitigates the risk of the vulnerability.</p><ul><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS11-035.mspx">MS11-035</a> &#8211; Vulnerability in WINS Could Allow Remote Code Execution (2524426) &#8211; This security update resolves a privately reported vulnerability in the Windows Internet Name Service (WINS). The vulnerability could allow remote code execution if a user received a specially crafted WINS replication packet on an affected system running the WINS service. By default, WINS is not installed on any affected operating system. Only customers who manually installed this component are affected by this issue.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS11-036.mspx">MS11-036</a> &#8211; Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution (2545814) &#8211; This security update resolves two privately reported vulnerabilities in Microsoft PowerPoint. The vulnerabilities could allow remote code execution if a user opens a specially crafted PowerPoint file. An attacker who successfully exploited either of these vulnerabilities could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. Installing and configuring Office File Validation (OFV) to prevent the opening of suspicious files blocks the attack vectors for exploiting the vulnerabilities described in CVE-2011-1269 and CVE-2011-1270.</li></ul><p>Additional information on both vulnerabilities are available at the <a
href="http://blogs.technet.com/b/msrc/archive/2011/05/10/may-2011-security-bulletin-release.aspx">MSRC</a> Technet Blog.</p><p>The patches are available via <a
href="http://www.ghacks.net/2010/12/20/microsoft-windows-update-overview-all-you-need-to-know/">Windows Update</a> or the <a
href="http://www.microsoft.com/downloads/en/default.aspx?pf=true">Microsoft Download Center</a>. The May Security Release ISO image is <a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=f134d93b-dd1e-401a-a214-343f99b77350&#038;pf=true">available</a> there as well.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2011/05/10/microsoft-may-2011-patch-day-overview/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Microsoft March 2011 Patch Day Overview</title><link>http://www.ghacks.net/2011/03/09/microsoft-march-2011-patch-day-overview/</link> <comments>http://www.ghacks.net/2011/03/09/microsoft-march-2011-patch-day-overview/#comments</comments> <pubDate>Wed, 09 Mar 2011 09:05:54 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[patch day]]></category> <category><![CDATA[security bulletin]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=42277</guid> <description><![CDATA[Microsoft has released new security patches on yesterday&#8217;s Patch Day that address vulnerabilities in various Microsoft products including Microsoft Windows and Microsoft Office. The updates that have been released are already available via Windows Update and the Microsoft Download Center. One of the vulnerabilities has a maximum severity rating of critical, the highest possible. The [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has released new security patches on yesterday&#8217;s Patch Day that address vulnerabilities in various Microsoft products including Microsoft Windows and Microsoft Office. The updates that have been released are already available via Windows Update and the Microsoft Download Center.</p><p>One of the vulnerabilities has a maximum severity rating of critical, the highest possible. The two remaining vulnerabilities are rated as important.</p><p>A critical vulnerability has been discovered in Windows Media that could be exploited for remote code execution. The vulnerability has been rated as critical for all Microsoft client operating systems, from Windows XP to Windows 7. Windows Server 2008 R2 is the only server product affected, the vulnerability received a rating of important here.</p><p><a
href="http://www.ghacks.net/wp-content/uploads/2011/03/march-2011-patch-day-severity.png"><img
src="http://www.ghacks.net/wp-content/uploads/2011/03/march-2011-patch-day-severity-550x309.png" alt="march 2011 patch day severity" title="march 2011 patch day severity" width="550" height="309" class="alignnone size-medium wp-image-42278" /></a></p><p><a
href="http://www.ghacks.net/wp-content/uploads/2011/03/march-2011-patch-day-deployment.png"><img
src="http://www.ghacks.net/wp-content/uploads/2011/03/march-2011-patch-day-deployment-550x309.png" alt="march 2011 patch day deployment" title="march 2011 patch day deployment" width="550" height="309" class="alignnone size-medium wp-image-42279" /></a></p><p>Below are links to each security bulletin. The Bulletins offer information about the affected products, severity rating and non-affected software.</p><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms11-015.mspx">MS11-015</a> &#8211; Vulnerabilities in Windows Media Could Allow Remote Code Execution (2510030) &#8211; This security update resolves one publicly disclosed vulnerability in DirectShow and one privately reported vulnerability in Windows Media Player and Windows Media Center. The more severe of these vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Digital Video Recording (.dvr-ms) file. In all cases, a user cannot be forced to open the file; for an attack to be successful, a user must be convinced to do so.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS11-017.mspx">MS11-017</a> &#8211; Vulnerability in Remote Desktop Client Could Allow Remote Code Execution (2508062) &#8211; This security update resolves a publicly disclosed vulnerability in Windows Remote Desktop Client. The vulnerability could allow remote code execution if a user opens a legitimate Remote Desktop configuration (.rdp) file located in the same network folder as a specially crafted library file. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open a document from this location that is then loaded by a vulnerable application.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS11-016.mspx">MS11-016</a> &#8211; Vulnerability in Microsoft Groove Could Allow Remote Code Execution (2494047) &#8211; This security update resolves a publicly disclosed vulnerability in Microsoft Groove that could allow remote code execution if a user opens a legitimate Groove-related file that is located in the same network directory as a specially crafted library file. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><p>Users can update their Windows operating system and Microsoft Office via <a
href="http://www.ghacks.net/2010/12/20/microsoft-windows-update-overview-all-you-need-to-know/">Windows Update</a>, the <a
href="http://www.microsoft.com/downloads/en/default.aspx?pf=true">Microsoft Download Center</a> or by downloading the <a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=ab55654c-c685-4316-93fc-e3a80cccac71&#038;pf=true">March 2011</a> Security Release ISO image.</p><p>In other news, Microsoft is still working on a fix for the MHTML-related vulnerability that was discovered in January. Additional information are available at the <a
href="http://blogs.technet.com/b/msrc/">Microsoft Security Response Center</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2011/03/09/microsoft-march-2011-patch-day-overview/feed/</wfw:commentRss> <slash:comments>8</slash:comments> </item> <item><title>How To Configure Windows Update</title><link>http://www.ghacks.net/2010/12/27/how-to-configure-windows-update/</link> <comments>http://www.ghacks.net/2010/12/27/how-to-configure-windows-update/#comments</comments> <pubDate>Sun, 26 Dec 2010 23:12:46 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Tutorials Basic]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[control-panel]]></category> <category><![CDATA[update windows]]></category> <category><![CDATA[windows updates]]></category> <category><![CDATA[windows-update]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=38362</guid> <description><![CDATA[I have covered all the basics and then some in our Windows Update overview which I published a few days ago here at Ghacks. What I did not mention in the article in detail were the available configuration settings for Windows Update, and this article exemplifies the available options in the Windows 7 operating system. [...]]]></description> <content:encoded><![CDATA[<p>I have covered all the basics and then some in our <a
href="http://www.ghacks.net/2010/12/20/microsoft-windows-update-overview-all-you-need-to-know/">Windows Update</a> overview which I published a few days ago here at Ghacks. What I did not mention in the article in detail were the available configuration settings for Windows Update, and this article exemplifies the available options in the Windows 7 operating system.</p><p>The easiest way to launch the Windows Update applet is to click on the start orb of the operating system to launch the Control Panel that is linked from there.</p><p>The Windows Update control panel applet is located under System And Security.</p><p><img
src="http://www.ghacks.net/wp-content/uploads/2010/12/windows-update2-550x460.jpg" alt="windows update" title="windows update " width="550" height="460" class="alignnone size-medium wp-image-38364" /></p><p>The first screen displays the updates that are currently available as well as information about the most recent update checks, the last time and day updates were installed and what kind of updates are received. It is here possible to install the updates or get additional information about each update.</p><p>The left sidebar offers several options. This includes a manual check for updates, information about updates that have been previously installed in the operating system and update options. A click on change settings displays the available options to the user.</p><p><img
src="http://www.ghacks.net/wp-content/uploads/2010/12/windows-update1-550x460.jpg" alt="windows update" title="windows update" width="550" height="460" class="alignnone size-medium wp-image-38363" /></p><p>Important Updates details how updates are processed on the system. The recommended setting is to download and install updates automatically on the system. This gives the user no control over the update process. The three additional options are the following:</p><ul><li>Download updates but let me choose whether to install them</li><li>Check for updates but let me choose whether to download and install them</li><li>Never check for updates</li></ul><p>The first two give the user time to check the updates before they are installed on the system.</p><p>But the options offer more than just a setting that determines if and how updates are installed.</p><p>Give me recommended updates the same way I receive important updates adds recommended updates to the updating process. Users who have configured updates to be installed automatically on the system would not only install important updates (usually security and stability updates) but also recommended updates which range from compatibility updates to revised help files and feature additions.</p><p>Recommended updates are otherwise (with the option disabled) displayed as available updates but installed automatically.</p><p>Who can install updates defines if all users of the computer can install updates. Standard users can not install updates if the option is disabled.</p><p>Microsoft Update determines if Windows Update will check for updates for other (installed) Microsoft products and new Microsoft software as well.</p><p>Software notifications finally determines if detailed information are displayed when new Microsoft software is available.</p><p>What are the best Windows Update settings then? I personally prefer to receive update notifications and select updates individually for download and installation. This gives me time to block updates that I do not need before they are installed on the computer. Most Windows users on the other hand may be better of with the automatic installation of updates, especially if they do not have the time or experience to determine if the update is important.</p><p>I keep all remaining options enabled. The who can install options stays enabled because I&#8217;m working on a single user system. If I had to share the PC I would disable it to avoid problems when other users are installing updates that may conflict with software or hardware running on the system.</p><p>How do you handle Windows updates? Do you install them automatically or test / check them before you install them?</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/12/27/how-to-configure-windows-update/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Microsoft Windows Update Overview, All You Need To Know</title><link>http://www.ghacks.net/2010/12/20/microsoft-windows-update-overview-all-you-need-to-know/</link> <comments>http://www.ghacks.net/2010/12/20/microsoft-windows-update-overview-all-you-need-to-know/#comments</comments> <pubDate>Mon, 20 Dec 2010 14:58:41 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Knowledge]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[Microsoft Windows update]]></category> <category><![CDATA[update]]></category> <category><![CDATA[windows update not working]]></category> <category><![CDATA[windows updates]]></category> <category><![CDATA[windows-update]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=38168</guid> <description><![CDATA[Windows Update is a free computer service provided by Microsoft that provides Operating System (OS) patches and service packs to computers running the many versions of Microsoft Windows. These updates are either enhancements or corrections to OS features, or security updates meant to protect your system from malicious attacks and malware. Reliability, security and performance [...]]]></description> <content:encoded><![CDATA[<p>Windows Update is a free computer service provided by Microsoft that provides Operating System (OS) patches and service packs to computers running the many versions of Microsoft Windows. These updates are either enhancements or corrections to OS features, or security updates meant to protect your system from malicious attacks and malware. Reliability, security and performance are the the most important reasons that all computers running MS Windows should use Windows Update. An option called Microsoft Update can be configured in this service to also provide updates for several other Microsoft software applications, such as the MS Office suite or the latest Internet Explorer browser.</p><h2>Windows Update Details</h2><p>Windows Update always downloads these vital updates automatically. But, you can set up the service to install all or some of the updates as they are received, or to let you review the pending updates before you decide on which to install. Windows Update will provide a Windows PC with:</p><ul><li>The most recent security updates for your OS</li><li>OS updates to improve performance and reliability</li><li>Device drivers from both Microsoft and other companies</li></ul><p>Upgrades are different from updates, in that upgrades are new versions of application software, or of the OS itself. Minor version upgrades may be available from Microsoft through Windows Update, but major version upgrades would likely involve a new software purchase, perhaps at a lower upgrade price.</p><p>The <a
href="http://www.microsoft.com/downloads/en/default.aspx">Microsoft Download Center</a> is a website that contains all the elements of the Microsoft software updating, upgrading, and downloading programs that are both necessary and useful for the continuing operation of your Windows operating system.</p><p><img
src="http://www.ghacks.net/wp-content/uploads/2010/12/microsoft-download-center-550x343.jpg" alt="microsoft download center" title="microsoft download center" width="550" height="343" class="alignnone size-medium wp-image-38169" /></p><p> The web site contains sub-sites for:</p><ul><li>Microsoft Windows Update</li><li>Microsoft Download Notifications</li><li>Microsoft Store (for both Windows software and MS Office software)</li><li>Microsoft OS Service Packs</li><li>Microsoft Technologies (focusing on Internet Explorer, DirectX, and Windows 7)</li></ul><h3>Timeline for Windows Updates</h3><p>Patch Tuesday, the second Tuesday of every month, is the day that security updates are globally distributed via Windows Update and the Internet. Emergency security updates, however, may be distributed any time it is deemed necessary because of a newly discovered exploit that targets MS Windows.</p><p>The Internet is the preferred avenue of distribution for Windows Update to PCs, but Microsoft also provides other means for updates to be received by computers with no Internet connection. However, the PC interface controlling receipt of distributions is different for the various versions of Windows:</p><ul><li>Customer access at the MS Windows Update website (Windows 98, Windows XP, Windows ME, Windows 2000)</li><li>Control Panel applet (Windows 7, Windows Vista)</li></ul><p>With any OS before Windows Vista, an update that required a PC reboot would display a dialog box every few minutes which would request that the machine be rebooted. In Windows Vista and Windows 7, the same dialog box allows entry of a time period, up to four hours, before another dialog box appears &#8212; however, some updates that require a reboot may create a displayed countdown, at the end of which the computer will reboot no matter what the current user on the PC is doing, causing possible problems if data is not saved or the user is in the middle of a game.</p><p><em>Tip: It is possible to prevent the forced shutdown manually with the command <strong>shutdown –a</strong> in the Windows command line.</em></p><p>If there is an unexpected PC shutdown in the middle of an update download, Windows Update makes use of a feature of Windows system files called Transactional NTFS to enable the system to recover cleanly and to ensure that partially loaded updates are fully loaded before being applied.</p><h3>Windows Update Levels</h3><p><img
src="http://www.ghacks.net/wp-content/uploads/2010/12/windows-update-550x405.jpg" alt="windows update" title="windows update" width="550" height="405" class="alignnone size-medium wp-image-38170" /></p><p>There are three levels Of Window Updates: Optional, Recommended, and Important.</p><p><strong>Optional Updates</strong>, are, of course, optional, that a user can review, and choose to install or not to install. Included are:</p><ul><li>Offers for new or trial MS Windows software</li><li>Updated device drivers from non-Microsoft companies (a driver may be promoted to Recommended level if your system is missing that driver and needs it, or the new driver has major feature revisions)</li></ul><p><strong>Recommended Updates</strong> are those enhance the computing OS experience, improving performance. Included are:</p><ul><li>Compatibility updates</li><li>Revised contents of Help files</li><li>New features for the Windows OS</li><li>New features for other Microsoft software</li></ul><p><strong>Important updates</strong> are oriented more toward security and reliability. Included are:</p><ul><li>Security and privacy updates</li><li>Significant reliability updates</li><li>Updates for detection of non-genuine Microsoft software</li><li>Verification of copyright-protected media</li></ul><p>Options can be set to download and install automatically both the Important updates (set as a default) and the Recommended updates &#8212; with Windows XP, however, only the updates that are classified High-Priority will be downloaded and installed automatically.</p><h3>Disabling Windows Update</h3><p>If you want to disable Windows Update, you can disable the service for the PC, or by user-name. For an entire PC, the Group Policy Editor is used to disable Windows Update in the general User Configuration.</p><p>For individual users, REGEDIT is used to disable Windows Update in a User Registry key:</p><ul><li>In HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, create a new DWORD key.</li><li>Make the Name of the key NoWindowsUpdate, and set the Value to 1.</li><li>Whenever this user attempts to start Windows Update, an error message will display.</li></ul><h3>Troubleshooting Windows Update Errors</h3><p>Windows Update is an essential maintenance element for the optimum performance of your computer. However, errors can occur during the normal operation of this important service. Here&#8217;s where we describe what measures you can take if Windows Update stops working on your computer system.</p><p><strong>Measure #1: Check Internet Connection</strong></p><p>Windows Update depends a great deal on Internet connectivity. First step is to see if you have full Internet connectivity by connecting to several web sites &#8212; if able to do so, the next step is to check the reliability of the connection, by checking email, signing on to forums, and looking at videos. If connection seems reliable, wait fifteen minutes and try running Windows Update again.</p><p><strong>Measure #2: Start Supporting Services</strong></p><p>Windows Update depends on several other services that also must be running on your PC. Check for these other services by clicking on Start, typing SERVICES.MSC, and pressing ENTER. Check in the display of services at the right for the names:</p><ul><li>Background Intelligent Transfer Service</li><li>Cryptographic Services</li><li>Automatic Updates</li><li>Event Log</li></ul><p>For each one whose Status is not Running, double-click to make the General tab appear &#8212; Startup Type should be Automatic. Click the Start button to change the service to a Running status.</p><p><strong>Measure #3: Check Firewalls</strong></p><p>The next measure to make sure the Windows Firewall is running, and not a firewall from a company other than Microsoft. To ensure continuous firewall protection, turn on the MS Firewall before turning off any other firewall.</p><ul><li>First, enable the Windows firewall by clicking Start&#8230;Run, typing FIREWALL.CPL in the Open box, and pressing ENTER.</li><li>Second, disable any other firewall that may be running on your PC.</li></ul><p>Now, try running Windows Update again.</p><p><strong>Measure #4: Check Anti-Virus</strong></p><p>Start the Security Center applet in the Control Panel, and turn off or disable the anti-virus application listed under either &#8216;Virus Protection&#8217; or &#8216;Malware Protection&#8217; section. Try running Windows Update again, and then immediately go back to the Security Center and enable the anti-virus application that had been disabled. Be careful with this measure &#8212; temporarily turning off your anti-virus application may allow Windows Update to start up, but, at the same time, doing so will leave your PC vulnerable.</p><p><strong>Measure #5: Check Accelerators</strong></p><p>Check to see if your PC has any Internet accelerators installed to increase the performance of Internet access. Such software can interfere with the operation of Windows Update. Consult the documentation for those accelerators to either disable or uninstall the software. Check the operation of Windows Update again.</p><p><strong>Measure #6: Reset the Windows Update Folder</strong></p><p>A corrupt file within the Windows Update distribution folder may be causing a problem with Windows Update. The solution is to reset the folder.</p><ul><li>Open a command prompt with the CMD, making sure the command is being Run as Administrator.</li><li>In the CMD prompt, type WuAuServ and press enter (this action stops the Windows Update service).</li><li>Wait for a response that the Windows Update service was successfully stopped.</li><li>Type %windir% in the OPEN box of the Start Menu, and press Enter.</li><li>Right-click the SoftwareDistribution folder, and select Rename.</li><li>Rename the folder to SoftwareDistributionOLD (saving the original contents so that you can revert to them if needed by renaming to the original name).</li><li>Back in the CMD window, type &#8220;net start WuAuServ&#8221; (without quotes). and press ENTER.</li><li>Use the same steps you used in Measure #2 to check to see if the Windows Update service is running.</li></ul><p>Try to run Windows Update &#8212; if unsuccessful, rename the SoftwareDistributionOLD folder back to its original name of SoftwareDistribution.</p><p><strong>Measure #7: Check System Files</strong></p><p>System files may have become corrupted, and you may need to scan the Windows system files to see if they are still correct and accurate.</p><ul><li>In a CMD box (started up in the same way as described in Measure #6), type &#8220;sfc /scannow&#8221; (without quotes), and press ENTER.</li><li>When the scan is done, close the CMD box, and reboot your PC.</li></ul><p>Try running Windows Update when your PC comes back up.</p><p><strong>Measure #8: Verify BITS Files</strong></p><p>BITS stands for Background Intelligence Transfer Service, and these files are essential to the functioning of Windows Update. It is possible the BITS files on your PC may be corrupted. You can download a BITS repair tool at the MS website:</p><p><a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=2829E460-4045-435B-B165-2C1496CD94A4&amp;displaylang=en">32-bit Windows</a></p><p><a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=C9E36415-E97B-46A6-AB7E-4F89FFF4D8AF&amp;displaylang=en">64-bit Windows</a></p><p>Once you&#8217;ve downloaded and installed the BITS Repair Tool on your PC, reboot and let the tool run.</p><p><strong>Measure #9: Check Support Sites</strong></p><p>Check these two Microsoft support websites for descriptions of problems that may be similar to yours, with possible solutions.</p><p><a
href="http://windows.microsoft.com/en-US/windows/help/windows-update">FAQ</a><br
/> <a
href="http://windows.microsoft.com/en-US/windows7/Troubleshoot-problems-with-installing-updates">Problems</a></p><p>If this last measure does not help you to restore Windows Update to its proper functioning, then contact MS Customer Support.</p><h3>Helpful Windows Update Videos</h3><p><object
width="550" height="437"><param
name="movie" value="http://www.youtube.com/v/SuoGw6HBIS8?fs=1&amp;hl=en_US"></param><param
name="allowFullScreen" value="true"></param><param
name="allowscriptaccess" value="always"></param><embed
src="http://www.youtube.com/v/SuoGw6HBIS8?fs=1&amp;hl=en_US" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="550" height="437"></embed></object></p><p><object
width="550" height="437"><param
name="movie" value="http://www.youtube.com/v/vVMO3DGnzYw?fs=1&amp;hl=en_US"></param><param
name="allowFullScreen" value="true"></param><param
name="allowscriptaccess" value="always"></param><embed
src="http://www.youtube.com/v/vVMO3DGnzYw?fs=1&amp;hl=en_US" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="550" height="437"></embed></object></p><h3>Other Update Tools</h3><p>Windows Update takes care of the specific updates to the Windows operating systems, and those to other Microsoft software applications as well &#8212; but what about all those other software applications that you have installed on your PC that have just a great a need for up-to-date updates? Here are several update tools that will help you take care of the need for updates by your other software applications.</p><p><a
href="http://www.vulnerabilityassessment.co.uk/ctupdate.htm">CTUpdate (WSUS Offline)</a></p><p>Supports all Microsoft operating systems and languages. Users just need to select their operating system and language from the list to download all updates for it. It is optionally possible to create an ISO image or copy the data to an USB device instead of a hard drive. The patches can then be applied once everything has been downloaded.</p><p><img
src="http://www.ghacks.net/wp-content/uploads/2010/12/windows-update-offline-550x459.jpg" alt="windows update offline" title="windows update offline" width="550" height="459" class="alignnone size-medium wp-image-38172" /></p><p><a
href="http://www.windowsupdatesdownloader.com/">Windows Update Downloader</a></p><p>Only for pre-Windows 7 operating systems. WUD allows you to download all of the current Windows Updates using a simple interface. All of the updates are contained in Update Lists (ULs) which allows you to choose which updates you want for which version of Windows.</p><p><a
href="http://client.updatestar.com/en/download/">UpdateStar</a></p><p>Update Star is a freeware application that helps you keep track of all the software installations on your PC, checking that the latest patches, fixes, and updates are downloaded for whatever is installed on your PC. This software does not download anything, though.</p><p><a
href="http://www.software-uptodate.de/cms/">Software-Uptodate</a></p><p>This monitoring tool checks with an online database to see what&#8217;s current for updates for many software packages, and displays a notification when there is an available update (although it does not do the download itself).</p><p><a
href="http://secunia.com/vulnerability_scanning/">Personal Software Inspector</a></p><p>This monitoring software, from Secunia Company, uses a database containing information on over four thousand software applications to inspect your system for weak spots, such as missing critical patches for software installed on your PC. The software, however, does not download anything.</p><h3>Additional Resources</h3><p>See also</p><p><a
href="http://www.ghacks.net/2010/01/24/fixing-windows-update-error-0x80072ee2/">Fixing Windows Update Error 0x80072ee2</a><br
/> <a
href="http://www.ghacks.net/2009/04/13/windows-update-fix/">Windows Update Fix</a><br
/> <a
href="http://www.ghacks.net/2008/03/09/windows-update-error-services-not-running/">Windows Update Error services not running</a></p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/12/20/microsoft-windows-update-overview-all-you-need-to-know/feed/</wfw:commentRss> <slash:comments>35</slash:comments> </item> <item><title>Microsoft Security Bulletins October 2010</title><link>http://www.ghacks.net/2010/10/12/microsoft-security-bulletins-october-2010/</link> <comments>http://www.ghacks.net/2010/10/12/microsoft-security-bulletins-october-2010/#comments</comments> <pubDate>Tue, 12 Oct 2010 20:52:48 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft security bulletin]]></category> <category><![CDATA[patch day]]></category> <category><![CDATA[windows security]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=35831</guid> <description><![CDATA[Every second Tuesday in a month is patch day over at Microsoft. What does it mean? Microsoft pushes out all security patches of a month on that day to all users of their Windows operating systems and other applications like Microsoft Office. Only highly critical vulnerabilities receive out of band security patches. This month&#8217;s patch [...]]]></description> <content:encoded><![CDATA[<p>Every second Tuesday in a month is patch day over at Microsoft. What does it mean? Microsoft pushes out all security patches of a month on that day to all users of their Windows operating systems and other applications like Microsoft Office. Only highly critical vulnerabilities receive out of band security patches.</p><p>This month&#8217;s patch day is huge. While it is not the largest in history, it addresses the impressive amount of 49 vulnerabilities affecting Windows, Internet Explorer, Microsoft Office and the .net framework.</p><blockquote><p>Looking at the number and type of updates this month, we have a fairly standard number of bulletins affecting products like Windows and Office. This month we also have a few bulletins originating from product groups that we don&#8217;t see on a regular basis. For example, SharePoint, the Microsoft Foundation Class (MFC) Library (which is an application framework for programming in Windows), and the .NET Framework. It&#8217;s worth noting that only six of the 49 total vulnerabilities being addressed have a critical rating. Further, three of the bulletins account for 34 of the total vulnerabilities. (<a
href="http://blogs.technet.com/b/msrc/archive/2010/10/11/october-2010-security-bulletin-release.aspx">via</a>)</p></blockquote><p><strong>Deployment Priority</strong></p><p><a
href="http://www.ghacks.net/wp-content/uploads/2010/10/Deployment-Priority1.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/10/Deployment-Priority1-500x281.png" alt="Deployment Priority" title="Deployment Priority" width="500" height="281" class="alignnone size-medium wp-image-35833" /></a></p><p><strong>Severity and Exploitability</strong></p><p><a
href="http://www.ghacks.net/wp-content/uploads/2010/10/Severity-Exploitability.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/10/Severity-Exploitability-500x281.png" alt="Severity Exploitability" title="Severity Exploitability" width="500" height="281" class="alignnone size-medium wp-image-35834" /></a></p><p>Four of the vulnerabilities have a maximum severity rating of critical, 10 of important and the remaining 2 of moderate.</p><ul><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms10-071.mspx">MS10-071</a> &#8211; Cumulative Security Update for Internet Explorer (2360131) &#8211; This security update resolves seven privately reported vulnerabilities and three publicly disclosed vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-075.mspx">MS10-075</a> &#8211; Vulnerability in Media Player Network Sharing Service Could Allow Remote Code Execution (2281679) &#8211; This security update resolves a privately reported vulnerability in the Microsoft Windows Media Player network sharing service. The vulnerability could allow remote code execution if an attacker sent a specially crafted RTSP packet to an affected system. However, Internet access to home media is disabled by default. In this default configuration, the vulnerability can be exploited only by an attacker within the same subnet.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-076.mspx">MS10-076</a> &#8211; Vulnerability in the Embedded OpenType Font Engine Could Allow Remote Code Execution (982132) &#8211; This security update resolves a privately reported vulnerability in a Microsoft Windows component, the Embedded OpenType (EOT) Font Engine. The vulnerability could allow remote code execution. An attacker who successfully exploited this vulnerability could take complete control of an affected system remotely. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-077.mspx">MS10-077</a> &#8211; Vulnerability in .NET Framework Could Allow Remote Code Execution (2160841) &#8211; This security update resolves a privately reported vulnerability in Microsoft .NET Framework. The vulnerability could allow remote code execution on a client system if a user views a specially crafted Web page using a Web browser that can run XAML Browser Applications (XBAPs). Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. The vulnerability could also allow remote code execution on a server system running IIS, if that server allows processing ASP.NET pages and an attacker succeeds in uploading a specially crafted ASP.NET page to that server and then executes the page, as could be the case in a Web hosting scenario.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms10-072.mspx">MS10-072</a> &#8211; Vulnerabilities in SafeHTML Could Allow Information Disclosure (2412048) &#8211; This security update resolves one publicly disclosed vulnerability and one privately reported vulnerability in Microsoft SharePoint and Windows SharePoint Services. The vulnerabilities could allow information disclosure if an attacker submits specially crafted script to a target site using SafeHTML.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-073.mspx">MS10-073</a> &#8211; Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege (981957) &#8211; This security update resolves several publicly disclosed vulnerabilities in the Windows kernel-mode drivers. The most severe of these vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application.<p>An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability. The vulnerability could not be exploited remotely or by anonymous users.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-078.mspx">MS10-078</a> &#8211; Vulnerabilities in the OpenType Font (OTF) Format Driver Could Allow Elevation of Privilege (2279986) &#8211; This security update resolves two privately reported vulnerabilities in the Windows OpenType Font (OTF) format driver. This security update is rated Important for all supported editions of Windows XP and Windows Server 2003. All supported editions of Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 are not affected by the vulnerability.<p>The vulnerabilities could allow elevation of privilege if a user views content rendered in a specially crafted OpenType font. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability. The vulnerability could not be exploited remotely or by anonymous users.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-079.mspx">MS10-079</a> &#8211; Vulnerabilities in Microsoft Word Could Allow Remote Code Execution (2293194) &#8211; This security update resolves eleven privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms10-080.mspx">MS10-080</a> &#8211; Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2293211) &#8211; This security update resolves thirteen privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file or a specially crafted Lotus 1-2-3 file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-081.mspx">MS10-081</a> &#8211; Vulnerability in Windows Common Control Library Could Allow Remote Code Execution (2296011) &#8211; This security update resolves a privately reported vulnerability in the Windows common control library. The vulnerability could allow remote code execution if a user visited a specially crafted Web page. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-082.mspx">MS10-082</a> &#8211; Vulnerability in Windows Media Player Could Allow Remote Code Execution (2378111) &#8211; This security update resolves a privately reported vulnerability in Windows Media Player. The vulnerability could allow remote code execution if Windows Media Player opened specially crafted media content hosted on a malicious Web site. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms10-083.mspx">MS10-083</a> &#8211; Vulnerability in COM Validation in Windows Shell and WordPad Could Allow Remote Code Execution (2405882) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a specially crafted file using WordPad or selects or opens a shortcut file that is on a network or WebDAV share. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-084.mspx">MS10-084</a> &#8211; Vulnerability in Windows Local Procedure Call Could Cause Elevation of Privilege (2360937) &#8211; This security update resolves a publicly disclosed vulnerability in Microsoft Windows. This security update is rated Important for all supported editions of Windows XP and Windows Server 2003. All supported editions of Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 are not affected by the vulnerability.<p>The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs specially crafted code that sends an LPC message to the local LRPC Server. The message could then allow an authenticated user to access resources that are running in the context of the NetworkService account. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-085.mspx">MS10-085</a> &#8211; Vulnerability in SChannel Could Allow Denial of Service (2207566) &#8211; This security update resolves a privately reported vulnerability in the Secure Channel (SChannel) security package in Windows. The vulnerability could allow denial of service if an affected Internet Information Services (IIS) server hosting a Secure Sockets Layer (SSL)-enabled Web site received a specially crafted packet message. By default, IIS is not configured to host SSL Web sites.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-074.mspx">MS10-074</a> &#8211; Vulnerability in Microsoft Foundation Classes Could Allow Remote Code Execution (2387149) &#8211; This security update resolves a publicly disclosed vulnerability in the Microsoft Foundation Class (MFC) Library. The vulnerability could allow remote code execution if a user is logged on with administrative user rights and opens an application built with the MFC Library. An attacker who successfully exploited this vulnerability could obtain the same permissions as the currently logged-on user. If a user is logged on with administrative user rights, an attacker could take complete control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-086.mspx">MS10-086</a> &#8211; Vulnerability in Windows Shared Cluster Disks Could Allow Tampering (2294255) &#8211; This security update resolves a privately reported vulnerability in Windows Server 2008 R2 when used as a shared failover cluster. The vulnerability could allow data tampering on the administrative shares of failover cluster disks. By default, Windows Server 2008 R2 servers are not affected by this vulnerability. This vulnerability only applies to the cluster disks used in a failover cluster.</li></ul><p>The patches are as usual available via Windows Update and <a
href="http://www.microsoft.com/downloads/en/resultsForCategory.aspx?nr=50&#038;sortOrder=Descending&#038;sortCriteria=Date&#038;period=30&#038;stype=ss_nd&#038;sterm=All+Categories">Microsoft Download</a>. Microsoft has furthermore <a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=07c7c176-a801-4868-8f53-c8b1aebb2b11">released</a> the October 2010 Security Release ISO Image containing all references security patches and Knowledgebase articles.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/10/12/microsoft-security-bulletins-october-2010/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Microsoft Releases September Security Patches</title><link>http://www.ghacks.net/2010/09/14/microsoft-releases-september-security-patches/</link> <comments>http://www.ghacks.net/2010/09/14/microsoft-releases-september-security-patches/#comments</comments> <pubDate>Tue, 14 Sep 2010 20:44:46 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[security bulletin]]></category> <category><![CDATA[security patches]]></category> <category><![CDATA[windows security]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=34436</guid> <description><![CDATA[Microsoft has released this month&#8217;s security patches for their operating systems and applications. The patches and updates are already available via Windows Update and Microsoft Download, and it is recommended to update the operating system as soon as possible to protect it from exploits targeting those vulnerabilities. A total of nine bulletins has been released [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has released this month&#8217;s security patches for their operating systems and applications. The patches and updates are already available via Windows Update and Microsoft Download, and it is recommended to update the operating system as soon as possible to protect it from exploits targeting those vulnerabilities.</p><p>A total of nine bulletins has been released by Microsoft of which four have received a maximum vulnerability impact rating of critical, the highest possible rating. As usual, not all operating systems and applications are affected with the same severity. Microsoft&#8217;s latest desktop operating system Windows 7 for instance is either not affected by the critical vulnerabilities, or with a lower severity of important.</p><div
id="attachment_34437" class="wp-caption alignnone" style="width: 510px"><a
href="http://www.ghacks.net/wp-content/uploads/2010/09/windows-updates.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/09/windows-updates-500x241.png" alt="windows updates" title="windows updates" width="500" height="241" class="size-medium wp-image-34437" /></a><p
class="wp-caption-text">windows updates</p></div><p>Below are the vulnerability summaries for all nine bulletins that have been released by Microsoft in September 2010:</p><ul><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms10-061.mspx">MS10-061</a> &#8211; Vulnerability in Print Spooler Service Could Allow Remote Code Execution (2347290) &#8211; This security update resolves a publicly disclosed vulnerability in the Print Spooler service. The vulnerability could allow remote code execution if an attacker sends a specially crafted print request to a vulnerable system that has a print spooler interface exposed over RPC. By default, printers are not shared on any currently supported Windows operating system.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-062.mspx">MS10-062</a> &#8211; Vulnerability in MPEG-4 Codec Could Allow Remote Code Execution (975558) &#8211; This security update resolves a privately reported vulnerability in MPEG-4 codec. The vulnerability could allow remote code execution if a user opens a specially crafted media file or receives specially crafted streaming content from a Web site or any application that delivers Web content. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-063.mspx">MS10-063</a> &#8211; Vulnerability in Unicode Scripts Processor Could Allow Remote Code Execution (2320113) &#8211; This security update resolves a privately reported vulnerability in the Unicode Scripts Processor. The vulnerability could allow remote code execution if a user viewed a specially crafted document or Web page with an application that supports embedded OpenType fonts. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms10-064.mspx">MS10-064</a> &#8211; Vulnerability in Microsoft Outlook Could Allow Remote Code Execution (2315011) &#8211; This security update resolves a privately reported vulnerability. The vulnerability could allow remote code execution if a user opened or previewed a specially crafted e-mail message using an affected version of Microsoft Outlook that is connected to an Exchange server with Online Mode. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-065.mspx">MS10-065</a> &#8211; Vulnerabilities in Microsoft Internet Information Services (IIS) Could Allow Remote Code Execution (2267960) &#8211; This security update resolves two privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Information Services (IIS). The most severe of these vulnerabilities could allow remote code execution if a client sends a specially crafted HTTP request to the server. An attacker who successfully exploited this vulnerability could take complete control of an affected system.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms10-066.mspx">MS10-066</a> &#8211; Vulnerability in Remote Procedure Call Could Allow Remote Code Execution (982802) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. This security update is rated Important for all supported editions of Windows XP and Windows Server 2003. All supported editions of Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 are not affected by the vulnerability.<p>The vulnerability could allow remote code execution if an attacker sent a specially crafted RPC response to a client-initiated RPC request. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control of an affected system. An attacker must convince the user to initiate an RPC connection to a malicious server under the attacker&#8217;s control. An attacker could not remotely exploit this vulnerability without user interaction.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-067.mspx">MS10-067</a> &#8211; Vulnerability in WordPad Text Converters Could Allow Remote Code Execution (2259922) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. This security update is rated Important for all supported editions of Windows XP and Windows Server 2003. All supported editions of Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 are not affected by the vulnerability.<p>The vulnerability could allow remote code execution if a user opened a specially crafted file using WordPad. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li> <a
href="http://www.microsoft.com/technet/security/bulletin/MS10-068.mspx">MS10-068</a> &#8211; Vulnerability in Local Security Authority Subsystem Service Could Allow Elevation of Privilege (983539) &#8211; This security update resolves a privately reported vulnerability in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS). The vulnerability could allow elevation of privilege if an authenticated attacker sent specially crafted Lightweight Directory Access Protocol (LDAP) messages to a listening LSASS server. In order to successfully exploit this vulnerability, an attacker must have a member account within the target Windows domain. However, the attacker does not need to have a workstation joined to the Windows domain.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-069.mspx">MS10-069</a> &#8211; Vulnerability in Windows Client/Server Runtime Subsystem Could Allow Elevation of Privilege (2121546) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. This security update is rated Important for all supported editions of Windows XP and Windows Server 2003. All supported editions of Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 are not affected by the vulnerability.<p>The vulnerability could allow elevation of privilege if an attacker logged on to an affected system that is configured with a Chinese, Japanese, or Korean system locale. An attacker who successfully exploited this vulnerability could then install programs; view, change, or delete data; or create new accounts with full user rights.</li></ul><p>Microsoft&#8217;s <a
href="http://blogs.technet.com/b/msrc/archive/2010/09/13/september-2010-security-bulletin-release.aspx">Jerry Bryant</a> has posted graphs for the deployment priority and severity exportability index in a blog post.</p><div
id="attachment_34438" class="wp-caption alignnone" style="width: 510px"><a
href="http://www.ghacks.net/wp-content/uploads/2010/09/severity-explotability-index.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/09/severity-explotability-index-500x281.png" alt="severity explotability index" title="severity explotability index" width="500" height="281" class="size-medium wp-image-34438" /></a><p
class="wp-caption-text">severity exportability index</p></div><div
id="attachment_34439" class="wp-caption alignnone" style="width: 510px"><a
href="http://www.ghacks.net/wp-content/uploads/2010/09/deployment-priority.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/09/deployment-priority-500x281.png" alt="deployment priority" title="deployment priority" width="500" height="281" class="size-medium wp-image-34439" /></a><p
class="wp-caption-text">deployment priority</p></div><p>Happy patching everyone.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/09/14/microsoft-releases-september-security-patches/feed/</wfw:commentRss> <slash:comments>6</slash:comments> </item> <item><title>Microsoft Security Updates July 2010</title><link>http://www.ghacks.net/2010/07/13/microsoft-security-updates-july-2010/</link> <comments>http://www.ghacks.net/2010/07/13/microsoft-security-updates-july-2010/#comments</comments> <pubDate>Tue, 13 Jul 2010 21:11:40 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft security]]></category> <category><![CDATA[microsoft security bulletin]]></category> <category><![CDATA[office updates]]></category> <category><![CDATA[security updates]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=28217</guid> <description><![CDATA[Microsoft has just released four security bulletins on this months&#8217; Patch Tuesday fixing vulnerabilities in Microsoft software products. Three of the four bulletins have a maximum severity rating of critical, the highest rated, while one is rated as important. Affected software includes several Microsoft operating systems and Microsoft Office, take a look at the listing [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has just released four security bulletins on this months&#8217; Patch Tuesday fixing vulnerabilities in Microsoft software products. Three of the four bulletins have a maximum severity rating of critical, the highest rated, while one is rated as important.</p><p>Affected software includes several Microsoft operating systems and Microsoft Office, take a look at the listing below for additional details on every security bulletin released today.</p><p><span
id="more-28217"></span><ul><li>Microsoft Security Bulletin <a
href="http://www.microsoft.com/technet/security/bulletin/ms10-042.mspx">MS10-042</a> &#8211; Critical<br
/> Vulnerability in Help and Support Center Could Allow Remote Code Execution (2229593) &#8211; This security update resolves a publicly disclosed vulnerability in the Windows Help and Support Center feature that is delivered with supported editions of Windows XP and Windows Server 2003. This vulnerability could allow remote code execution if a user views a specially crafted Web page using a Web browser or clicks a specially crafted link in an e-mail message. The vulnerability cannot be exploited automatically through e-mail. For an attack to be successful, a user must click a link listed within an e-mail message.</li><li>Microsoft Security Bulletin <a
href="http://www.microsoft.com/technet/security/bulletin/ms10-043.mspx">MS10-043</a> &#8211; Critical<br
/> Vulnerability in Canonical Display Driver Could Allow Remote Code Execution (2032276) &#8211; This security update resolves a publicly disclosed vulnerability in the Canonical Display Driver (cdd.dll). Although it is possible that the vulnerability could allow code execution, successful code execution is unlikely due to memory randomization. In most scenarios, it is much more likely that an attacker who successfully exploited this vulnerability could cause the affected system to stop responding and automatically restart.</li><li>Microsoft Security Bulletin <a
href="http://www.microsoft.com/technet/security/bulletin/ms10-044.mspx">MS10-044</a> &#8211; Critical<br
/> Vulnerabilities in Microsoft Office Access ActiveX Controls Could Allow Remote Code Execution &#8211; This security update resolves two privately reported vulnerabilities in Microsoft Office Access ActiveX Controls. The vulnerabilities could allow remote code execution if a user opened a specially crafted Office file or viewed a Web page that instantiated Access ActiveX controls. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li>Microsoft Security Bulletin <a
href="http://www.microsoft.com/technet/security/bulletin/ms10-045.mspx">MS10-045</a> &#8211; Important<br
/> Vulnerability in Microsoft Office Outlook Could Allow Remote Code Execution (978212) &#8211; This security update resolves a privately reported vulnerability. The vulnerability could allow remote code execution if a user opened an attachment in a specially crafted e-mail message using an affected version of Microsoft Office Outlook. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights</li></ul><div
id="attachment_28218" class="wp-caption alignnone" style="width: 510px"><a
href="http://www.ghacks.net/wp-content/uploads/2010/07/microsoft-security-updates.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/07/microsoft-security-updates-500x281.png" alt="microsoft security updates" title="microsoft security updates" width="500" height="281" class="size-medium wp-image-28218" /></a><p
class="wp-caption-text">microsoft security updates</p></div><div
id="attachment_28219" class="wp-caption alignnone" style="width: 510px"><a
href="http://www.ghacks.net/wp-content/uploads/2010/07/microsoft-patch-day.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/07/microsoft-patch-day-500x281.png" alt="microsoft patch day" title="microsoft patch day" width="500" height="281" class="size-medium wp-image-28219" /></a><p
class="wp-caption-text">microsoft patch day deployment priority</p></div><h3>Affected software:</h3><ul><li>MS10-042 &#8211; Windows XP, Windows XP Pro 64-bit, Windows Server 2003, Windows Server 2003 64-bit</li><li>MS10-043 &#8211; Windows 7 for x64-based Systems, Windows Server 2008 R2 for x64-based Systems</li><li>MS10-044 &#8211; Microsoft Office 2003 , Microsoft Office 2007</li><li>MS10-045 &#8211; Microsoft Office XP, Microsoft Office 2003,  Microsoft Office 2007</li></ul><p>All vulnerabilities allow remote code execution on compromised systems. Additional information about this months&#8217; patches are <a
href="http://blogs.technet.com/b/msrc/archive/2010/07/13/july-2010-security-bulletin-release.aspx">available</a> at the Technet blog post.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/07/13/microsoft-security-updates-july-2010/feed/</wfw:commentRss> <slash:comments>6</slash:comments> </item> <item><title>Microsoft Security Updates April 2010</title><link>http://www.ghacks.net/2010/04/13/microsoft-security-updates-april-2010/</link> <comments>http://www.ghacks.net/2010/04/13/microsoft-security-updates-april-2010/#comments</comments> <pubDate>Tue, 13 Apr 2010 17:24:03 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Microsoft]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft patchday]]></category> <category><![CDATA[microsoft patches]]></category> <category><![CDATA[security bulletins]]></category> <category><![CDATA[security patches]]></category> <category><![CDATA[windows updates]]></category> <category><![CDATA[windows-update]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=24511</guid> <description><![CDATA[Microsoft has just added the security updates for April 2010 to Windows Update from where every Windows user can download and install them on their operating system. A total of eleven security bulletins have been released that update the Windows operating system as well as other Microsoft software like Microsoft Office. The updates fix security [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has just added the security updates for April 2010 to Windows Update from where every Windows user can download and install them on their operating system.</p><p>A total of eleven security bulletins have been released that update the Windows operating system as well as other Microsoft software like Microsoft Office.</p><p>The updates fix security vulnerabilities in Microsoft applications and it is generally recommended to update the operating systems and applications as soon as possible to close the security holes and protect the systems from malicious attacks exploiting these vulnerabilities.</p><p>Five of the vulnerabilities have received a critical rating, the highest and most severe rating that vulnerabilities can get.</p><p><span
id="more-24511"></span><a
href="http://www.ghacks.net/wp-content/uploads/2010/04/April2010WindowsBulletins.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/04/April2010WindowsBulletins-500x281.png" alt="April2010WindowsBulletins" title="April2010WindowsBulletins" width="500" height="281" class="alignnone size-medium wp-image-24513" /></a><a
href="http://www.ghacks.net/wp-content/uploads/2010/04/April2010RiskImpact.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/04/April2010RiskImpact-500x281.png" alt="April2010RiskImpact" title="April2010RiskImpact" width="500" height="281" class="alignnone size-medium wp-image-24514" /></a><a
href="http://www.ghacks.net/wp-content/uploads/2010/04/April2010DeploymentPriority.png"><img
src="http://www.ghacks.net/wp-content/uploads/2010/04/April2010DeploymentPriority-500x281.png" alt="April2010DeploymentPriority" title="April2010DeploymentPriority" width="500" height="281" class="alignnone size-medium wp-image-24515" /></a></p><ul><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS10-019.mspx">MS10-019</a> &#8211; Vulnerabilities in Windows Could Allow Remote Code Execution (981210) &#8211; This security update resolves two privately reported vulnerabilities in Windows Authenticode Verification that could allow remote code execution. An attacker who successfully exploited either vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS10-020.mspx">MS10-020</a> &#8211; Vulnerabilities in SMB Client Could Allow Remote Code Execution (980232) &#8211; This security update resolves one publicly disclosed and several privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow remote code execution if an attacker sent a specially crafted SMB response to a client-initiated SMB request. To exploit these vulnerabilities, an attacker must convince the user to initiate an SMB connection to a specially crafted SMB server.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS10-025.mspx">MS10-025</a> &#8211; Vulnerability in Microsoft Windows Media Services Could Allow Remote Code Execution (980858) &#8211; This security update resolves a privately reported vulnerability in Windows Media Services running on Microsoft Windows 2000 Server. The vulnerability could allow remote code execution if an attacker sent a specially crafted transport information packet to a Microsoft Windows 2000 Server system running Windows Media Services. Firewall best practices and standard default firewall configurations can help protect networks from attacks that originate from outside the enterprise perimeter. Best practices recommend that systems that are connected to the Internet have a minimal number of ports exposed. On Microsoft Windows 2000 Server, Windows Media Services is an optional component and is not installed by default.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS10-026.mspx">MS10-026</a> &#8211; Vulnerability in Microsoft MPEG Layer-3 Codecs Could Allow Remote Code Execution (977816) &#8211;<br
/> This security update resolves a privately reported vulnerability in Microsoft MPEG Layer-3 audio codecs. The vulnerability could allow remote code execution if a user opened a specially crafted AVI file containing an MPEG Layer-3 audio stream. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS10-027.mspx">MS10-027</a> &#8211; Vulnerability in Windows Media Player Could Allow Remote Code Execution (979402) &#8211; This security update resolves a privately reported vulnerability in Windows Media Player. The vulnerability could allow remote code execution if Windows Media Player opened specially crafted media content hosted on a malicious Web site. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS10-021.mspx">MS10-021</a> &#8211; Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (979683) &#8211; This security update resolves several privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow elevation of privilege if an attacker logged on locally and ran a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit these vulnerabilities. The vulnerabilities could not be exploited remotely or by anonymous users.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-022.mspx">MS10-022</a> &#8211; Vulnerability in VBScript Could Allow Remote Code Execution (981169) &#8211; This security update resolves a publicly disclosed vulnerability in VBScript on Microsoft Windows that could allow remote code execution. This security update is rated Important for Microsoft Windows 2000, Windows XP, and Windows Server 2003. On Windows Server 2008, Windows Vista, Windows 7, and Windows Server 2008 R2, the vulnerable code is not exploitable, however, as the code is present, this update is provided as a defense-in-depth measure and has no severity rating.<p>The vulnerability could allow remote code execution if a malicious Web site displayed a specially crafted dialog box on a Web page and a user pressed the F1 key, causing the Windows Help System to be started with a Windows Help File provided by the attacker. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms10-023.mspx">MS10-023</a> &#8211; Vulnerability in Microsoft Office Publisher Could Allow Remote Code Execution (981160)  &#8211; This security update resolves a privately reported vulnerability in Microsoft Office Publisher that could allow remote code execution if a user opens a specially crafted Publisher file. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS10-024.mspx">MS10-024</a> &#8211; Vulnerabilities in Microsoft Exchange and Windows SMTP Service Could Allow Denial of Service (981832) &#8211; This security update resolves one publicly disclosed vulnerability and one privately reported vulnerability in Microsoft Exchange and Windows SMTP Service. The more severe of these vulnerabilities could allow denial of service if an attacker sent a specially crafted DNS response to a computer running the SMTP service. By default, the SMTP component is not installed on Windows Server 2003, Windows Server 2003 x64 Edition, or Windows XP Professional x64 Edition.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-028.mspx">MS10-028</a> &#8211; Vulnerabilities in Microsoft Visio Could Allow Remote Code Execution (980094) &#8211; This security update resolves two privately reported vulnerabilities in Microsoft Office Visio. The vulnerabilities could allow remote code execution if a user opens a specially crafted Visio file. An attacker who successfully exploited these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS10-029.mspx">MS10-029</a> &#8211; Vulnerabilities in Windows ISATAP Component Could Allow Spoofing (978338) &#8211; This security update resolves one privately reported vulnerability in Microsoft Windows. This security update is rated Moderate for Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008. Windows 7 and Windows Server 2008 R2 are not vulnerable because these operating systems include the feature deployed by this security update.<p>This vulnerability could allow an attacker to spoof an IPv4 address so that it may bypass filtering devices that rely on the source IPv4 address. The security update addresses the vulnerability by changing the manner in which the Windows TCP/IP stack checks the source IPv6 address in a tunneled ISATAP packet.</li></ul><p>The security updates can be downloaded by following the links listed above or by launching Windows Update or Microsoft Update to download and install them automatically on the computer system.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/04/13/microsoft-security-updates-april-2010/feed/</wfw:commentRss> <slash:comments>18</slash:comments> </item> <item><title>New Updates For Windows 7 And Windows Server 2008 R2 Released</title><link>http://www.ghacks.net/2010/01/27/new-updates-for-windows-7-and-windows-server-2008-r2-released/</link> <comments>http://www.ghacks.net/2010/01/27/new-updates-for-windows-7-and-windows-server-2008-r2-released/#comments</comments> <pubDate>Wed, 27 Jan 2010 09:20:24 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft updates]]></category> <category><![CDATA[operating system]]></category> <category><![CDATA[windows 7]]></category> <category><![CDATA[windows 7 updates]]></category> <category><![CDATA[windows server 2008 r2]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=22611</guid> <description><![CDATA[Most Windows users know that Microsoft releases security updates once per month on the so called patch day. Only critical security updates are offered when it is necessary which just happened recently when Microsoft released a patch for the Internet Explorer vulnerability that was uncovered earlier. Non-security related patches are released more commonly and users [...]]]></description> <content:encoded><![CDATA[<p>Most Windows users know that Microsoft releases security updates once per month on the so called patch day. Only critical security updates are offered when it is necessary which just happened recently when Microsoft released a patch for the Internet Explorer vulnerability that was uncovered earlier.</p><p>Non-security related patches are released more commonly and users with automatic updates enabled will usually get little to no notice about these updates. Users without automatic updates on the other hand might not even know that new updates have been released as the Oracle over at Lockergnome points out.</p><p><span
id="more-22611"></span>Microsoft has apparently released an update for Windows 7 and Windows Server 2008 R2 on Monday night that they call a reliability update. The patch fixes the following issues that are related to Microsoft Customer Support Services and the Error Reporting Service:</p><ul><li>Keyboard function keys or keyboard shortcuts, such as mute or calculator, may not work correctly</li><li>The notification icon for an application may be moved or lost when the executable application is update</li><li>On a computer that is running Windows 7, you configure the Screen Saver Settings to display the logon screen on resume. Additionally, you configure the computer to go to sleep. However, the computer may not go to sleep after the screen saver starts. Instead, a black screen is displayed. This problem causes the operating system to stop responding. You must restart the computer by holding down the power button.</li></ul><p>Links To Update on Microsoft website.</p><p><a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=19e12856-4808-4fbf-b5c9-2dac4bbb48b6&amp;displaylang=en">Windows 7 32-bit</a><br
/> <a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=86b3ede2-84ef-44a0-8084-d65af65482be&amp;displaylang=en">Windows 7 64-bit</a><br
/> <a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=650773a7-22a6-4577-9f33-c1f54c6f497c&amp;displaylang=en">Windows Server 2008 R2</a></p><p>Microsoft has also released the following updates:</p><p>You may encounter problems when you move data over USB from a Windows 7-based or Windows Server 2008 R2-based computer that has an NVIDIA USB EHCI chipset and at least 4GB of RAM.</p><p>Links To Update on Microsoft website.</p><p><a
href="http://www.microsoft.com/downloads/en/details.aspx?displaylang=en&amp;FamilyID=070a27e4-17f9-4e61-ad34-25278b325e28">Windows 7 64-bit and Windows Server 2008 R2</a></p><p><a
href="http://www.microsoft.com/downloads/en/details.aspx?displaylang=en&amp;FamilyID=964205da-1ebf-465e-aa67-1af46f766ed9">Windows 32-bit</a></p><p>System Update Readiness Tool for Windows 7 &#8211; This tool is being offered because an inconsistency was found in the Windows servicing store which may prevent the successful installation of future updates, service packs, and software.</p><p>Links To Update on Microsoft website.</p><p><a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=44e15787-66b0-4e9c-9c3b-1fc9ea40f69f&amp;displaylang=en">Windows 7 32-bit</a><br
/> <a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=914fbc5b-1fba-4bae-a7c3-d2c47c6fcffc&amp;displaylang=en">Windows 7 64-bit</a><br
/> <a
href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=c4b0f52c-d0e4-4c18-aa4b-93a477456336&amp;displaylang=en">Windows Server 2008 R2</a></p><p>Update for Windows 7 (KB974674) &#8211; Utility for restoring backups made on Windows XP and Windows Server 2003 to computers that are running Windows 7 and Microsoft Windows Server 2008 R2.</p><p>Links To Update on Microsoft website.</p><p><a
href="http://www.microsoft.com/downloads/en/details.aspx?displaylang=en&amp;FamilyID=a71845fd-4496-439c-ab31-be73498ad3fe">Windows 7 32-bit</a><br
/> <a
href="http://www.microsoft.com/downloads/en/details.aspx?displaylang=en&amp;FamilyID=d9a3d988-bd82-41ca-acf4-39dea08ff7ab">Windows 7 64-bit</a><br
/> <a
href="http://www.microsoft.com/downloads/en/details.aspx?displaylang=en&amp;FamilyID=60480f87-39df-410a-92e1-f2cbc8442fdc">Windows Server 2008 R2</a></p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/01/27/new-updates-for-windows-7-and-windows-server-2008-r2-released/feed/</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>Microsoft Security Updates December 2009</title><link>http://www.ghacks.net/2009/12/09/microsoft-security-updates-december-2009/</link> <comments>http://www.ghacks.net/2009/12/09/microsoft-security-updates-december-2009/#comments</comments> <pubDate>Wed, 09 Dec 2009 09:58:35 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft security]]></category> <category><![CDATA[microsoft updates]]></category> <category><![CDATA[patch tuesday]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=21203</guid> <description><![CDATA[Microsoft has released a new batch of security updates on this month&#8217;s Patch Tuesday which patch various security vulnerabilities in Microsoft software products. The vulnerabilities are affecting several popular Microsoft products including various Windows operating systems, Microsoft Internet Explorer and Microsoft Office. Three of the vulnerabilities have a maximum severity rating of critical while the [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has released a new batch of security updates on this month&#8217;s Patch Tuesday which patch various security vulnerabilities in Microsoft software products. The vulnerabilities are affecting several popular Microsoft products including various Windows operating systems, Microsoft Internet Explorer and Microsoft Office.</p><p>Three of the vulnerabilities have a maximum severity rating of critical while the other three are rated as important. The vulnerability impact is either a remote code execution or denial of service attack. It is recommended to patch computer systems and programs that are affected by these vulnerabilities as soon as possible to prevent attacks that are making use of these vulnerabilities.</p><p><span
id="more-21203"></span><ul><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS09-071.mspx">MS09-071</a> &#8211; Vulnerabilities in Internet Authentication Service Could Allow Remote Code Execution (974318) &#8211; This security update resolves two privately reported vulnerabilities in Microsoft Windows. These vulnerabilities could allow remote code execution if messages received by the Internet Authentication Service server are copied incorrectly into memory when handling PEAP authentication attempts. An attacker who successfully exploited either of these vulnerabilities could take complete control of an affected system. Servers using Internet Authentication Service are only affected when using PEAP with MS-CHAP v2 authentication.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-074.mspx">MS09-074</a> &#8211; Vulnerability in Microsoft Office Project Could Allow Remote Code Execution (967183) &#8211; This security update resolves a privately reported vulnerability in Microsoft Office Project. The vulnerability could allow remote code execution if a user opens a specially crafted Project file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-072.mspx">MS09-072</a> &#8211; Cumulative Security Update for Internet Explorer (976325) &#8211; This security update resolves four privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. An ActiveX control built with Microsoft Active Template Library (ATL) headers could also allow remote code execution; this vulnerability has been described in Microsoft Security Advisory 973882 and Microsoft Security Bulletin MS09-035.</li><li><a
href="http://www.microsoft.com/technet/security/Bulletin/MS09-069.mspx">MS09-069</a> &#8211; Vulnerability in Local Security Authority Subsystem Service Could Allow Denial of Service (974392) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow a denial of service if a remote, authenticated attacker, while communicating through Internet Protocol security (IPsec), sends a specially crafted ISAKMP message to the Local Security Authority Subsystem Service (LSASS) on an affected system.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS09-070.mspx">MS09-070</a> &#8211; Vulnerabilities in Active Directory Federation Services Could Allow Remote Code Execution (971726) &#8211; This security update resolves two privately reported vulnerabilities in Microsoft Windows. The more severe of these vulnerabilities could allow remote code execution if an attacker sent a specially crafted HTTP request to an ADFS-enabled Web server. An attacker would need to be an authenticated user in order to exploit either of these vulnerabilities.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS09-073.mspx">MS09-073</a> &#8211; Vulnerability in WordPad and Office Text Converters Could Allow Remote Code Execution (975539) &#8211; This security update resolves a privately reported vulnerability in Microsoft WordPad and Microsoft Office text converters. The vulnerability could allow remote code execution if a specially crafted Word 97 file is opened in WordPad or Microsoft Office Word. An attacker who successfully exploited this vulnerability could gain the same privileges as the user. Users whose accounts are configured to have fewer privileges on the system could be less impacted than users who operate with administrative privileges.</li></ul><p>Patches can be downloaded from the usual sources including Automatic Update, Windows Update, Microsoft Update or by following the links of individual vulnerabilities above.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/12/09/microsoft-security-updates-december-2009/feed/</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>Microsoft Security Updates October 2009 Online</title><link>http://www.ghacks.net/2009/10/13/microsoft-security-updates-october-2009-online/</link> <comments>http://www.ghacks.net/2009/10/13/microsoft-security-updates-october-2009-online/#comments</comments> <pubDate>Tue, 13 Oct 2009 17:29:40 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Microsoft]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft]]></category> <category><![CDATA[microsoft updates]]></category> <category><![CDATA[security updates]]></category> <category><![CDATA[windows patches]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=17232</guid> <description><![CDATA[Microsoft has published all security patches for today&#8217;s Patch Day a few minutes ago. The patches are available via Windows Update, Microsoft Update and the individual security bulletins that describe the nature of each security patch in detail. Windows users are encouraged to update their operating system and software programs as soon as possible to [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has published all security patches for today&#8217;s Patch Day a few minutes ago. The patches are available via Windows Update, Microsoft Update and the individual security bulletins that describe the nature of each security patch in detail. Windows users are encouraged to update their operating system and software programs as soon as possible to block attacks from malicious software that could exploit the security vulnerabilities.</p><p>Microsoft has released the following security patches (with a link pointing to the security bulletin containing additional information, deployment guidelines and download opportunities):</p><p><span
id="more-17232"></span><ul><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-050.mspx">MS09-050</a> Vulnerabilities in SMBv2 Could Allow Remote Code Execution (975517) (Critical) &#8211; This security update resolves one publicly disclosed and two privately reported vulnerabilities in Server Message Block Version 2 (SMBv2). The most severe of the vulnerabilities could allow remote code execution if an attacker sent a specially crafted SMB packet to a computer running the Server service. Firewall best practices and standard default firewall configurations can help protect networks from attacks that originate from outside the enterprise perimeter. Best practices recommend that systems that are connected to the Internet have a minimal number of ports exposed.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-051.mspx">MS09-051</a> Vulnerabilities in Windows Media Runtime Could Allow Remote Code Execution (975682) (Critical) &#8211; This security update resolves two privately reported vulnerabilities in Windows Media Runtime. The vulnerabilities could allow remote code execution if a user opened a specially crafted media file or received specially crafted streaming content from a Web site or any application that delivers Web content. An attacker who successfully exploited these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-052.mspx">MS09-052</a> Vulnerability in Windows Media Player Could Allow Remote Code Execution (974112) (Critical) &#8211; This security update resolves a privately reported vulnerability in Windows Media Player. The vulnerability could allow remote code execution if a specially crafted ASF file is played using Windows Media Player 6.4. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-054.mspx">MS09-054</a> Cumulative Security Update for Internet Explorer (974455) (Critical) &#8211; This security update resolves three privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-055.mspx">MS09-055</a> Cumulative Security Update of ActiveX Kill Bits (973525) (Critical) &#8211; This security update addresses a privately reported vulnerability that is common to multiple ActiveX controls and is currently being exploited. The vulnerability that affects ActiveX controls that were compiled using the vulnerable version of the Microsoft Active Template Library (ATL) could allow remote code execution if a user views a specially crafted Web page with Internet Explorer, instantiating the ActiveX control. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-060.mspx">MS09-060</a> Vulnerabilities in Microsoft Active Template Library (ATL) ActiveX Controls for Microsoft Office Could Allow Remote Code Execution (973965) (Critical) &#8211; This security update resolves several privately reported vulnerabilities in ActiveX Controls for Microsoft that were compiled with a vulnerable version of Microsoft Active Template Library (ATL). The vulnerabilities could allow remote code execution if a user loaded a specially crafted component or control. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS09-061.mspx">MS09-061</a> Vulnerabilities in the Microsoft .NET Common Language Runtime Could Allow Remote Code Execution (974378) (Critical) &#8211; This security update resolves three privately reported vulnerabilities in Microsoft .NET Framework and Microsoft Silverlight. The vulnerabilities could allow remote code execution on a client system if a user views a specially crafted Web page using a Web browser that can run XAML Browser Applications (XBAPs) or Silverlight applications, or if an attacker succeeds in persuading a user to run a specially crafted Microsoft .NET application. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. The vulnerabilities could also allow remote code execution on a server system running IIS, if that server allows processing ASP.NET pages and an attacker succeeds in uploading a specially crafted ASP.NET page to that server and executing it, as could be the case in a Web hosting scenario. Microsoft .NET applications, Silverlight applications, XBAPs and ASP.NET pages that are not malicious are not at risk of being compromised because of this vulnerability.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-062.mspx">MS09-062</a> Vulnerabilities in GDI+ Could Allow Remote Code Execution (957488) (Critical)- This security update resolves several privately reported vulnerabilities in Microsoft Windows GDI+. These vulnerabilities could allow remote code execution if a user viewed a specially crafted image file using affected software or browsed a Web site that contains specially crafted content. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS09-053.mspx">MS09-053</a> Vulnerabilities in FTP Service for Internet Information Services Could Allow Remote Code Execution (975254) (Important) &#8211; This security update resolves two publicly disclosed vulnerabilities in the FTP Service in Microsoft Internet Information Services (IIS) 5.0, Microsoft Internet Information Services (IIS) 5.1, Microsoft Internet Information Services (IIS) 6.0, and Microsoft Internet Information Services (IIS) 7.0. On IIS 7.0, only FTP Service 6.0 is affected. The vulnerabilities could allow remote code execution (RCE) on systems running FTP Service on IIS 5.0, or denial of service (DoS) on systems running FTP Service on IIS 5.0, IIS 5.1, IIS 6.0 or IIS 7.0.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-056.mspx">MS09-056</a> Vulnerabilities in Windows CryptoAPI Could Allow Spoofing (974571) (Important) &#8211; This security update resolves two publicly disclosed vulnerabilities in Microsoft Windows. The vulnerabilities could allow spoofing if an attacker gains access to the certificate used by the end user for authentication.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-057.mspx">MS09-057</a> Vulnerability in Indexing Service Could Allow Remote Code Execution (969059) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker set up a malicious Web page that invokes the Indexing Service through a call to its ActiveX component. This call could include a malicious URL and exploit the vulnerability, granting the attacker access to the client system with the privileges of the user browsing the Web page. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-058.mspx">MS09-058</a> Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (971486) (Important) &#8211; This security update resolves several privately reported vulnerabilities in the Windows kernel. The most severe of the vulnerabilities could allow elevation of privilege if an attacker logged on to the system and ran a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit any of these vulnerabilities. The vulnerabilities could not be exploited remotely or by anonymous users.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-059.mspx">MS09-059</a> Vulnerability in Local Security Authority Subsystem Service Could Allow Denial of Service (975467) (Important) &#8211; This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if an attacker sent a maliciously crafted packet during the NTLM authentication process.</li></ul><p>Adobe will also release security patches later today for critical vulnerabilities in Acrobat Reader.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/10/13/microsoft-security-updates-october-2009-online/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Remote Control Reboots And Updates On Multiple Windows Computers</title><link>http://www.ghacks.net/2009/10/06/remote-control-reboots-and-updates-on-multiple-windows-computers/</link> <comments>http://www.ghacks.net/2009/10/06/remote-control-reboots-and-updates-on-multiple-windows-computers/#comments</comments> <pubDate>Tue, 06 Oct 2009 12:05:51 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Software]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[reboot servers]]></category> <category><![CDATA[remote control]]></category> <category><![CDATA[remote reboot]]></category> <category><![CDATA[remote reboot x]]></category> <category><![CDATA[windows software]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=16977</guid> <description><![CDATA[Remote Reboot X has been initially developed by Doug Zuckerman to remotely control the reboot process of multiple computer systems in an effort to automate the monthly maintenance schedule of more than a 100 servers as much as possible. Doug later added the option to manage Microsoft Windows software updates from the program interface of [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://www.ghacks.net/wp-content/uploads/2009/09/windows_software.jpg" alt="windows software" title="windows software" width="128" height="128" class="alignleft size-full wp-image-16120" />Remote Reboot X has been initially developed by Doug Zuckerman to remotely control the reboot process of multiple computer systems in an effort to automate the monthly maintenance schedule of more than a 100 servers as much as possible. Doug later added the option to manage Microsoft Windows software updates from the program interface of Remote Reboot X and plans to integrate several important new features to future versions of the software program.</p><p>The program works the following way: Users start by adding a list of IP addresses or computer names to the program. It is then possible to highlight some or all of them to perform actions on the selected hosts. Actions can be selected by either selecting them from the Actions menu or by right-clicking.</p><p><span
id="more-16977"></span>Available actions are:</p><ul><li>Ping.  The ping reply initially displays in black, then red if it times out, and then after 4 consecutive time-outs, any subsequent replies will turn blue to signify that the machine has been rebooted</li><li>Install Windows Updates on the remote machine(s) (requires Microsoft’s SysInternals PsExec in your system path)</li><li>View the WSUS installation log for the remote machine(s) – this log is stored in C:\RRx on all remote computers.  (Tip:  You can doubleclick a row to view the log file)</li><li>Reboot the remote machine(s) (will also automatically start ping monitoring if you haven’t already started it)</li><li>Retrieve the last boot-up time of the remote machine(s) – comes in very handy when you’re rebooting machines</li><li>Load a | delimited text file to automatically populate the “Notes” column – this makes it simple to keep an ongoing list of any instructions you might have that are specific to certain machines, such as programs to start after a machine is rebooted and logged on.</li></ul><p><img
src="http://www.ghacks.net/wp-content/uploads/2009/10/remote_control-500x293.png" alt="remote control" title="remote control" width="500" height="293" class="alignnone size-medium wp-image-16978" /></p><blockquote><p>Along with RemoteRebootX.exe there are 3 additional .NET executables included in the zip file below.  To use them you must have the WSUS Admin Console 3.0 installed on your computer.  They will allow you to connect to your WSUS server and …</p><ul><li>Retrieve a list of computers that have already downloaded updates but haven’t installed them</li><li>Retrieve a list of computers that have already installed updates and are waiting to be rebooted</li><li>Retrieve a list of computers that have not checked in with the WSUS server in more than 3 days</li></ul></blockquote><p><img
src="http://www.ghacks.net/wp-content/uploads/2009/10/remote_reboot-500x284.PNG" alt="remote reboot" title="remote reboot" width="500" height="284" class="alignnone size-medium wp-image-16979" /></p><p>Additional <a
href="http://dougzuck.com/">information</a> and usage tips are available at the developer&#8217;s website. Remote Reboot X has been developed in Microsoft’s Visual C# 2008 and requires therefor the Microsoft .net Framework. Doug does not mention the .net Framework version on his website though.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/10/06/remote-control-reboots-and-updates-on-multiple-windows-computers/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Stop Restart Now Restart Later Dialog After Windows Updates</title><link>http://www.ghacks.net/2009/08/12/stop-restart-now-restart-later-dialog-after-windows-updates/</link> <comments>http://www.ghacks.net/2009/08/12/stop-restart-now-restart-later-dialog-after-windows-updates/#comments</comments> <pubDate>Wed, 12 Aug 2009 14:56:43 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Tutorials Basic]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[automatic updats]]></category> <category><![CDATA[microsoft updates]]></category> <category><![CDATA[restart later]]></category> <category><![CDATA[restart now]]></category> <category><![CDATA[windows tips]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=15294</guid> <description><![CDATA[Microsoft has released several security patches in the last 24 hours which every Windows and Office user should install as soon as possible to protect the software programs from attacks. A dialog will appear after the updates have been installed if the updates are installed using Windows Updates. This dialog offers the user the choice [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://www.ghacks.net/wp-content/uploads/2009/04/microsoft_windows.jpg" alt="microsoft windows" title="microsoft windows" width="128" height="128" class="alignleft size-full wp-image-11907" />Microsoft has released several security patches in the last 24 hours which every Windows and Office user should install as soon as possible to protect the software programs from attacks. A dialog will appear after the updates have been installed if the updates are installed using Windows Updates. This dialog offers the user the choice to restart the computer now or later. Users who select to restart the computer later will be reminded after some time by the same dialog box which is then repeated in an endless loop until the computer is restarted.</p><p>The dialog offers no way of delaying the reminder or letting the operating system know that a manual start will eventually be performed.</p><p><span
id="more-15294"></span><img
src="http://www.ghacks.net/wp-content/uploads/2009/08/automatic_updates_restart_now_restart_later.jpg" alt="automatic updates restart now restart later" title="automatic updates restart now restart later" width="428" height="137" class="alignnone size-full wp-image-15295" /></p><p>There is however a solution to the problem instead of having to click on the Reboot Later button dozens of times. The dialog is fueled by the Automatic Updates service. All that needs to be done to get rid of the Restart Now Restart Later dialog window is to stop the Automatic Update service. This will also stop the restart message boxes from appearing. The Automatic Update service will automatically be started by Windows on the next system start.</p><p>Do the following to stop Automatic Updates:</p><ul><li>Press [Windows R], enter [services.msc] and hit enter.</li><li>Locate the Automatic Update service and right-click it.</li><li>Select Stop from the context menu to stop the service.</li></ul><p>This procedure will stop the restart now restart later window from appearing on the computer system.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/08/12/stop-restart-now-restart-later-dialog-after-windows-updates/feed/</wfw:commentRss> <slash:comments>10</slash:comments> </item> <item><title>Microsoft Security Updates August 2009</title><link>http://www.ghacks.net/2009/08/12/microsoft-security-updates-august-2009/</link> <comments>http://www.ghacks.net/2009/08/12/microsoft-security-updates-august-2009/#comments</comments> <pubDate>Wed, 12 Aug 2009 10:09:08 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft security bulletin]]></category> <category><![CDATA[microsoft security updates]]></category> <category><![CDATA[microsoft updates]]></category> <category><![CDATA[office security]]></category> <category><![CDATA[windows security]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=15276</guid> <description><![CDATA[Microsoft has released its monthly set of security patches yesterday which patch several security vulnerabilities in Microsoft software programs including Microsoft operating systems and Microsoft Office. A summary of the patches can be accessed at the Microsoft website which lists nine security bulletins. Of these nine security bulletins five are rated critical and four important. [...]]]></description> <content:encoded><![CDATA[<p>Microsoft has released its monthly set of security patches yesterday which patch several security vulnerabilities in Microsoft software programs including Microsoft operating systems and Microsoft Office. A <a
href="http://www.microsoft.com/technet/security/Bulletin/ms09-aug.mspx">summary</a> of the patches can be accessed at the Microsoft website which lists nine security bulletins. Of these nine security bulletins five are rated critical and four important. Users who operate Microsoft operating systems or Microsoft products should install the security patches as soon as possible to protect their system from possible exploits.</p><p>Affected operating systems include Windows Vista, Windows XP, Windows Server 2003 and 2008, Windows 2000 but not Windows 7. Downloads are available from the usual locations including automatic updates, Windows Update, Microsoft Update or by following the links in the security bulletins below.</p><p><span
id="more-15276"></span><ul><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-043.mspx">MS09-043</a> Vulnerabilities in Microsoft Office Web Components Could Allow Remote Code Execution (957638)<p>This security update resolves several privately reported vulnerabilities in Microsoft Office Web Components that could allow remote code execution if a user viewed a specially crafted Web page. An attacker who successfully exploited these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS09-044.mspx">MS09-044</a> Vulnerabilities in Remote Desktop Connection Could Allow Remote Code Execution (970927)<p>This security update resolves two privately reported vulnerabilities in Microsoft Remote Desktop Connection. The vulnerabilities could allow remote code execution if an attacker successfully convinced a user of Terminal Services to connect to a malicious RDP server or if a user visits a specially crafted Web site that exploits this vulnerability. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-039.mspx">MS09-039</a> Vulnerabilities in WINS Could Allow Remote Code Execution (969883)<p>This security update resolves two privately reported vulnerabilities in the Windows Internet Name Service (WINS). Either vulnerability could allow remote code execution if a user received a specially crafted WINS replication packet on an affected system running the WINS service. By default, WINS is not installed on any affected operating system version. Only customers who manually install this component are affected by this issue.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-038.mspx">MS09-038</a> &#8211; Vulnerabilities in Windows Media File Processing Could Allow Remote Code Execution (971557)<p>This security update resolves two privately reported vulnerabilities in Windows Media file processing. Either vulnerability could allow remote code execution if a user opened a specially crafted AVI file. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-037.mspx">MS09-037</a> Vulnerabilities in Microsoft Active Template Library (ATL) Could Allow Remote Code Execution (973908)<p>This security update resolves several privately reported vulnerabilities in Microsoft Active Template Library (ATL). The vulnerabilities could allow remote code execution if a user loaded a specially crafted component or control hosted on a malicious website. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-041.mspx">MS09-041</a> Vulnerability in Workstation Service Could Allow Elevation of Privilege (971657)<p>This security update resolves a privately reported vulnerability in the Windows Workstation Service. The vulnerability could allow elevation of privilege if an attacker created a specially crafted RPC message and sent the message to an affected system. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. An attacker must have valid logon credentials to a vulnerable system in order to exploit this vulnerability. The vulnerability could not be exploited by anonymous users.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/ms09-040.mspx">MS09-040</a> Vulnerability in Message Queuing Could Allow Elevation of Privilege (971032)<p>This security update resolves a privately reported vulnerability in the Windows Message Queuing Service (MSMQ). The vulnerability could allow elevation of privilege if a user received a specially crafted request to an affected MSMQ service. By default, the Message Queuing component is not installed on any affected operating system edition and can only be enabled by a user with administrative privileges. Only customers who manually install the Message Queuing component are likely to be vulnerable to this issue.</p></li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS09-036.mspx">MS09-036</a> Vulnerability in ASP.NET in Microsoft Windows Could Allow Denial of Service (970957)<p>This security update addresses a privately reported Denial of Service vulnerability in the Microsoft .NET Framework component of Microsoft Windows. This vulnerability can be exploited only when Internet Information Services (IIS) 7.0 is installed and ASP.NET is configured to use integrated mode on affected versions of Microsoft Windows. An attacker could create specially crafted anonymous HTTP requests that could cause the affected Web server to become non-responsive until the associated application pool is restarted. Customers who are running IIS 7.0 application pools in classic mode are not affected by this vulnerability.</li><li><a
href="http://www.microsoft.com/technet/security/bulletin/MS09-042.mspx">MS09-042</a> Vulnerability in Telnet Could Allow Remote Code Execution (960859)<p>This security update resolves a publicly disclosed vulnerability in the Microsoft Telnet service. The vulnerability could allow an attacker to obtain credentials and then use them to log back into affected systems. The attacker would then acquire user rights on a system identical to the user rights of the logged-on user. This scenario could ultimately result in remote code execution on affected systems. An attacker who successfully exploited this vulnerability could install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with</li></ul> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/08/12/microsoft-security-updates-august-2009/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Install All Windows XP Updates With Patchmate XP</title><link>http://www.ghacks.net/2009/05/21/install-all-windows-xp-updates-with-patchmate-xp/</link> <comments>http://www.ghacks.net/2009/05/21/install-all-windows-xp-updates-with-patchmate-xp/#comments</comments> <pubDate>Thu, 21 May 2009 13:23:22 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Software]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[offline updater]]></category> <category><![CDATA[patchmate 2003]]></category> <category><![CDATA[patchmate xp]]></category> <category><![CDATA[update windows]]></category> <category><![CDATA[windows server 2003 updates]]></category> <category><![CDATA[windows updates]]></category> <category><![CDATA[windows xp updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=12983</guid> <description><![CDATA[Patchmate XP, and its Windows Server 2003 counterpart Patchmate 2003, are ISO images that contain all Windows XP updates (Windows Server 2003 Updates) that have been released by Microsoft. The developer is adding new Windows XP updates to the ISO image on a monthly basis so that it will always include the latest patches issues [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://www.ghacks.net/wp-content/uploads/2009/04/microsoft_windows.jpg" alt="microsoft windows" title="microsoft windows" width="128" height="128" class="alignleft size-full wp-image-11907" />Patchmate XP, and its Windows Server 2003 counterpart Patchmate 2003, are ISO images that contain all Windows XP updates (Windows Server 2003 Updates) that have been released by Microsoft. The developer is adding new Windows XP updates to the ISO image on a monthly basis so that it will always include the latest patches issues by Microsoft.</p><p>There are several situations where an ISO image with all Windows XP updates might come in handy. It is for instance possible to install Windows XP updates to a computer system prior to going online with the system. Another reason is easier distribution. Think of multiple computers in a computer network. Instead of downloading and installing the Windows XP updates multiple times (once for every computer system) they could be downloaded once in form of the PatchMate XP iso and applied to all computer systems.</p><p><span
id="more-12983"></span>The download and installation is also faster. Users who downloaded and installed updates from Windows Update in the past have most likely noticed how slow the downloads and updates would be commenced even on modern computer systems with broadband connections.</p><p>Patchmate XP (via <a
href="http://www.technixupdate.com/patchmate-xp-update-windows-xp-with-the-latest-hotfixes-with-minimum-user-involvement/">Technix Update</a>) can be downloaded as an ISO image from the developer&#8217;s website. It can then be burned to CD or DVD to be executed right from within the Windows XP operating system. The user interaction has been reduced to a minimum.</p><p><img
src="http://www.ghacks.net/wp-content/uploads/2009/05/windows_xp_updates-500x251.jpg" alt="windows xp updates" title="windows xp updates" width="500" height="251" class="alignnone size-medium wp-image-12982" /></p><p>Patchmate XP will detect the Windows XP Service Pack and install the Windows XP updates based on the detection. Only post service Pack 3 updates would for example be installed on a computer system running Windows XP Service Pack 3.</p><p>The patches will be installed even if they are already present on the computer system. A restart is required at the end of the update.</p><p>An option to exclude updates from being applied would be helpful to cope with scenarios where updates cause problems on a computer system. Another useful feature would be the creation of a system restore point prior to installing the Windows XP updates.</p><p>Windows XP Updates can also be applied by programs like <a
href="http://www.ghacks.net/2008/01/21/update-windows-with-offline-update/">Offline Update</a>, <a
href="http://www.ghacks.net/2008/03/24/autopatcher-updater-104/">Autopatcher</a> or <a
href="http://www.ghacks.net/2008/07/20/windows-updates-downloader/">Windows Updates Downloader</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/05/21/install-all-windows-xp-updates-with-patchmate-xp/feed/</wfw:commentRss> <slash:comments>20</slash:comments> </item> <item><title>Microsoft Security Bulletin May 2009</title><link>http://www.ghacks.net/2009/05/13/microsoft-security-bulletin-may-2009/</link> <comments>http://www.ghacks.net/2009/05/13/microsoft-security-bulletin-may-2009/#comments</comments> <pubDate>Wed, 13 May 2009 14:05:31 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[microsoft security bulleting]]></category> <category><![CDATA[microsoft-office]]></category> <category><![CDATA[security bulletin]]></category> <category><![CDATA[security vulnerability]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/2009/05/13/microsoft-security-bulletin-may-2009/</guid> <description><![CDATA[Microsoft has released the Security Bulletin for May 2009 which contains one Microsoft Office PowerPoint vulnerability which affects various editions of Microsoft Office but also the Microsoft Office PowerPoint Viewer and Microsoft Office Compatibility Pack. Affected are Microsoft Office PowerPoint editions in Microsoft Office 2000, Office XP, Office 2003 and Microsoft Office 2007. The security [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://www.ghacks.net/wp-content/uploads/2009/04/microsoft_office.jpg" alt="microsoft office" title="microsoft office" width="128" height="105" class="alignleft size-full wp-image-12120" />Microsoft has released the Security Bulletin for May 2009 which contains one Microsoft Office PowerPoint vulnerability which affects various editions of Microsoft Office but also the Microsoft Office PowerPoint Viewer and Microsoft Office Compatibility Pack. Affected are Microsoft Office PowerPoint editions in Microsoft Office 2000, Office XP, Office 2003 and Microsoft Office 2007. The security update is rated as critical for Microsoft Office 2000 editions and important for all other affected editions of Microsoft Office and software programs by Microsoft.</p><p><span
id="more-12792"></span><br
/><blockquote>This security update resolves a publicly disclosed vulnerability and several privately reported vulnerabilities in Microsoft Office PowerPoint that could allow remote code execution if a user opens a specially crafted PowerPoint file. An attacker who successfully exploited any of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</p></blockquote><p>The security update is available on Windows Update and Microsoft Update. Additional information and links can be found at the <a
href="http://www.microsoft.com/technet/security/bulletin/ms09-017.mspx">Security Bulletin</a> that has been created for the security vulnerability. Users of affected software programs are encouraged to perform the security update as soon as possible.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/05/13/microsoft-security-bulletin-may-2009/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Software Updates Checker</title><link>http://www.ghacks.net/2009/04/14/software-updates-checker/</link> <comments>http://www.ghacks.net/2009/04/14/software-updates-checker/#comments</comments> <pubDate>Tue, 14 Apr 2009 14:15:19 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Software]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[portable software]]></category> <category><![CDATA[software updates]]></category> <category><![CDATA[update]]></category> <category><![CDATA[update notifier]]></category> <category><![CDATA[updates]]></category> <category><![CDATA[updates checker]]></category> <category><![CDATA[windows software]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=11997</guid> <description><![CDATA[One of the main disadvantages of the Windows operating system is the lack of an internal application handling third party software updates on the computer system. An automatic update system like that offered in the Linux operating system would be increasing system security and stability of the Windows operating system. Several third party software programs [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://www.ghacks.net/wp-content/uploads/2009/04/update_notifier.jpg" alt="update notifier" title="update notifier" width="198" height="54" class="alignleft size-full wp-image-11998" />One of the main disadvantages of the Windows operating system is the lack of an internal application handling third party software updates on the computer system. An automatic update system like that offered in the Linux operating system would be increasing system security and stability of the Windows operating system. Several third party software programs are available. A while back we compared five <a
href="http://www.ghacks.net/2008/05/29/software-update-checker-comparison/">software update checkers</a> which were more or less able to scan the installed software programs to check their versions against a database containing the latest versions.</p><p>Update Notifier is an alternative software updates checker which can be installed or run as a portable application. The program uses a clean interface that displays the installed version of scanned software programs, the latest known version in the database and a link to a website from where the application can be downloaded in case a newer version is available. The results were correct for all tested applications which is something that several of the previously tested software updater failed in.</p><p><span
id="more-11997"></span><img
src="http://www.ghacks.net/wp-content/uploads/2009/04/software_updates-468x500.jpg" alt="software updates" title="software updates" width="468" height="500" class="alignnone size-medium wp-image-11999" /></p><p>A click on the download button will open the website of the software developer that contains information about the application. It takes another two clicks to start the download that is available directly from the same website. There is unfortunately no direct link to the website of the software developer itself to verify the findings or to download the software from there.</p><p><a
href="http://cleansofts.org/view/update-notifier.html">Update Notifier</a> can be configured to filter the results list. Filters include the listing of only commercial or free software as well as listings based on the type of update available. The program can also be pointed at a folder on the local computer system containing portable applications to check those for updates as well.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/04/14/software-updates-checker/feed/</wfw:commentRss> <slash:comments>19</slash:comments> </item> <item><title>Windows Update Fix</title><link>http://www.ghacks.net/2009/04/13/windows-update-fix/</link> <comments>http://www.ghacks.net/2009/04/13/windows-update-fix/#comments</comments> <pubDate>Mon, 13 Apr 2009 10:34:16 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Windows]]></category> <category><![CDATA[bits]]></category> <category><![CDATA[bits error]]></category> <category><![CDATA[microsoft]]></category> <category><![CDATA[update windows]]></category> <category><![CDATA[windows tips]]></category> <category><![CDATA[windows update fix]]></category> <category><![CDATA[windows updates]]></category> <category><![CDATA[windows-update]]></category> <guid
isPermaLink="false">http://www.ghacks.net/2009/04/13/windows-update-fix/</guid> <description><![CDATA[Windows Update is Microsoft&#8217;s main website for updating the Windows operating system. Users can visit the website using Internet Explorer to scan their operating system for possible updates. Updates can then be installed automatically and directly on the website. Windows Update can cause problems on some computer systems. The first and probably most common problem [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://www.ghacks.net/wp-content/uploads/2009/04/windows_update.jpg" alt="windows update" title="windows update" width="128" height="76" class="alignleft size-full wp-image-11953" />Windows Update is Microsoft&#8217;s main website for updating the Windows operating system. Users can visit the website using Internet Explorer to scan their operating system for possible updates. Updates can then be installed automatically and directly on the website.</p><p>Windows Update can cause problems on some computer systems. The first and probably most common problem that is encountered is the error message &#8220;The site cannot continue because one or more of these Windows services is not running&#8221; (read: <a
href="http://www.ghacks.net/2008/03/09/windows-update-error-services-not-running/">Windows Update Error services not running</a> for a detailed explanation). This message is caused by several Windows Services that need to be set to specific parameters for Windows Update to work.</p><p>One of these services that are required for Windows Update to function properly is Bits, the Background Intelligent Transfer Service. Bits can cause additional problems on some computer systems especially after uninstalling software programs like <a
href="http://www.ghacks.net/tag/antivirus/">antivirus</a> or security programs or after an infection and removal of computer viruses and other malicious software. Most users will experience the following: Bits is not running on the computer system and the attempt to start it will result in an error message. The error messages can vary and it is probably a good idea to perform a search for the error on the Internet.</p><p><span
id="more-11955"></span><img
src="http://www.ghacks.net/wp-content/uploads/2009/04/windows_update_fix.jpg" alt="windows update fix" title="windows update fix" width="265" height="264" class="alignnone size-full wp-image-11954" /></p><p>Another solution is to use the Fix Windows Update <a
href="http://www.saunalahti.fi/~borg/fixwindowsupdate/downloads.html">program</a> that has been specifically designed to fix problems with Bits and Windows Update. Here are the instructions on how to use the program:</p><ul><li>First click &#8220;Open Services Window&#8221;.</li><li>After the window has been opened, find a Service called &#8220;BITS&#8221; and see if it is running.</li><li>If it is, this program cannot help you, and you can exit the program.</li><li>If it is not running, close the Services window and click on &#8220;Start BITS&#8221;.</li><li>If it is successful, this program has helped you and you can close the program.</li><li>If starting the BITS fails, continue with other 2 buttons.</li></ul><p>Start by clicking on the Phase 1 button. A popup will appear if the program was able to fix and start Bits. If this did not work continue by pressing the Phase 2 button. This will take longer and should result in a popup containing the information that Bits started running again. There might be cases where the Fix Windows Update program is not successful in restoring the Windows Update functionality. The only possible solution in this case is research on the Internet to find the cause of the problem.</p><p>Users who are desperate to update their Windows operating system can use the following tools to do so even if Bits and Windows Update are not working: <a
href="http://www.ghacks.net/2009/04/13/windows-update-fix/">Windows Offline Update</a>, <a
href="http://www.ghacks.net/2007/02/11/update-windows-without-microsoft/">Update Windows Without Microsoft</a> or <a
href="http://www.ghacks.net/2007/08/20/autopatcher-august-2007-released/">Autopatcher</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2009/04/13/windows-update-fix/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>Software Updates Week 36 2008</title><link>http://www.ghacks.net/2008/09/24/software-updates-week-36-2008/</link> <comments>http://www.ghacks.net/2008/09/24/software-updates-week-36-2008/#comments</comments> <pubDate>Wed, 24 Sep 2008 14:28:51 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Software]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[windows software]]></category> <category><![CDATA[windows updates]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=7196</guid> <description><![CDATA[The last seven days have been eventful just like the other week. Many interesting and popular applications have been updated in the last seven days. Some noteworthy updates include the Firefox updates, Cobian Backup, Microsoft Photosynth and Locate32 among others. This week&#8217;s update of the week award goes to Locate32 which got updated to Locate [...]]]></description> <content:encoded><![CDATA[<p>The last seven days have been eventful just like the other week. Many interesting and popular applications have been updated in the last seven days. Some noteworthy updates include the Firefox updates, Cobian Backup, Microsoft Photosynth and Locate32 among others.</p><p>This week&#8217;s update of the week award goes to Locate32 which got updated to Locate 3.1.8.9210 Release Candidate 3 which is an excellent program to search Windows. It can search for files and contents and makes use of a database that needs to be updated regularly in the background to be effective.</p><p><span
id="more-7196"></span><ul><li><a
href="http://www.utorrent.com/">µTorrent 1.8.1. Build 12323 Beta</a> &#8211; Lightweight, fast and easy to use Bittorrent client.</li><li><a
href="http://www.aimp.ru/index.php?newlang=english">AIMP 2.5 Build 297 RC4</a> &#8211; A great audio player resembling Winamp.</li><li><a
href="http://www.cdburnerxp.se/">CDBurnerXP Pro 4.2.1.976</a> &#8211; Free CD burning application that supports the usual most common operations.</li><li><a
href="http://www.educ.umu.se/~cobian/cobianbackup.htm">Cobian Backup 9.1.1.193</a> &#8211; A versatile computer backup software program.</li><li><a
href="http://www.jockersoft.com/english/codecinstaller.php">CodecInstaller 2.10.2</a> &#8211; Analyzes a multimedia file telling the user which codecs are needed to play it.</li><li><a
href="http://www.dopdf.com/">doPDF 6.1.274</a> &#8211; Creates a virtual printer in Windows that can convert documents into PDF.</li><li><a
href="http://www.dvdflick.net/">DVD Flick 1.3.0.2</a> &#8211; DVD authoring software that can turn video files stored on the computer into video DVDs that play on DVD players.</li><li><a
href="http://www.dvdfab.com/free.htm">DVDFab HD Decrypter 5.0.9.5 Beta</a> &#8211; Copies DVD movies to the computer hard drive removing copy protection in the process.</li><li><a
href="http://filezilla-project.org/">FileZilla 3.1.3</a> &#8211; Open Source ftp client with good functionality.</li><li><a
href="http://www.foobar2000.org/">foobar2000 0.9.5.6</a> &#8211; An advanced audio player with great options and plugins.</li><li><a
href="http://www.foxitsoftware.com/pdf/rd_intro.php">Foxit Reader 2.3 Build 3309</a> &#8211; Foxit Reader is an excellent PDF reader that can be used instead of Adobe Reader.</li><li><a
href="http://www.freedownloadmanager.org/">Free Download Manager 2.6.805 Beta</a> &#8211; Another popular Windows download manager.</li><li><a
href="http://www.google.com/chrome">Google Chrome 0.2.152.1 Beta</a> &#8211; New beta version of the Google web browser.</li><li><a
href="http://www.surfright.nl/en">Hitman Pro 3.0.0.2465 Beta</a> &#8211; A tool that installs and uses multiple anti-spyware utilities to scan a computer system.</li><li><a
href="http://www.ie7pro.com/">IE7pro 2.4</a> &#8211; The one add-on for Internet Explorer that everyone should have installed.</li><li><a
href="http://www.locate32.net/">Locate 3.1.8.9210 RC3</a> &#8211; Probably the fastest way to search Windows.</li><li>Microsoft Office Outlook Connector 12.1 Beta 2 &#8211; Users of Microsoft Outlook 2003 and Outlook 2007 can use this application to work with Microsoft Windows Live Hotmail or Microsoft Office Live Mail accounts.</li><li>Microsoft Photosynth 2.0.1403.12 &#8211; Interesting technology by Microsoft that analyzes sets of photos to create a 3D model of the object.</li><li><a
href="http://www.microsoft.com/downloads/en/details.aspx?familyid=184075d2-40b5-4172-88ae-878f81896d4d&amp;displaylang=en&amp;tm">Microsoft Pro Photo Tools 2.2</a> &#8211; Microsoft photo organizer and editor that makes use of metadata properties.</li><li><a
href="http://www.mozilla.com/en-US/firefox/">Mozilla Firefox 2.0.0.17</a> &#8211; Latest version of Firefox 2 for those who have not yet updated to Firefox 3.</li><li><a
href="http://www.openoffice.org/">OpenOffice.org 3.0.0 RC2</a> &#8211; The second release candidate of the Open Source Office suite.</li><li><a
href="http://en.opensuse.org/Portal:Distribution?sourceidint=productsmenu_linuxprofessional">openSUSE 11.1 Beta 1</a> &#8211; First beta version of the upcoming Open Suse 11.1.</li><li>Opera 9.60 Build 10433 Beta &#8211; Another beta version of the upcoming Opera 9.6 browser.</li><li><a
href="http://www.orbitdownloader.com/">Orbit Downloader 2.7.6</a> &#8211; A download manager that integrates nicely into the most popular web browsers. Comes with support for various video and multimedia portals.</li><li><a
href="http://www.cpuid.com/softwares/pc-wizard.html">PC Wizard 2008.1.86</a> &#8211; Tool to identify and display system information.</li><li><a
href="http://sourceforge.net/projects/pdfcreator/">PDFCreator 0.9.6</a> &#8211; Another virtual printer solution that converts documents into PDF files.</li><li><a
href="http://www.peeraware.com/">PeerAware 1.01</a> &#8211; Share spreadsheets, presentations and documents in private environments.</li><li><a
href="http://picasa.google.com/">Picasa 3.0 Build 57.24 Beta</a> &#8211; Google&#8217;s image organizer and viewer.</li><li><a
href="http://www.pictomio.com/Default.aspx">Pictomio 1.2.20 Beta</a> &#8211; Another image organizer with geotagging add-on.</li><li><a
href="http://www.guru3d.com/">RivaTuner 2.11</a> &#8211; A NVIDIA video card tweaker.</li><li><a
href="http://stellarium.sourceforge.net/">Stellarium 0.10.0 Beta</a> &#8211; A program that renders realistic (night-) skies.</li><li><a
href="http://www.kcsoftwares.com/?sumo">SUMo 2.3.3.59</a> &#8211; Software Update Monitor scans the Windows system for installed software and updated version of those applications on the Internet.</li><li><a
href="http://www.virtualdub.org/">VirtualDub 1.8.6 Build 30009</a> &#8211; Video capturing and manipulation software.</li><li><a
href="http://www.vso-software.fr/products/image_resizer/">VSO Image Resizer 2.0.1.11b</a> &#8211; Straightforward image resizer that unfortunately comes with a nag screen.</li><li><a
href="http://www.wildbit-soft.fi/software.html">WildBit Viewer 5.3 Alpha 3.0</a> &#8211; A fast image viewer for Windows.</li><li><a
href="http://unlockforus.blogspot.com/">WinBubble 1.76</a> &#8211; A tweaker and optimizer for Windows Vista.</li><li><a
href="http://www.winpatrol.com/">WinPatrol 15.9.2008.0</a> &#8211; Blocks applications from adding themselves as startup items or registering file extensions.</li><li><a
href="http://www.xfire.com/">Xfire 1.98</a> &#8211; The gamer&#8217;s instant messenger. Chat with your friends and see what they are playing.</li><li><a
href="http://www.xnview.com/">XnView 1.95 Beta 2</a> &#8211; Fast image viewer.</li></ul><p>Feel free to add any missing application update in the comments.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2008/09/24/software-updates-week-36-2008/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> </channel> </rss>
