General

Microsoft Patches 23 Vulnerabilities

August 9, 2006

from internetnews.com

Microsoft released 12 patches aimed at resolving multiple security risks discovered in its operating system and popular Office suite.

Nine of the 12 security updates were deemed “critical,” affecting various Windows components, as well as two Office applications previously known to be vulnerable.

The remaining three patches involved “important” security issues, such as remote code execution or elevated user privileges.

Several critical patches revisited flaws previously discovered in applications, such as PowerPoint, Outlook Express and Internet Explorer.

Another patch addressed flaws in a core Windows component already exploited in the “wild,” according to a security researcher.

Steve Mansuik, research manager of eEye Digital Security, called MS06-40 important because the flaw in the Windows Services could allow attackers to take control of systems running Windows XP, Windows Server 2003 and Windows 2000.

Internet Explorer was the subject of a cumulative update answering eight critical flaws affecting IE 5.01 and IE 6 for Windows XP, Windows 2003 and Windows 2000.

MS06-42 replaces the MS06-021 security bulletin issued April 11.

The new patch re-enables ActiveX control handling disabled by the previous security bulletin.

A fix for a previously reported PowerPoint vulnerability was also part of the dozen patches released today.

Today’s patch, MS06-048, replaces MS06-38, a security bulletin released in July.

The new patch is of critical importance for PowerPoint 2000 users, as well as for XP and 2003 PowerPoint systems.

A flaw in Outlook Express 6 for XP Pro and XP Service Pack 2, as well as Server 2003, could allow a remote attacker to run malicious code.

MS06-043 critical patch resolves the problem, according to the software maker.

Rounding out Microsoft’s “Patch Tuesday” event were two security updates ranked “important” for Windows users.

designer

CCT

Are You Ready?

When you are ready to get more specific information about your project, click here and fill out our handy online form for a free web design quote.

Get My Free Quote

you need a website?
we can help

    order a project

    arrow

    Recent Posts

    In Web Design

    Domain Name Services fake letter.

    General

    Domain Name Services Scam - Kind of

    Aug 9, 2006

    from internetnews.com Microsoft released 12 patches aimed at resolving multiple security risks discovered in its operating system and popular Office s...

    Captivating Website Design - Morehead City NC

    General

    Web Design Basics

    Aug 9, 2006

    from internetnews.com Microsoft released 12 patches aimed at resolving multiple security risks discovered in its operating system and popular Office s...

    Dynamic Web Design in Morehead City NC

    General

    Three Common Web Design Mistakes

    Aug 9, 2006

    from internetnews.com Microsoft released 12 patches aimed at resolving multiple security risks discovered in its operating system and popular Office s...

    arrow

    Go to our blog