Monthly Archives: April 2009

MS09-016 - Important: Vulnerabilities in Microsoft ISA Server and Forefront Threat Management Gateway (Medium Business Edition) Could Cause Denial of Service (961759)

Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability and a publicly disclosed vulnerability in Microsoft Internet Security and Acceleration (ISA) Server and Microsoft Forefront Threat Management Gateway (TMG), Medium Business Edition (MBE). Th
Go to full Article at Microsoft.com

Posted in MS Security | Leave a comment

MS09-015 – Moderate: Blended Threat Vulnerability in SearchPath Could Allow Elevation of Privilege (959426)

Bulletin Severity Rating:Moderate - This security update resolves a publicly disclosed vulnerability in the Windows SearchPath function that could allow elevation of privilege if a user downloaded a specially crafted file to a specific location, then opened an application that could load the file under certain circumstances.
Go to full Article at Microsoft.com

Posted in MS Security | Leave a comment

MS09-014 - Critical: Cumulative Security Update for Internet Explorer (963027)

Bulletin Severity Rating:Critical - This security update resolves four privately reported vulnerabilities and two publicly disclosed vulnerabilities in Internet Explorer. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer or if a user connects to an attacker’s server by way of the HTTP protocol. Users [...]

Posted in MS Security | Leave a comment

MS09-013 - Critical: Vulnerabilities in Windows HTTP Services Could Allow Remote Code Execution (960803)

Bulletin Severity Rating:Critical - This security update resolves one publicly disclosed vulnerability and two privately reported vulnerabilities in Microsoft Windows HTTP Services (WinHTTP). The most severe vulnerability could allow remote code execution. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, [...]

Posted in MS Security | Leave a comment

Scott Charney keynote video from RSA Conference 2009

Watch this keynote video by Microsoft Corporate Vice President, Scott Charney, from RSA Conference 2009.
Go to full Article at Microsoft.com

Posted in MS Security | Leave a comment

Discussing the End to End Trust vision

Read recent posts about enabling a safer, more trusted Internet.
Go to full Article at Microsoft.com

Posted in MS Security | Leave a comment

Microsoft Security Advisory (968272): Vulnerability in Microsoft Office Excel Could Allow Remote Code Execution - 4/14/2009

Revision Note: V3.0 (April 14, 2009) Advisory updated to reflect publication of security bulletin. Advisory Summary:Microsoft is investigating new public reports of a vulnerability in Microsoft Office Excel that could allow remote code execution if a user opens a specially crafted Excel file. At this time, we are aware only of limited and targeted attacks [...]

Posted in MS Security | Leave a comment

Microsoft Security Advisory (960906): Vulnerability in WordPad Text Converter Could Allow Remote Code Execution - 4/14/2009

Revision Note: V2.0 (April 14, 2009): Advisory updated to reflect publication of security bulletin. Advisory Summary:Microsoft is investigating new reports of a vulnerability in the WordPad Text Converter for Word 97 files on Windows 2000 Service Pack 4, Windows XP Service Pack 2, Windows Server 2003 Service Pack 1, and Windows Server 2003 Service Pack [...]

Posted in MS Security | Leave a comment

Microsoft Security Advisory (953818): Blended Threat from Combined Attack Using Apple’s Safari on the Windows Platform - 4/14/2009

Revision Note: V2.0 (April 14, 2009): Added references and links to MS09-014 and MS09-015, which address the issue in this advisory. Advisory Summary:Microsoft has investigated public reports of a blended threat that allows remote code execution on all supported versions of Windows XP and Windows Vista when Apple’s Safari for Windows has been installed. Safari [...]

Posted in MS Security | Leave a comment

Microsoft Security Advisory (951306): Vulnerability in Windows Could Allow Elevation of Privilege - 4/14/2009

Revision Note: V3.0 (April 14, 2009): Advisory updated to reflect publication of security bulletin. Advisory Summary:Security Advisory
Go to full Article at Microsoft.com

Posted in MS Security | Leave a comment