If you don't follow Microsoft closely, you may be surprised to discover that its annual one-day meeting with financial analysts, called the Microsoft... »
Tag Archive
Announcing the upcoming release of EMET v2
What is EMET? In October 2009, we released a tool on this blog called EMET that provides users with the ability to deploy security mitigation technologies to arbitrary applications. »
MS10-042: Vulnerability in Help and Support Center
Today we released MS10-042 to address CVE-2010-1885, a Critical severity security issue in the Help and Support Center. »
MS10-045: Microsoft Office Outlook Remote Code Execution vulnerability
Today we released the fix for CVE-2010-0266, an Important severity vulnerability in Microsoft Office Outlook. »
MS10-045 - Important: Vulnerability in Microsoft Office Outlook Could Allow Remote Code Execution (978212)
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability. The vulnerability could allow remote code execution if a user opened an attachment in a specially crafted e-mail message using an affected version of Microsoft Office Outlook. An attacker who successfully exploited this vulnerability could gain the same user rights as the... »
MS10-043 - Critical: Vulnerability in Canonical Display Driver Could Allow Remote Code Execution (2032276)
Bulletin Severity Rating:Critical - This security update resolves a publicly disclosed vulnerability in the Canonical Display Driver (cdd.dll). Although it is possible that the vulnerability could allow code execution, successful code execution is unlikely due to memory randomization. In most scenarios, it is much more likely that an attacker who successfully exploited this vulnerability... »
MS10-042 - Critical: Vulnerability in Help and Support Center Could Allow Remote Code Execution (2229593)
Bulletin Severity Rating:Critical - This security update resolves a publicly disclosed vulnerability in the Windows Help and Support Center feature that is delivered with supported editions of Windows XP and Windows Server 2003. »
Microsoft Security Advisory (2219475): Vulnerability in Windows Help and Support Center Could Allow Remote Code Execution - 6/10/2010
Revision Note: V1.0 (June 10, 2010): Advisory published. Advisory Summary:Microsoft is investigating new public reports of a possible vulnerability in the Windows Help and Support Center function that is delivered with supported editions of Windows XP and Windows Server 2003. This vulnerability could allow remote code execution if a user views a specially crafted... »
MS10-032: Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege
Today we released a security update rated Important for CVE-2010-1255 in MS10-032 . »
MS10-035: Cross-Domain Information Disclosure Vulnerability
Today we released MS10-035 , a security update with an Important severity update, addressing CVE-2010-0255. We’d like to talk briefly about that specific vulnerability and how we’ve addressed it. »
MS10-041: XML Signature HMAC Truncation Bypass Vulnerability
Today we released MS10-041 addressing an issue in the implementation of the XML signature functionality in the .NET Framework with an Important severity rating. »