| Microsoft Security Bulletins |
| Ajouter ce flux dans votre site |
| Description: |
Microsoft Security Bulletins |
| Format: |
RSS 2.0 |
| Url: |
http://www.microsoft.com/technet/security/bulletin/secrss.aspx |
| |
| Derniers Titres |
Microsoft Security Bulletins
|
MS08-069 – Critical: Vulnerabilities in Microsoft XML Core Services Could Allow Remote Code Execution (955218)
Tue, 11 Nov 2008 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves several vulnerabilities in Microsoft XML Core Services. The most severe vulnerability could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
|
MS08-068 – Important: Vulnerability in SMB Could Allow Remote Code Execution (957097)
Tue, 11 Nov 2008 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a publicly disclosed vulnerability in Microsoft Server Message Block (SMB) Protocol. The vulnerability could allow remote code execution on affected systems. An attacker who successfully exploited this vulnerability could install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
|
MS08-067 – Critical: Vulnerability in Server Service Could Allow Remote Code Execution (958644)
Thu, 23 Oct 2008 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in the Server service. The vulnerability could allow remote code execution if an affected system received a specially crafted RPC request. On Microsoft Windows 2000, Windows XP, and Windows Server 2003 systems, an attacker could exploit this vulnerability without authentication to run arbitrary code. It is possible that this vulnerability could be used in the crafting of a wormable exploit. Firewall best practices and standard default firewall configurations can help protect network resources from attacks that originate outside the enterprise perimeter.
|
MS08-066 – Important: Vulnerability in the Microsoft Ancillary Function Driver Could Allow Elevation of Privilege (956803)
Tue, 14 Oct 2008 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in the Microsoft Ancillary Function Driver. A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
|
MS08-065 – Important: Vulnerability in Message Queuing Could Allow Remote Code Execution (951071)
Tue, 14 Oct 2008 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in the Message Queuing Service (MSMQ) on Microsoft Windows 2000 systems. The vulnerability could allow remote code execution on Microsoft Windows 2000 systems with the MSMQ service enabled.
|
MS08-064 – Important: Vulnerability in Virtual Address Descriptor Manipulation Could Allow Elevation of Privilege (956841)
Tue, 14 Oct 2008 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Virtual Address Descriptor. The vulnerability could allow elevation of privilege if a user runs a specially crafted application. An authenticated attacker who successfully exploited this vulnerability could gain elevation of privilege on an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full administrative rights.
|
MS08-063 – Important: Vulnerability in SMB Could Allow Remote Code Execution (957095)
Tue, 14 Oct 2008 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Microsoft Server Message Block (SMB) Protocol. The vulnerability could allow remote code execution on a server that is sharing files or folders. An attacker who successfully exploited this vulnerability could install programs; view, change, or delete data; or create new accounts with full user rights.
|
MS08-062 - Important: Vulnerability in Windows Internet Printing Service Could Allow Remote Code Execution (953155)
Tue, 14 Oct 2008 08:00:00 GMT
Bulletin Severity Rating:Important - This update resolves a privately reported vulnerability in the Windows Internet Printing Service that could allow remote code execution. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts.
|
MS08-061 – Important: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (954211)
Tue, 14 Oct 2008 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves one publicly disclosed and two privately reported vulnerabilities in the Windows kernel. A local attacker who successfully exploited these vulnerabilities could take complete control of an affected system. The vulnerabilities could not be exploited remotely or by anonymous users.
|
MS08-060 – Critical: Vulnerability in Active Directory Could Allow Remote Code Execution (957280)
Tue, 14 Oct 2008 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in implementations of Active Directory on Microsoft Windows 2000 Server. The vulnerability could allow remote code execution if an attacker gains access to an affected network. This vulnerability only affects Microsoft Windows 2000 servers configured to be domain controllers. If a Microsoft Windows 2000 server has not been promoted to a domain controller, it will not be listening to Lightweight Directory Access Protocol (LDAP) or LDAP over SSL (LDAPS) queries, and will not be exposed to this vulnerability.
|