New 12 vulnerabilities in Microsoft Windows, IE, Word and Windows Server: Threats, Stakes and Tips
as announced, Microsoft has released seven bulletins, five Critical-classes and two Important-classes, addressing 12 vulnerabilities in Microsoft Windows, Internet Explorer (IE), Word and Windows Server.Therefore Microsoft recommend for those who need to prioritize deployment, to focus on the following critical updates:
MS12-077
(Internet Explorer): This security update addresses three Critical-class Internet Explorer
issues that could result in remote code execution. These issues exist in all
versions of IE. The update is highly recommended.
MS12-079
(Microsoft Word): This
security update aims to resolve one issue in Microsoft Word. This bulletin has
a Critical severity rating and can result in remote code execution. An attacker
could run code in the context of the logged-on user if they were to open a specially
crafted Rich Text Format (RTF) file, or preview or open a specially-crafted RTF
email message in Outlook while using Microsoft Word as the email viewer.
Security
Advisory 2755801: Microsoft
has revised Security
Advisory 2755801 to address issues in Adobe Flash Player in IE 10. This is a cumulative update, which means
customers do not need to install previous updates as a prerequisite for
installing the current update. Microsoft announced remain committed to working
closely with Adobe to deliver quality protections that are aligned with Adobe’s
update process. The updates are highly recommended.
Microsoft has scheduled the
webcast for Wednesday, Dec. 12, 2012 at 11 a.m. PST, and you can register here. And for more information about this month's
security updates, you can also visit the Microsoft Security Bulletin summary
web page.
Comments