|
|
|
Microsoft Patch Tuesday - December 2010 |
Si vous voulez bloquer ce service sur vos fils RSS
Si vous voulez nous contacter ou nous proposer un fil RSS
Menu > Articles de la revue de presse : - l'ensemble [ tous | francophone] - par mots clé [ tous] - par site [ tous] - le tagwall [ voir] - Top bi-hebdo de la revue de presse [ Voir]
Présentation : Hello and welcome to this month s blog on the Microsoft patch release. This is another large release the vendor is releasing 17 bulletins covering a total of 40 vulnerabilities. Eight of the issues are rated Critical and they affect Internet Explorer and the OpenType Font OTF format driver. The remainder of the issues are rated Important or Moderate and affect Publisher, Office, SharePoint, Windows, Windows kernel, Exchange, and Hyper-V. Included in this patch release is a fix for the last of the vulnerabilities Stuxnet was exploiting, the Windows Task Scheduler issue. As always, customers are advised to follow these security best practices - Install vendor patches as soon as they are available. - Run all software with the least privileges required while still maintaining functionality. - Avoid handling files from unknown or questionable sources. - Never visit sites of unknown or questionable integrity. - Block external access at the network perimeter to all key systems unless specific access is required. Microsoft s summary of the December releases can be found here http www.microsoft.com technet security bulletin ms10-dec.mspx The following is a breakdown of the Critical bulletins being addressed this month 1. MS10-090 Cumulative Security Update for Internet Explorer 2416400 CVE-2010-3340 BID 45255 Microsoft Internet Explorer Uninitialized Object CVE-2010-3340 Memory Corruption Vulnerability MS Rating Critical Symantec Rating 7.1 10 A remote code-execution vulnerability affects Internet Explorer when it handles an object that has not been properly initialized or has been deleted. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a Web page containing malicious content. A successful exploit will result in the execution of arbitrary attacker-supplied code in the context of the currently logged-in user. Affects Internet Explorer 6 and 7 CVE-2010-3342 BID 45256 Microsoft Internet Explorer CVE-2010-3342 Cross Domain Information Disclosure Vulnerability MS Rating Moderate Symantec Rating 5.7 10 A cross-domain information-disclosure vulnerability affects Internet Explorer because it incorrectly allows cached content to be rendered as HTML across domains. An attacker can exploit this issue by tricking an unsuspecting victim into visiting a Web page containing malicious content. A successful exploit will result in the disclosure of potentially sensitive information. Information obtained may aid in further attacks. Affects Internet Explorer 6, 7, and 8 CVE-2010-3343 BID 45259 Microsoft Internet Explorer Uninitialized Object CVE-2010-3343 Memory Corruption Vulnerability MS Rating Critical Symantec Rating 7.1 10 A remote code-execution vulnerability affects Internet Explorer when it handles an object that has not been properly initialized or has been deleted. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a Web page containing malicious content. A successful exploit will result in the execution of arbitrary attacker-supplied code in the context of the currently logged-in user. Affects Internet Explorer 6 CVE-2010-3345 BID 45260 Microsoft Internet Explorer Uninitialized HTML Element CVE-2010-3345 Memory Corruption Vulnerability MS Rating Critical Symantec Rating 7.1 10 A remote code-execution vulnerability affects Internet Explorer when it handles an object that has not been properly initialized or has been deleted. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a Web page containing malicious content. A successful exploit will result in the execution of arbitrary attacker-supplied code in the context of the currently logged-in user. Affects Internet Explorer 8 CVE-2010-3346 BID 45261 Microsoft Internet Explorer Uninitialized HTML Element CVE-2010-3346 Memory Corruption Vulnerability MS Rating Critical Symantec Rating 7.1 10 A remote code-execution vulnerability affects Internet Explorer when it handles an object that has not been properly initialized or has been deleted. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a Web page containing malicious content. A successful exploit will result in the execution of arbitrary attacker-supplied code in the context of the currently logged-in user. Affects Internet Explorer 6, 7, and 8 CVE-2010-3348 BID 45263 Microsoft Internet Explorer CVE-2010-3348 Cross Domain Information Disclosure Vulnerability MS Rating Moderate Symantec Rating 5.7 10 A cross-domain information-disclosure vulnerability affects Internet Explorer because it incorrectly allows cached content to be rendered as HTML across domains. An attacker can exploit this issue by tricking an unsuspecting victim into visiting a Web page containing malicious content. A successful exploit will result in the disclosure of potentially sensitive information. Information obtained may aid in further attacks. Affects Internet Explorer 6, 7, and 8 CVE-2010-3962 BID 44536 Microsoft Internet Explorer CSS Tags Remote Code Execution Vulnerability MS Rating Critical Symantec Rating 8.3 10 A previously public Nov 3, 2010 , remote code-execution vulnerability affects Internet Explorer when storing a certain combination of Cascading Style Sheet CSS tags, resulting in a use-after-free condition. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a Web page containing malicious content. A successful exploit will result in the execution of arbitrary attacker-supplied code in the context of the currently logged-in user. Affects Internet Explorer 6, 7, and 8 2. MS10-091 Vulnerabilities in the OpenType Font OTF Format Driver Could Allow Remote Code Execution 2296199 CVE-2010-3956 BID 45311 Microsoft Windows OpenType Font OTF Driver Invalid Array Index Remote Code Execution Vulnerability MS Rating Critical Symantec Rating 8.2 10 A remote code execution vulnerability affects the Windows OpenType Font OTF format driver when handling specially crafted OpenType fonts. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a Web page, previewing an email, or opening a file containing malicious fonts. A successful exploit will result in the execution of arbitrary attacker-supplied code in kernel-mode this may facilitate a complete compromise of an affected computer. Affects Windows XP SP3, Windows XP Professional x64 Edition SP2, Windows Server 2003 SP2, Windows Server 2003 x64 Edition SP2, Windows Server 2003 with SP2 for Itanium-based systems, Windows Vista SP1, Windows Vista SP2, Windows Vista x64 Edition SP1, Windows Vista x64 Edition SP2, Windows Server 2008 for 32-bit systems, Windows Server 2008 for 32-bit systems SP2, Windows Server 2008 for x64-based systems, Windows Server 2008 for x64-based systems SP2, Windows Server 2008 for Itanium-based systems, Windows Server 2008 for Itanium-based systems SP2, Windows 7 for 32-bit systems, Windows 7 for x64-based systems, Windows Server 2008 R2 for x64-based systems, Windows Server 2008 R2 for Itanium-based systems CVE-2010-3957 BID 45315 Microsoft Windows OpenType Font OTF Driver Double-Free Remote Code Execution Vulnerability MS Rating Critical Symantec Rating 8.2 10 A remote code-execution vulnerability affects the Windows OpenType Font OTF format driver when handling specially crafted OpenType fonts. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a Web page, previewing an email, or opening a file containing malicious fonts. A successful exploit will result in the execution of arbitrary attacker-supplied code in kernel-mode this may facilitate a complete compromise of an affected computer. Affects Windows XP SP3, Windows XP Professional x64 Edition SP2, Windows Server 2003 SP2, Windows Server 2003 x64 Edition SP2, Windows Server 2003 with SP2 for Itanium-based systems, Windows Vista SP1, Windows Vista SP2, Windows Vista x64 Edition SP1, Windows Vista x64 Edition SP2, Windows Server 2008 for 32-bit systems, Windows Server 2008 for 32-bit systems SP2, Windows Server 2008 for x64-based systems, Windows Server 2008 for x64-based systems SP2, Windows Server 2008 for Itanium-based systems, Windows Server 2008 for Itanium-based systems SP2, Windows 7 for 32-bit systems, Windows 7 for x64-based systems, Windows Server 2008 R2 for x64-based systems, Windows Server 2008 R2 for Itanium-based systems CVE-2010-3959 BID 45316 Microsoft Windows OpenType Font OTF Driver CMAP Table Remote Code Execution Vulnerability MS Rating Critical Symantec Rating 8.2 10 A remote code-execution vulnerability affects the Windows OpenType Font OTF format driver when handling specially crafted OpenType fonts. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a Web page, previewing an email, or opening a file containing malicious fonts. A successful exploit will result in the execution of arbitrary attacker-supplied code in kernel-mode this may facilitate a complete compromise of an affected computer. Affects Windows XP SP3, Windows XP Professional x64 Edition SP2, Windows Server 2003 SP2, Windows Server 2003 x64 Edition SP2, Windows Server 2003 with SP2 for Itanium-based systems, Windows Vista SP1, Windows Vista SP2, Windows Vista x64 Edition SP1, Windows Vista x64 Edition SP2, Windows Server 2008 for 32-bit systems, Windows Server 2008 for 32-bit systems SP2, Windows Server 2008 for x64-based systems, Windows Server 2008 for x64-based systems SP2, Windows Server 2008 for Itanium-based systems, Windows Server 2008 for Itanium-based systems SP2, Windows 7 for 32-bit systems, Windows 7 for x64-based systems, Windows Server 2008 R2 for x64-based systems, Windows Server 2008 R2 for Itanium-based systems More information on these and the other vulnerabilities being addressed this month is available at Symantec s free SecurityFocus portal and to our customers through the DeepSight Threat Management System.
Les mots clés de la revue de presse pour cet article : microsoft patch Les videos sur SecuObs pour les mots clés : microsoft patch Les mots clés pour les articles publiés sur SecuObs : microsoft patch Les éléments de la revue Twitter pour les mots clé : microsoft patch
Les derniers articles du site "Symantec Connexion Security Response Billets De Blog" :
- Too Many Hoaxes - W32.Qakbot - Under The Surface - Phishers Return For Tax Returns - Spam and Phishing Landscape May 2011 - Facebook Applications Accidentally Leaking Access to Third Parties - Updated - OMG username You Should Untag Yourself in This Video - Spammers Claim Wikipedia for Pharma Fakes - Trojan Feigns Failures to Increase Rogue Defragger Sales - 419 Spam Goes Lingo - Microsoft Patch Tuesday - May 2011
Menu > Articles de la revue de presse : - l'ensemble [ tous | francophone] - par mots clé [ tous] - par site [ tous] - le tagwall [ voir] - Top bi-hebdo de la revue de presse [ Voir]
Si vous voulez bloquer ce service sur vos fils RSS :
- avec iptables "iptables -A INPUT -s 88.191.75.173 --dport 80 -j DROP"
- avec ipfw et wipfw "ipfw add deny from 88.191.75.173 to any 80"
- Nous contacter par mail
| Mini-Tagwall des articles publiés sur SecuObs : | | | | sécurité, exploit, windows, attaque, outil, microsoft, réseau, audit, metasploit, vulnérabilité, système, virus, internet, usbsploit, données, source, linux, protocol, présentation, scanne, réseaux, scanner, bluetooth, conférence, reverse, shell, meterpreter, vista, rootkit, détection, mobile, security, malicieux, engineering, téléphone, paquet, trames, https, noyau, utilisant, intel, wishmaster, google, sysun, libre |
| Mini-Tagwall de l'annuaire video : | | | | curit, security, biomet, metasploit, biometric, cking, password, windows, botnet, defcon, tutorial, crypt, xploit, exploit, lockpicking, linux, attack, wireshark, vmware, rootkit, conference, network, shmoocon, backtrack, virus, conficker, elcom, etter, elcomsoft, server, meterpreter, openvpn, ettercap, openbs, iphone, shell, openbsd, iptables, securitytube, deepsec, source, office, systm, openssh, radio |
| Mini-Tagwall des articles de la revue de presse : | | | | security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone, server, inject, patch, apple, twitter, mobile, virus, ebook, facebook, vulnérabilité, crypt, source, linux, password, intel, research, virtual, phish, access, tutorial, trojan, social, privacy, firefox, adobe, overflow, office, cisco, conficker, botnet, pirate, sécurité |
| Mini-Tagwall des Tweets de la revue Twitter : | | | | security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall, network, twitter, vmware, windows, microsoft, compliance, vulnerability, python, engineering, source, kernel, crypt, social, overflow, nessus, crack, hacker, virus, iphone, patch, virtual, javascript, malware, conficker, pentest, research, email, password, adobe, apache, proxy, backtrack |
|
|
|
|
|