Microsoft to Patch 3 Windows Security Bugs Next Week - 2011-01-06
#1
Microsoft is kicking off 2011 with a small Patch Tuesday release that will feature fixes for three vulnerabilities in Windows.

The bugs will be patched via two security bulletins, one of which is rated "critical" and affects all supported versions of Windows. The second bulletin, rated "important," only impacts Windows Vista.

Not included among the Patch Tuesday fixes for the month is a patch for the Windows Graphics Rendering Engine the company recently warned about. According to Microsoft, the Graphics Rendering Engine bug can potentially be used by an attacker to run arbitrary code. The bug was first revealed at a security conference in December, and exploit code has recently been added to the Metasploit Framework.

Also missing is a fix for an Internet Explorer vulnerability Microsoft issued an advisory about in December that exists due to the creation of uninitialized memory during a Cascading Style Sheets (CSS) function within IE. Under certain conditions, it is possible for an attacker to leverage the memory to execute code remotely.

According to Microsoft, the issue impacts IE 6, 7 and 8.

“This month we will not be releasing updates to address Security Advisory 2490606 (public vulnerability affecting Windows Graphics Rendering Engine) and Security Advisory 2488013 (public vulnerability affecting Internet Explorer),” blogged Carlene Chmaj, senior response communications manager for Microsoft Trustworthy Computing.

"We continue to actively monitor both vulnerabilities and for Advisory 2488013 we have started to see targeted attacks," Chmaj continued. "If customers have not already, we recommend they consult the Advisory for the mitigation recommendations. We continue to watch the threat landscape very closely and if the situation changes, we will post updates here on the MSRC blog."

Also unaddressed is the Internet Explorer vulnerability uncovered by Google security engineer Michal Zalewski that was publicized earlier this week, as well as vulnerabilities impacting the Microsoft WMI Administrative Tools WMI Object Viewer ActiveX Control security researchers warned about last month.

The Patch Tuesday updates are slated to be released Jan. 11.

SOURCE
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  White House released a list of staff salaries for 2011 Mach 1 Club 5 16,435 07-10-2011, 02:24 AM
Last Post: Klutch
  Microsoft Working to Restore Hotmail Service Mach 1 Club 0 6,960 01-04-2011, 03:36 AM
Last Post: Mach 1 Club
  Windows 7 Keyboard Shortcut List Mach 1 Club 0 6,938 06-22-2010, 05:39 PM
Last Post: Mach 1 Club

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Latest Threads
"Jacobra"
Last Post: JTS71 Mach1
06-30-2023 11:13 PM
» Replies: 86
» Views: 152522
My old Queensland Ambulance
Last Post: JTS71 Mach1
06-30-2023 11:08 PM
» Replies: 5
» Views: 2421
New member from San Jose, CA
Last Post: JTS71 Mach1
05-09-2023 08:39 AM
» Replies: 12
» Views: 4491
Saving Seatbelts
Last Post: Jim
02-19-2023 10:23 PM
» Replies: 2
» Views: 9309
Sourcing new wheels
Last Post: JTS71 Mach1
01-25-2023 02:34 PM
» Replies: 1
» Views: 2180
Shaker Air Filter
Last Post: JTS71 Mach1
01-08-2023 02:24 AM
» Replies: 3
» Views: 1674
1971 Mach 1 parting out interior parts -...
Last Post: ylwhrse
12-22-2022 01:38 PM
» Replies: 0
» Views: 779
Painting
Last Post: Rare Pony
12-14-2022 06:24 PM
» Replies: 2
» Views: 2171
WELCOME ALL NEW MEMBERS INTRODUCE YOURSE...
Last Post: JTS71 Mach1
08-31-2022 01:36 PM
» Replies: 82
» Views: 159046
1970 mach 1 matching numbers
Last Post: Kstweeter
08-31-2022 10:31 AM
» Replies: 1
» Views: 1246
Brake booster/servo hose length
Last Post: JTS71 Mach1
08-23-2022 09:40 AM
» Replies: 7
» Views: 3393
New Member
Last Post: JTS71 Mach1
08-20-2022 11:18 AM
» Replies: 2
» Views: 1743
smooth window operation on 70 Mach
Last Post: CUSTOMMISER
08-15-2022 12:10 PM
» Replies: 2
» Views: 1707
Blinkers on solid
Last Post: busted21
08-09-2022 03:58 AM
» Replies: 14
» Views: 9245
Blinkers on solid when lights on.
Last Post: JTS71 Mach1
08-08-2022 12:06 PM
» Replies: 1
» Views: 1893
351 cj running hot
Last Post: busted21
08-08-2022 12:13 AM
» Replies: 5
» Views: 3731
What's One More Iron In The Fire!
Last Post: Steven Harris
07-22-2022 01:39 PM
» Replies: 124
» Views: 241181
Major Winter projects
Last Post: JTS71 Mach1
07-09-2022 05:12 AM
» Replies: 49
» Views: 22478
Happy Fathers Day!!!
Last Post: JTS71 Mach1
06-20-2022 02:34 AM
» Replies: 0
» Views: 1842
1969 Raven Black 390 Looking For
Last Post: mason1958
06-11-2022 09:48 AM
» Replies: 10
» Views: 15577

>