<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Crescent City Networking &#187; Microsoft Windows</title>
	<atom:link href="http://ccnetworking.com/wordpress/archives/tag/microsoft-windows/feed" rel="self" type="application/rss+xml" />
	<link>http://ccnetworking.com/wordpress</link>
	<description></description>
	<lastBuildDate>Wed, 28 Jul 2010 16:31:39 +0000</lastBuildDate>
	
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Security Advisory 2286198 Updated</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/07/20/security-advisory.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/07/20/security-advisory.aspx#comments</comments>
		<pubDate>Wed, 21 Jul 2010 00:44:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Attack]]></category>
		<category><![CDATA[Attack Vector]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Mitigations]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Workarounds]]></category>
		<category><![CDATA[Zero-Day Exploit]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3345436</guid>
		<description><![CDATA[<p>We've just updated <a target="_blank" href="http://www.microsoft.com/technet/security/advisory/2286198.mspx">Microsoft Security Advisory 2286198</a> to let customers know that we now have an automated "Fix It" available to implement the workaround we first outlined in our original posting on Friday, July 16, 2010. More information is available in the <a href="http://support.microsoft.com/kb/2286198">KB article 2286198</a>, but in summary running the "Fix It" can help prevent attacks attempting to exploit this vulnerability. This workaround will disable some icons from being displayed so we recommend administrators test this before deploying it widely.</p>
<p>We've also updated the advisory with new information regarding possible attack vectors. Finally, we have included a new workaround that customers can implement to help protect their environments: blocking the download of LNK and PIF files (note that these files can be transferred over WebDav, so be sure to account for this protocol if you implement this workaround).</p>
<p>As always, we encourage customers to review this new information and to evaluate it for their environment while our teams continue their work to develop a security update that addresses this vulnerability.</p>
<p>As always, we'll update the security advisory and this blog with new information as it becomes available.</p>
<p>Thanks,</p>
<p>Christopher Budd</p>
<p>Follow us on Twitter: <a href="http://www.twitter.com/msftsecresponse">@MSFTSecResponse</a></p><div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3345436" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p>We've just updated <a href="http://www.microsoft.com/technet/security/advisory/2286198.mspx">Microsoft Security Advisory 2286198</a> to let customers know that we now have an automated "Fix It" available to implement the workaround we first outlined in our original posting on Friday, July 16, 2010. More information is available in the <a href="http://support.microsoft.com/kb/2286198">KB article 2286198</a>, but in summary running the "Fix It" can help prevent attacks attempting to exploit this vulnerability. This workaround will disable some icons from being displayed so we recommend administrators test this before deploying it widely.</p>
<p>We've also updated the advisory with new information regarding possible attack vectors. Finally, we have included a new workaround that customers can implement to help protect their environments: blocking the download of LNK and PIF files (note that these files can be transferred over WebDav, so be sure to account for this protocol if you implement this workaround).</p>
<p>As always, we encourage customers to review this new information and to evaluate it for their environment while our teams continue their work to develop a security update that addresses this vulnerability.</p>
<p>As always, we'll update the security advisory and this blog with new information as it becomes available.</p>
<p>Thanks,</p>
<p>Christopher Budd</p>
<p>Follow us on Twitter: <a href="http://www.twitter.com/msftsecresponse">@MSFTSecResponse</a></p><div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3345436" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/07/20/security-advisory.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>July 2010 Security Bulletin Release</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/07/13/july-2010-security-bulletin-release.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/07/13/july-2010-security-bulletin-release.aspx#comments</comments>
		<pubDate>Tue, 13 Jul 2010 16:38:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Attack]]></category>
		<category><![CDATA[Emerging Threat]]></category>
		<category><![CDATA[Microsoft Office]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Security Bulletin]]></category>
		<category><![CDATA[Security Update]]></category>
		<category><![CDATA[video]]></category>
		<category><![CDATA[Zero-Day Exploit]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3343928</guid>
		<description><![CDATA[<p>Hi everyone. As part of our usual monthly update cycle, today Microsoft is releasing four security bulletins to address five vulnerabilities in Windows and Microsoft Office. </p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-042.mspx">MS10-042</a> resolves a publicly disclosed and actively exploited vulnerability discussed in Security Advisory <a href="http://www.microsoft.com/technet/security/advisory/2219475.mspx">2219475</a>. The update addresses an issue in the Windows Help and Support Center feature included in Windows XP and Windows Server 2003. Even though this issue affects Server 2003, we have not found an attack vector on that platform so the severity rating is Low. Windows XP customers should install this update as soon as possible. </p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-043.mspx">MS10-043</a> resolves a publicly disclosed vulnerability in the Canonical Display Driver (cdd.dll). Although it is possible that the vulnerability could allow code execution, successful code execution is unlikely due to memory randomization. In most scenarios, it is much more likely that an attacker who successfully exploited this vulnerability could cause a Denial of Service (DoS). Note that this bulletin affects only 64-bit versions of Windows 7 and Windows Server 2008 R2 with Windows Aero enabled. Aero is not installed by default on Server 2008 R2. We are not aware of any active attacks against this issue.</p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-044.mspx">MS10-044</a> resolves two privately reported vulnerabilities in Microsoft Office Access ActiveX Controls. This issue could allow remote code execution if a customer with Access installed opened a specially crafted Office file, or viewed a Web page that instantiated Access ActiveX controls. This security update is rated Critical for supported editions of Microsoft Office Access 2003 and Microsoft Office Access 2007.</p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-045.mspx">MS10-045</a> This security update resolves another privately reported vulnerability that could allow remote code execution if a customer opened an attachment in a specially crafted e-mail message using an affected version of Outlook -- Microsoft Outlook 2002, Microsoft Office Outlook 2003, or Microsoft Office Outlook 2007. </p>
<p>The following video provides an overview of these four bulletins:</p>
<table cellpadding="2" border="0" style="width: 600px">
<tbody>
<tr>
<td>





</td>
<td>
<p>Other listening and viewing options:</p>
<ul type="disc" style="margin-top: 0in">
<li class="MsoNormal"><span style="font-family: 'Segoe UI','sans-serif';font-size: 12.5pt"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.wmv" title="Windows Media Video (WMV)"><span style="font-family: arial,helvetica,sans-serif"><span style="font-size: x-small">Windows Media Video (WMV)</span></span></a></span></li>
<li class="MsoNormal"><span style="font-family: 'Segoe UI','sans-serif';font-size: 12.5pt"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.wma" title="Windows Media Audio (WMA)"><span style="font-family: arial,helvetica,sans-serif"><span style="font-size: x-small">Windows Media Audio (WMA)</span></span></a></span></li>
<li class="MsoNormal"><span style="font-family: 'Segoe UI','sans-serif';font-size: 12.5pt"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.mp4" title="iPod Video (MP4)"><span style="font-family: arial,helvetica,sans-serif"><span style="font-size: x-small">iPod Video (MP4)</span></span></a></span></li>
<li class="MsoNormal"><span style="font-family: 'Segoe UI','sans-serif';font-size: 12.5pt"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.mp3" title="MP3 Audio"><span style="font-family: arial,helvetica,sans-serif"><span style="font-size: x-small">MP3 Audio</span></span></a></span></li>
<li class="MsoNormal"><span style="font-family: 'Segoe UI','sans-serif';font-size: 12.5pt"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_2MB_edge.wmv" title="High Quality WMV (2.5 Mbps)"><span style="font-family: arial,helvetica,sans-serif"><span style="font-size: x-small">High Quality WMV (2.5 Mbps)</span></span></a></span></li>
<li class="MsoNormal"><span style="font-family: 'Segoe UI','sans-serif';font-size: 12.5pt"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_Zune_edge.wmv" title="Zune Video (WMV)"><span style="font-family: arial,helvetica,sans-serif"><span style="font-size: x-small">Zune Video (WMV)</span></span></a></span></li>
</ul>
</td>
</tr>
</tbody>
</table>
<p>Both Windows vulnerabilities and one Office vulnerability have Critical severity ratings, while the second Office vulnerability carries an Important severity rating.</p>
<p><a href="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/7737.se83773621.png"><img height="239" width="425" src="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/7737.se83773621.png" alt="July 2010 Risk and Impact" border="0" /></a></p>
<p>As always, Microsoft recommends that customers test and deploy all security updates as soon as possible. We recommend that deployment priority be given to MS10-042 and MS10-045. </p>
<p><a href="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/6253.dp3897663.png"><img height="239" width="425" src="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/6253.dp3897663.png" alt="July 2010 Deployment Priority" border="0" /></a></p>
<p>For a more in-depth look at these issues, our Security Research &#38; Defense (SRD) team has taken a closer look at both these bulletins <a href="http://blogs.technet.com/b/srd/">on its blog</a>.</p>
<p>We also include one bulletin re-release, <a href="http://www.microsoft.com/technet/security/bulletin/ms10-024.mspx">MS10-024</a>, in this cycle. The re-release will address the issue previously noted in KB976323, in which the installation of the bulletin reset user-configured settings for SMTP servers on Windows Server 2008-based systems with Internet Information Services (IIS) installed. Users who have previously installed MS01-024 will not be offered the re-released update. </p>
<p>Today also marks the end of support for Windows XP Service Pack 2. Customers who have not migrated from this version are encouraged to upgrade immediately, either to Service Pack 3 or to Windows 7. In addition, after today's bulletin release, we will no longer provide support for all Windows 2000 products as we have reached the end of extended support. </p>
<p>More information about the security updates can be found on the Microsoft Security Bulletin summary <a href="http://www.microsoft.com/technet/security/bulletin/ms10-jul.mspx">webpage</a>.&#160; Our <a href="http://technet.microsoft.com/en-us/security/cc998259.aspx">Exploitability Index</a> provides additional information to help customers prioritize deployment of the monthly security bulletins. </p>
<p>Please join the monthly technical webcast to learn more about the May 2010 security bulletin release. The webcast is scheduled for Wednesday, July 14, 2010 at 11:00 a.m. PDT (UTC -7). Registration is available <a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032454299&#38;EventCategory=4&#38;culture=en-US&#38;CountryCode=US">here</a>. </p>
<p>Reminder: You can follow the team for late breaking news and updates on the threat landscape here: <a href="http://www.twitter.com/msftsecresponse">@MSFTSecResponse</a>.</p>
<p>Thanks!</p>
<p>Jerry Bryant <br />Group Manager, Response Communications</p><div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3343928" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p>Hi everyone. As part of our usual monthly update cycle, today Microsoft is releasing four security bulletins to address five vulnerabilities in Windows and Microsoft Office. </p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-042.mspx">MS10-042</a> resolves a publicly disclosed and actively exploited vulnerability discussed in Security Advisory <a href="http://www.microsoft.com/technet/security/advisory/2219475.mspx">2219475</a>. The update addresses an issue in the Windows Help and Support Center feature included in Windows XP and Windows Server 2003. Even though this issue affects Server 2003, we have not found an attack vector on that platform so the severity rating is Low. Windows XP customers should install this update as soon as possible. </p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-043.mspx">MS10-043</a> resolves a publicly disclosed vulnerability in the Canonical Display Driver (cdd.dll). Although it is possible that the vulnerability could allow code execution, successful code execution is unlikely due to memory randomization. In most scenarios, it is much more likely that an attacker who successfully exploited this vulnerability could cause a Denial of Service (DoS). Note that this bulletin affects only 64-bit versions of Windows 7 and Windows Server 2008 R2 with Windows Aero enabled. Aero is not installed by default on Server 2008 R2. We are not aware of any active attacks against this issue.</p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-044.mspx">MS10-044</a> resolves two privately reported vulnerabilities in Microsoft Office Access ActiveX Controls. This issue could allow remote code execution if a customer with Access installed opened a specially crafted Office file, or viewed a Web page that instantiated Access ActiveX controls. This security update is rated Critical for supported editions of Microsoft Office Access 2003 and Microsoft Office Access 2007.</p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-045.mspx">MS10-045</a> This security update resolves another privately reported vulnerability that could allow remote code execution if a customer opened an attachment in a specially crafted e-mail message using an affected version of Outlook -- Microsoft Outlook 2002, Microsoft Office Outlook 2003, or Microsoft Office Outlook 2007. </p>
<p>The following video provides an overview of these four bulletins:</p>
<table cellpadding="2" border="0" style="width: 600px;">
<tbody>
<tr>
<td>
<object type="application/x-silverlight-2" height="240" width="320" data="data:application/x-oleobject;base64,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">
<param value="http://edge.technet.com/App_Themes/default/vp09_06_22.xap" name="source" />
<param value="m=http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.wmv,autostart=false,autohide=true,showembed=true, thumbnail=http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_320_edge.png, postid=28614" name="initParams" />
<param value="#00FFFFFF" name="background" />
</object>
</td>
<td>
<p>Other listening and viewing options:</p>
<ul type="disc" style="margin-top: 0in;">
<li class="MsoNormal" style="margin: 7.5pt 15pt 0pt 0in; color: black; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in;"><span style="font-family: 'Segoe UI','sans-serif'; font-size: 12.5pt; mso-fareast-font-family: 'Times New Roman';"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.wmv" title="Windows Media Video (WMV)"><span style="font-family: arial,helvetica,sans-serif;"><span style="font-size: x-small;">Windows Media Video (WMV)</span></span></a><o :p></o></span></li>
<li class="MsoNormal" style="margin: 7.5pt 15pt 0pt 0in; color: black; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in;"><span style="font-family: 'Segoe UI','sans-serif'; font-size: 12.5pt; mso-fareast-font-family: 'Times New Roman';"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.wma" title="Windows Media Audio (WMA)"><span style="font-family: arial,helvetica,sans-serif;"><span style="font-size: x-small;">Windows Media Audio (WMA)</span></span></a><o :p></o></span></li>
<li class="MsoNormal" style="margin: 7.5pt 15pt 0pt 0in; color: black; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in;"><span style="font-family: 'Segoe UI','sans-serif'; font-size: 12.5pt; mso-fareast-font-family: 'Times New Roman';"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.mp4" title="iPod Video (MP4)"><span style="font-family: arial,helvetica,sans-serif;"><span style="font-size: x-small;">iPod Video (MP4)</span></span></a><o :p></o></span></li>
<li class="MsoNormal" style="margin: 7.5pt 15pt 0pt 0in; color: black; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in;"><span style="font-family: 'Segoe UI','sans-serif'; font-size: 12.5pt; mso-fareast-font-family: 'Times New Roman';"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_edge.mp3" title="MP3 Audio"><span style="font-family: arial,helvetica,sans-serif;"><span style="font-size: x-small;">MP3 Audio</span></span></a><o :p></o></span></li>
<li class="MsoNormal" style="margin: 7.5pt 15pt 0pt 0in; color: black; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in;"><span style="font-family: 'Segoe UI','sans-serif'; font-size: 12.5pt; mso-fareast-font-family: 'Times New Roman';"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_2MB_edge.wmv" title="High Quality WMV (2.5 Mbps)"><span style="font-family: arial,helvetica,sans-serif;"><span style="font-size: x-small;">High Quality WMV (2.5 Mbps)</span></span></a><o :p></o></span></li>
<li class="MsoNormal" style="margin: 7.5pt 15pt 0pt 0in; color: black; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in;"><span style="font-family: 'Segoe UI','sans-serif'; font-size: 12.5pt; mso-fareast-font-family: 'Times New Roman';"><a href="http://ecn.channel9.msdn.com/o9/edge/4/1/6/8/2/msrcjuly2010sbov_Zune_edge.wmv" title="Zune Video (WMV)"><span style="font-family: arial,helvetica,sans-serif;"><span style="font-size: x-small;">Zune Video (WMV)</span></span></a><o :p></o></span></li>
</ul>
</td>
</tr>
</tbody>
</table>
<p>Both Windows vulnerabilities and one Office vulnerability have Critical severity ratings, while the second Office vulnerability carries an Important severity rating.</p>
<p><a minmax_bound="true" href="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/7737.se83773621.png"><img minmax_bound="true" height="239" width="425" src="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/7737.se83773621.png" alt="July 2010 Risk and Impact" border="0" id="ctl00___ctl00___ctl00_ctl00_bcr_PictureDetails1___detailsImage_SmallThumb3331833" /></a></p>
<p>As always, Microsoft recommends that customers test and deploy all security updates as soon as possible. We recommend that deployment priority be given to MS10-042 and MS10-045. </p>
<p><a minmax_bound="true" href="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/6253.dp3897663.png"><img minmax_bound="true" height="239" width="425" src="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/6253.dp3897663.png" alt="July 2010 Deployment Priority" border="0" id="ctl00___ctl00___ctl00_ctl00_bcr_PictureDetails1___detailsImage_SmallThumb3331833" /></a></p>
<p>For a more in-depth look at these issues, our Security Research &amp; Defense (SRD) team has taken a closer look at both these bulletins <a href="http://blogs.technet.com/b/srd/">on its blog</a>.</p>
<p>We also include one bulletin re-release, <a href="http://www.microsoft.com/technet/security/bulletin/ms10-024.mspx">MS10-024</a>, in this cycle. The re-release will address the issue previously noted in KB976323, in which the installation of the bulletin reset user-configured settings for SMTP servers on Windows Server 2008-based systems with Internet Information Services (IIS) installed. Users who have previously installed MS01-024 will not be offered the re-released update. </p>
<p>Today also marks the end of support for Windows XP Service Pack 2. Customers who have not migrated from this version are encouraged to upgrade immediately, either to Service Pack 3 or to Windows 7. In addition, after today's bulletin release, we will no longer provide support for all Windows 2000 products as we have reached the end of extended support. </p>
<p>More information about the security updates can be found on the Microsoft Security Bulletin summary <a href="http://www.microsoft.com/technet/security/bulletin/ms10-jul.mspx">webpage</a>.&nbsp; Our <a href="http://technet.microsoft.com/en-us/security/cc998259.aspx">Exploitability Index</a> provides additional information to help customers prioritize deployment of the monthly security bulletins. </p>
<p>Please join the monthly technical webcast to learn more about the May 2010 security bulletin release. The webcast is scheduled for Wednesday, July 14, 2010 at 11:00 a.m. PDT (UTC -7). Registration is available <a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032454299&amp;EventCategory=4&amp;culture=en-US&amp;CountryCode=US">here</a>. </p>
<p>Reminder: You can follow the team for late breaking news and updates on the threat landscape here: <a href="http://www.twitter.com/msftsecresponse">@MSFTSecResponse</a>.</p>
<p>Thanks!</p>
<p>Jerry Bryant <br />Group Manager, Response Communications</p><div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3343928" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/07/13/july-2010-security-bulletin-release.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>July 2010 Bulletin Release Advance Notification</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/07/08/july-2010-bulletin-release-advance-notification.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/07/08/july-2010-bulletin-release-advance-notification.aspx#comments</comments>
		<pubDate>Thu, 08 Jul 2010 16:57:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft Office]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Security Bulletin]]></category>
		<category><![CDATA[Security Update]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3342791</guid>
		<description><![CDATA[<p>Hi everyone. Today we're releasing our <a href="http://www.microsoft.com/technet/security/bulletin/ms10-jul.mspx">advance notification</a> for the July security bulletin release, which is scheduled for Tuesday, July 13. This month's release includes four bulletins addressing five vulnerabilities.</p>
<ul type="disc">
<li>Two bulletins, both with a severity rating of Critical, affect Windows. </li>
<li>Two of the bulletins affect Microsoft Office; of those, one carries a Critical <a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">severity rating</a> and one is rated Important. </li>
</ul>
<p>As always, we recommend that customers review the ANS summary page for more information and prepare for the testing and deployment of these bulletins as soon as possible.</p>
<p>We will close out two Security Advisories this month.</p>
<ul type="disc">
<li>We are closing Security Advisory 2028859 (<a href="http://www.microsoft.com/technet/security/advisory/2028859.mspx">Vulnerability in Canonical Display Driver Could Allow Remote Code Execution</a>) in the July bulletins. </li>
<li>We are also closing Security Advisory 2219475 (<a href="http://www.microsoft.com/technet/security/advisory/2219475.mspx">Vulnerability in Windows Help and Support Center Could Allow Remote Code Execution</a>) with a comprehensive update that addresses the issue currently under attack. </li>
</ul>
<p>Please join Adrian Stone and me for a public webcast on Wednesday. We'll go into detail about the bulletins and answer questions live on the air. Register at the link below:</p>
<p>Date: Wednesday, July 14<br />Time: 11:00 a.m. PDT (UTC -7) <br />Registration: <a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032454299">https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032454299</a></p>
<p>Also, July marks the end of Microsoft support for the Windows 2000 and Windows XP SP2 platforms. Customers should actively seek out either a supported operating system or the latest service pack in order to keep receiving necessary security updates. </p>
<p>Thanks,</p>
<p>Jerry Bryant<br />Group Manager, Response Communications</p>
<p>Follow us on Twitter: <a href="http://twitter.com/msftsecresponse">@MSFTSecResponse</a></p>
<p><em>Updated July 9, 2010 to correct transposition concerning number of critical bulletins for Windows (accurately, two)&#160;and MS Office (accurately, one).</em></p><div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3342791" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p>Hi everyone. Today we're releasing our <a href="http://www.microsoft.com/technet/security/bulletin/ms10-jul.mspx">advance notification</a> for the July security bulletin release, which is scheduled for Tuesday, July 13. This month's release includes four bulletins addressing five vulnerabilities.</p>
<ul type="disc">
<li>Two bulletins, both with a severity rating of Critical, affect Windows. </li>
<li>Two of the bulletins affect Microsoft Office; of those, one carries a Critical <a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">severity rating</a> and one is rated Important. </li>
</ul>
<p>As always, we recommend that customers review the ANS summary page for more information and prepare for the testing and deployment of these bulletins as soon as possible.</p>
<p>We will close out two Security Advisories this month.</p>
<ul type="disc">
<li>We are closing Security Advisory 2028859 (<a href="http://www.microsoft.com/technet/security/advisory/2028859.mspx">Vulnerability in Canonical Display Driver Could Allow Remote Code Execution</a>) in the July bulletins. </li>
<li>We are also closing Security Advisory 2219475 (<a href="http://www.microsoft.com/technet/security/advisory/2219475.mspx">Vulnerability in Windows Help and Support Center Could Allow Remote Code Execution</a>) with a comprehensive update that addresses the issue currently under attack. </li>
</ul>
<p>Please join Adrian Stone and me for a public webcast on Wednesday. We'll go into detail about the bulletins and answer questions live on the air. Register at the link below:</p>
<p>Date: Wednesday, July 14<br />Time: 11:00 a.m. PDT (UTC -7) <br />Registration: <a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032454299">https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032454299</a></p>
<p>Also, July marks the end of Microsoft support for the Windows 2000 and Windows XP SP2 platforms. Customers should actively seek out either a supported operating system or the latest service pack in order to keep receiving necessary security updates. </p>
<p>Thanks,</p>
<p>Jerry Bryant<br />Group Manager, Response Communications</p>
<p>Follow us on Twitter: <a href="http://twitter.com/msftsecresponse">@MSFTSecResponse</a></p>
<p><em>Updated July 9, 2010 to correct transposition concerning number of critical bulletins for Windows (accurately, two)&nbsp;and MS Office (accurately, one).</em></p><div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3342791" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/07/08/july-2010-bulletin-release-advance-notification.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Advisory 2219475 Released</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/06/10/security-advisory-2219475-released.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/06/10/security-advisory-2219475-released.aspx#comments</comments>
		<pubDate>Thu, 10 Jun 2010 21:08:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Responsible Disclosure]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Zero-Day Exploit]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3337464</guid>
		<description><![CDATA[<p>Hello - </p>
<p>We have released <a href="http://www.microsoft.com/technet/security/advisory/2219475.mspx">Security Advisory 2219475</a>, addressing the vulnerability in the Windows Help and Support Center function in Windows XP and Windows Server 2003. We are not aware of any active attacks at this time. Customers running Windows Vista, Windows 7, Windows Server 2008 and Windows Server 2008 R2 are not vulnerable to this issue or at risk of attack.</p>
<p>We recommend that customers follow the guidance in the Advisory, noting the mitigations and workarounds.&#160; The Security Research and Defense team has a <a href="http://blogs.technet.com/b/srd/">blog</a> with more technical details about this issue. &#160;</p>
<p>As always, Microsoft strives to work with security researchers to address vulnerabilities in our software. This helps ensure that customers receive comprehensive, high-quality updates before cyber criminals learn of - and work to exploit - a vulnerability. Responsible disclosure protects the computer ecosystem and individual computer users from harm.</p>
<p>We are actively working with partners in our <a href="http://www.microsoft.com/security/msrc/mapp/overview.mspx">Microsoft Active Protections Program (MAPP)</a> to provide information that they can use to provide broader protections to customers. Anyone believed to have been affected by this issue can visit: <a href="http://support.microsoft.com/">http://support.microsoft.com</a> and should contact the national law enforcement agency in their country.&#160; </p>
<p>We will continue to share updates on this blog and through our Twitter feed (<a href="http://www.twitter.com/msftsecresponse">@msftsecresponse</a>). </p>
<p>Thanks,</p>
<p>Jerry Bryant<br />Group Manager, Response Communications </p><div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3337464" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p>Hello - </p>
<p>We have released <a href="http://www.microsoft.com/technet/security/advisory/2219475.mspx">Security Advisory 2219475</a>, addressing the vulnerability in the Windows Help and Support Center function in Windows XP and Windows Server 2003. We are not aware of any active attacks at this time. Customers running Windows Vista, Windows 7, Windows Server 2008 and Windows Server 2008 R2 are not vulnerable to this issue or at risk of attack.</p>
<p>We recommend that customers follow the guidance in the Advisory, noting the mitigations and workarounds.&nbsp; The Security Research and Defense team has a <a href="http://blogs.technet.com/b/srd/">blog</a> with more technical details about this issue. &nbsp;</p>
<p>As always, Microsoft strives to work with security researchers to address vulnerabilities in our software. This helps ensure that customers receive comprehensive, high-quality updates before cyber criminals learn of - and work to exploit - a vulnerability. Responsible disclosure protects the computer ecosystem and individual computer users from harm.</p>
<p>We are actively working with partners in our <a href="http://www.microsoft.com/security/msrc/mapp/overview.mspx">Microsoft Active Protections Program (MAPP)</a> to provide information that they can use to provide broader protections to customers. Anyone believed to have been affected by this issue can visit: <a href="http://support.microsoft.com/">http://support.microsoft.com</a> and should contact the national law enforcement agency in their country.&nbsp; </p>
<p>We will continue to share updates on this blog and through our Twitter feed (<a href="http://www.twitter.com/msftsecresponse">@msftsecresponse</a>). </p>
<p>Thanks,</p>
<p>Jerry Bryant<br />Group Manager, Response Communications </p><div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3337464" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/06/10/security-advisory-2219475-released.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows Help Vulnerability Disclosure</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/06/10/windows-help-vulnerability-disclosure.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/06/10/windows-help-vulnerability-disclosure.aspx#comments</comments>
		<pubDate>Thu, 10 Jun 2010 19:01:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft Active Protections Program (MAPP)]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Mitigations]]></category>
		<category><![CDATA[Responsible Disclosure]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Workarounds]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3337430</guid>
		<description><![CDATA[<p>Hello,</p>
<p>We are aware of a publicly disclosed vulnerability affecting Windows XP and Windows Server 2003. We are not aware of any current exploitation of this issue and customers running Windows Vista, Windows 7, Windows Server 2008, and Windows Server 2008 R2, are <b>not vulnerable to this issue, or at risk of attack. </b></p>
<p>This issue was reported to us on June 5<sup>th</sup>, 2010 by a Google security researcher and then made public less than four days later, on June 9<sup>th</sup>, 2010. &#160;Public disclosure of the details of this vulnerability and how to exploit it, without giving us time to resolve the issue for our potentially affected customers, makes broad attacks more likely and puts customers at risk</p>
<p>One of the main reasons we and many others across the industry advocate for responsible disclosure is that the software vendor who wrote the code is in the best position to fully understand the root cause. While this was a good find by the Google researcher, it turns out that the analysis is incomplete and the actual workaround Google suggested is easily circumvented. In some cases, more time is required for a comprehensive update that cannot be bypassed, and does not cause quality problems.&#160; </p>
<p>We recognize that researchers across the entire industry are a vital part of identifying issues and continually improving security, and we continue to ask researchers to work with us through responsible disclosure to help minimize the risk to customers while improving security.</p>
<p>We have initiated our emergency response process and will continue to monitor the threat landscape for any signs of attack against this issue. Our Microsoft Active Protections Program (MAPP) partners have detailed information about this vulnerability and are developing protections where possible. </p>
<p>Update: customers can follow guidance in <a href="http://www.microsoft.com/technet/security/advisory/2219475.mspx">Security Advisory 2219475</a> to protect against this issue.</p>
<p>Update 6/25/2010:<br />The security researcher who disclosed this vulnerability has expressed concerns regarding the inclusion of his employer&#8217;s name in relation to this vulnerability.&#160; While there continues to be a difference of opinion, we have included both this researcher&#8217;s view and our view in this blog post. His point of view is that he reported the vulnerability not as an employee, but as an individual action by him as an independent researcher. </p>
<p>At Microsoft we do not believe that its feasible to disassociate the two.&#160; We believe the actions of employees, when related to the work they are doing at a technology company, should reflect the policies of their employer.&#160; </p>
<p>Despite these differences of opinion, we continue an open dialog with this researcher and ask the security researcher community to continue working with us to help protect customers.</p>
<p class="MsoPlainText" style="margin: 0in 0in 0pt">
</p><p class="MsoPlainText" style="margin: 0in 0in 0pt"><span style="font-size: small"><span style="font-family: Calibri"></span></span></p>
Mike Reavey<br />Director, MSRC<div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3337430" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p>Hello,</p>
<p>We are aware of a publicly disclosed vulnerability affecting Windows XP and Windows Server 2003. We are not aware of any current exploitation of this issue and customers running Windows Vista, Windows 7, Windows Server 2008, and Windows Server 2008 R2, are <b>not vulnerable to this issue, or at risk of attack. </b></p>
<p>This issue was reported to us on June 5<sup>th</sup>, 2010 by a Google security researcher and then made public less than four days later, on June 9<sup>th</sup>, 2010. &nbsp;Public disclosure of the details of this vulnerability and how to exploit it, without giving us time to resolve the issue for our potentially affected customers, makes broad attacks more likely and puts customers at risk</p>
<p>One of the main reasons we and many others across the industry advocate for responsible disclosure is that the software vendor who wrote the code is in the best position to fully understand the root cause. While this was a good find by the Google researcher, it turns out that the analysis is incomplete and the actual workaround Google suggested is easily circumvented. In some cases, more time is required for a comprehensive update that cannot be bypassed, and does not cause quality problems.&nbsp; </p>
<p>We recognize that researchers across the entire industry are a vital part of identifying issues and continually improving security, and we continue to ask researchers to work with us through responsible disclosure to help minimize the risk to customers while improving security.</p>
<p>We have initiated our emergency response process and will continue to monitor the threat landscape for any signs of attack against this issue. Our Microsoft Active Protections Program (MAPP) partners have detailed information about this vulnerability and are developing protections where possible. </p>
<p>Update: customers can follow guidance in <a href="http://www.microsoft.com/technet/security/advisory/2219475.mspx">Security Advisory 2219475</a> to protect against this issue.</p>
<p>Update 6/25/2010:<br />The security researcher who disclosed this vulnerability has expressed concerns regarding the inclusion of his employer&rsquo;s name in relation to this vulnerability.&nbsp; While there continues to be a difference of opinion, we have included both this researcher&rsquo;s view and our view in this blog post. His point of view is that he reported the vulnerability not as an employee, but as an individual action by him as an independent researcher. </p>
<p>At Microsoft we do not believe that its feasible to disassociate the two.&nbsp; We believe the actions of employees, when related to the work they are doing at a technology company, should reflect the policies of their employer.&nbsp; </p>
<p>Despite these differences of opinion, we continue an open dialog with this researcher and ask the security researcher community to continue working with us to help protect customers.</p>
<p class="MsoPlainText" style="margin: 0in 0in 0pt;">
</p><p class="MsoPlainText" style="margin: 0in 0in 0pt;"><span style="font-size: small;"><span style="font-family: Calibri;"><o :p></o></span></span></p>
Mike Reavey<br />Director, MSRC<div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3337430" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/06/10/windows-help-vulnerability-disclosure.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>June 2010 Security Bulletin Release</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/06/08/june-2010-security-bulletin-release.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/06/08/june-2010-security-bulletin-release.aspx#comments</comments>
		<pubDate>Tue, 08 Jun 2010 13:47:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[ActiveX]]></category>
		<category><![CDATA[Exploitability]]></category>
		<category><![CDATA[Exploitability Index]]></category>
		<category><![CDATA[Internet Explorer (IE)]]></category>
		<category><![CDATA[Killbit]]></category>
		<category><![CDATA[Microsoft Office]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Risk Assessment]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Security Bulletin]]></category>
		<category><![CDATA[Security Update]]></category>
		<category><![CDATA[video]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3336719</guid>
		<description><![CDATA[<p>Hi everyone,</p>
<p>Today, as part of our regular monthly security bulletin release cycle, we released 10 bulletins to address 34 total vulnerabilities in Windows, Microsoft Office (including SharePoint), Internet Explorer (IE), Internet Information Services (IIS), and the .NET Framework. Only three of these bulletins get our maximum severity rating of Critical. The rest are rated Important. However, we encourage customers to test and deploy all applicable security updates as soon as possible. </p>
<p>The three Critical bulletins get our highest deployment priority this month. Those are:</p>
<ul>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-033.mspx">MS10-033</a> is a remote code execution vulnerability in both Quartz.dll and Asycfilt.dll and is rated Critical on all supported versions of Windows. Specially crafted media files could trigger the vulnerability when a user visits a web page or opens a malicious file. </li>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-034.mspx">MS10-034</a> is a cumulative update for ActiveX Kill Bits and is Critical on Windows 2000, XP, Vista, and Windows 7. There are two Microsoft controls we are applying Kill Bits for. Those are the Internet Explorer 8 Developer Tools control, and the Data Analyzer ActiveX control. The latter control is not installed by default. In addition, there are Kill Bits for four third-party controls. Please review the bulletin for additional details. </li>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-035.mspx">MS10-035</a> is a cumulative update for Internet Explorer. Of the six vulnerabilities addressed in the bulletin, only one, an information disclosure vulnerability, is publicly known. This issue was identified in <a href="http://www.microsoft.com/technet/security/advisory/980088.mspx">Security Advisory 980088</a>. We remain unaware of any active attacks against this vulnerability.</li>
</ul>
<p>In the video below, Adrian Stone and I go in to some detail on the three priority bulletins and explain why each should be at the top of your list to install:</p>
<table cellpadding="2" border="0" style="width: 550px">
<tbody>
<tr>
<td>





</td>
<td><span style="font-family: 'Segoe UI','sans-serif';font-size: 12.5pt"><span>
<p><span style="font-size: x-small">More listening and viewing options:</span></p>
<ul type="disc">
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.wmv" title="Windows Media Video (WMV)"><span style="font-size: x-small">Windows Media Video (WMV)</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.wma" title="Windows Media Audio (WMA)"><span style="font-size: x-small">Windows Media Audio (WMA)</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.mp4" title="iPod Video (MP4)"><span style="font-size: x-small">iPod Video (MP4)</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.mp3" title="MP3 Audio"><span style="font-size: x-small">MP3 Audio</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_2MB_edge.wmv" title="High Quality WMV (2.5 Mbps)"><span style="font-size: x-small">High Quality WMV (2.5 Mbps)</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_Zune_edge.wmv" title="Zune Video (WMV)"><span style="font-size: x-small">Zune Video (WMV)</span></a></li>
</ul>
</span></span></td>
</tr>
</tbody>
</table>
<p>Also, included below is the aggregate risk and impact slide for June. Note that we do not typically give an Exploitability Index rating for ActiveX Kill Bits but as stated, this update should be a high priority. </p>
<p><img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/4532.June-2010-Severity-and-Exploitability-Index.png" border="0" /></p>
<p>Here is our overall deployment priority information:</p>
<p><img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/8780.June-2010-Deployment-Priority.png" border="0" /></p>
<p>There are additional subtleties with specific bulletins that I want to discuss here to eliminate potential confusion:</p>
<ul>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-032.mspx">MS10-032</a> is an elevation of privilege issue in the affected Microsoft products. There is a potential remote vector if applications fail to properly request the length of the buffer when calling the affected API. All Microsoft applications make this call properly but there may be applications out there that do not. Regardless, installing this update addresses the issue for all vectors. See our <a href="http://blogs.technet.com/srd">Security Research &#38; Defense (SRD) blog</a> for more details on this one.</li>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-036.mspx">MS10-036</a> is a COM validation update. The issue could result in an attack through ActiveX in Office applications. This is not a new attack vector but the underlying vulnerability is and the bulletin addresses it. For additional clarification, I want to point out that Office XP does not have the architecture needed for the update. However, for customers running Office XP on Windows XP or newer operating systems, we have made a shim available that protects against the vulnerability. The shim can be installed via a Microsoft FixIt which can be downloaded from <a href="http://support.microsoft.com/kb/983235">KB983235</a>.</li>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-039.mspx">MS10-039</a> is a SharePoint related update, closing out <a href="http://www.microsoft.com/technet/security/advisory/983438.mspx">Security Advisory 983438</a> which addressed an elevation of privilege vulnerability. We are not currently aware of any attacks against this issue. </li>
</ul>
<p>As usual, our SRD team has written several blog posts that go in to details on some of this month's bulletins and I encourage customers to review those for additional insight: <a href="http://blogs.technet.com/b/srd">http://blogs.technet.com/b/srd</a>. </p>
<p>If you have questions about the June bulletins, please attend our public webcast tomorrow which I will be hosting with Adrian Stone from the MSRC. We will go in to additional details on each bulletin and along with a room full of subject matter experts attempt to address all of your questions. Here's how to register:</p>
<p>When: Wednesday June 10, 2010 at 11:00 a.m. PDT (UTC -7)<br />Registration: <a href="https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032395226">https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032395226</a></p>
<p>I hope you can join us then.</p>
<p>Thanks!</p>
<p>Jerry Bryant<br />Group Manager, Response Communications</p>
<p>Follow us on Twitter: <a href="http://www.twitter.com/msftsecresponse">@MSFTSecResponse</a></p><div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3336719" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p>Hi everyone,</p>
<p>Today, as part of our regular monthly security bulletin release cycle, we released 10 bulletins to address 34 total vulnerabilities in Windows, Microsoft Office (including SharePoint), Internet Explorer (IE), Internet Information Services (IIS), and the .NET Framework. Only three of these bulletins get our maximum severity rating of Critical. The rest are rated Important. However, we encourage customers to test and deploy all applicable security updates as soon as possible. </p>
<p>The three Critical bulletins get our highest deployment priority this month. Those are:</p>
<ul>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-033.mspx">MS10-033</a> is a remote code execution vulnerability in both Quartz.dll and Asycfilt.dll and is rated Critical on all supported versions of Windows. Specially crafted media files could trigger the vulnerability when a user visits a web page or opens a malicious file. </li>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-034.mspx">MS10-034</a> is a cumulative update for ActiveX Kill Bits and is Critical on Windows 2000, XP, Vista, and Windows 7. There are two Microsoft controls we are applying Kill Bits for. Those are the Internet Explorer 8 Developer Tools control, and the Data Analyzer ActiveX control. The latter control is not installed by default. In addition, there are Kill Bits for four third-party controls. Please review the bulletin for additional details. </li>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-035.mspx">MS10-035</a> is a cumulative update for Internet Explorer. Of the six vulnerabilities addressed in the bulletin, only one, an information disclosure vulnerability, is publicly known. This issue was identified in <a href="http://www.microsoft.com/technet/security/advisory/980088.mspx">Security Advisory 980088</a>. We remain unaware of any active attacks against this vulnerability.</li>
</ul>
<p>In the video below, Adrian Stone and I go in to some detail on the three priority bulletins and explain why each should be at the top of your list to install:</p>
<table cellpadding="2" border="0" style="width: 550px;">
<tbody>
<tr>
<td>
<object type="application/x-silverlight-2" height="240" width="320" data="data:application/x-oleobject;base64,QfXq3+HzJEysrJnDBxUISgAIAAASIQAAzhgAABQAAAAjADAAMABGAEYARgBGAEYARgAAAAAAAAAAAAAAAAAAAHQAAABoAHQAdABwADoALwAvAGUAZABnAGUALgB0AGUAYwBoAG4AZQB0AC4AYwBvAG0ALwBBAHAAcABfAFQAaABlAG0AZQBzAC8AZABlAGYAYQB1AGwAdAAvAHYAcAAwADkAXwAwADYAXwAyADIALgB4AGEAcAAAADwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAC8AQAAbQA9AGgAdAB0AHAAOgAvAC8AZQBjAG4ALgBjAGgAYQBuAG4AZQBsADkALgBtAHMAZABuAC4AYwBvAG0ALwBvADkALwBlAGQAZwBlAC8AOAAvADEALwAwAC8ANQAvADIALwBtAHMAcgBjAGoAdQBuADIAMAAxADAAYgBvAHYAZQByAF8AZQBkAGcAZQAuAHcAbQB2ACwAYQB1AHQAbwBzAHQAYQByAHQAPQBmAGEAbABzAGUALABhAHUAdABvAGgAaQBkAGUAPQB0AHIAdQBlACwAcwBoAG8AdwBlAG0AYgBlAGQAPQB0AHIAdQBlACwAIAB0AGgAdQBtAGIAbgBhAGkAbAA9AGgAdAB0AHAAOgAvAC8AZQBjAG4ALgBjAGgAYQBuAG4AZQBsADkALgBtAHMAZABuAC4AYwBvAG0ALwBvADkALwBlAGQAZwBlAC8AOAAvADEALwAwAC8ANQAvADIALwBtAHMAcgBjAGoAdQBuADIAMAAxADAAYgBvAHYAZQByAF8AMwAyADAAXwBlAGQAZwBlAC4AcABuAGcALAAgAHAAbwBzAHQAaQBkAD0AMgA1ADAAMQA4AAAAAAAAAAAAAAABAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA">
<param value="http://edge.technet.com/App_Themes/default/vp09_06_22.xap" name="source" />
<param value="m=http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.wmv,autostart=false,autohide=true,showembed=true, thumbnail=http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_320_edge.png, postid=25018" name="initParams" />
<param value="#00FFFFFF" name="background" />
</object>
</td>
<td><span style="font-family: 'Segoe UI','sans-serif'; font-size: 12.5pt; mso-fareast-font-family: 'Times New Roman';"><o :p><span style="mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-bidi-theme-font: minor-latin;"><o :p>
<p><span style="font-size: x-small;">More listening and viewing options:</span></p>
<ul type="disc">
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.wmv" title="Windows Media Video (WMV)"><span style="font-size: x-small;">Windows Media Video (WMV)</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.wma" title="Windows Media Audio (WMA)"><span style="font-size: x-small;">Windows Media Audio (WMA)</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.mp4" title="iPod Video (MP4)"><span style="font-size: x-small;">iPod Video (MP4)</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_edge.mp3" title="MP3 Audio"><span style="font-size: x-small;">MP3 Audio</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_2MB_edge.wmv" title="High Quality WMV (2.5 Mbps)"><span style="font-size: x-small;">High Quality WMV (2.5 Mbps)</span></a></li>
<li><a href="http://ecn.channel9.msdn.com/o9/edge/8/1/0/5/2/msrcjun2010bover_Zune_edge.wmv" title="Zune Video (WMV)"><span style="font-size: x-small;">Zune Video (WMV)</span></a></li>
</ul>
</o></span></o></span></td>
</tr>
</tbody>
</table>
<p>Also, included below is the aggregate risk and impact slide for June. Note that we do not typically give an Exploitability Index rating for ActiveX Kill Bits but as stated, this update should be a high priority. </p>
<p><img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/4532.June-2010-Severity-and-Exploitability-Index.png" border="0" /></p>
<p>Here is our overall deployment priority information:</p>
<p><img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/8780.June-2010-Deployment-Priority.png" border="0" /></p>
<p>There are additional subtleties with specific bulletins that I want to discuss here to eliminate potential confusion:</p>
<ul>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-032.mspx">MS10-032</a> is an elevation of privilege issue in the affected Microsoft products. There is a potential remote vector if applications fail to properly request the length of the buffer when calling the affected API. All Microsoft applications make this call properly but there may be applications out there that do not. Regardless, installing this update addresses the issue for all vectors. See our <a href="http://blogs.technet.com/srd">Security Research &amp; Defense (SRD) blog</a> for more details on this one.</li>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-036.mspx">MS10-036</a> is a COM validation update. The issue could result in an attack through ActiveX in Office applications. This is not a new attack vector but the underlying vulnerability is and the bulletin addresses it. For additional clarification, I want to point out that Office XP does not have the architecture needed for the update. However, for customers running Office XP on Windows XP or newer operating systems, we have made a shim available that protects against the vulnerability. The shim can be installed via a Microsoft FixIt which can be downloaded from <a href="http://support.microsoft.com/kb/983235">KB983235</a>.</li>
<li><a href="http://www.microsoft.com/technet/security/bulletin/ms10-039.mspx">MS10-039</a> is a SharePoint related update, closing out <a href="http://www.microsoft.com/technet/security/advisory/983438.mspx">Security Advisory 983438</a> which addressed an elevation of privilege vulnerability. We are not currently aware of any attacks against this issue. </li>
</ul>
<p>As usual, our SRD team has written several blog posts that go in to details on some of this month's bulletins and I encourage customers to review those for additional insight: <a href="http://blogs.technet.com/b/srd">http://blogs.technet.com/b/srd</a>. </p>
<p>If you have questions about the June bulletins, please attend our public webcast tomorrow which I will be hosting with Adrian Stone from the MSRC. We will go in to additional details on each bulletin and along with a room full of subject matter experts attempt to address all of your questions. Here's how to register:</p>
<p>When: Wednesday June 10, 2010 at 11:00 a.m. PDT (UTC -7)<br />Registration: <a href="https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032395226">https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032395226</a></p>
<p>I hope you can join us then.</p>
<p>Thanks!</p>
<p>Jerry Bryant<br />Group Manager, Response Communications</p>
<p>Follow us on Twitter: <a href="http://www.twitter.com/msftsecresponse">@MSFTSecResponse</a></p><div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3336719" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/06/08/june-2010-security-bulletin-release.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://blogs.technet.com/cfs-file.ashx/__key/CommunityServer-Components-PostAttachments/00-03-33-67-19/June-2010-Security-Bulletin-Release-Information.ppt" length="1698816" type="application/vnd.ms-powerpoint" />
		</item>
		<item>
		<title>June 2010 Security Bulletin Advance Notification</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/06/03/june-2010-security-bulletin-advance-notification.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/06/03/june-2010-security-bulletin-advance-notification.aspx#comments</comments>
		<pubDate>Thu, 03 Jun 2010 17:01:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Internet Explorer (IE)]]></category>
		<category><![CDATA[Microsoft Office]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Security Bulletin]]></category>
		<category><![CDATA[Security Update]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3335584</guid>
		<description><![CDATA[<p class="MsoNormal"><span style="font-family: Calibri"><span style="font-size: small"><span style="color: #333333">Hi everyone,</span></span></span></p>
<p class="MsoNormal"><span style="font-family: Calibri"><span style="font-size: small"><span style="color: #333333"></span></span></span><span style="color: #333333"><span style="font-family: Calibri;font-size: small">Today we published our </span></span><a href="http://www.microsoft.com/technet/security/bulletin/ms10-jun.mspx"><span><span style="font-family: Calibri;color: #000077;font-size: small">advance notification</span></span></a><span style="color: #333333"><span style="font-family: Calibri"><span style="font-size: small"> for the June security bulletin release, scheduled for release next Tuesday, June 8. This month&#8217;s release includes ten bulletins addressing 34 vulnerabilities.</span></span></span></p>
<ul>
<li>
<div class="MsoListParagraphCxSpFirst"><span style="color: #333333"><span style="font-family: Calibri;font-size: small">Six of the bulletins affect Windows; of those, two carry a Critical </span></span><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx"><span><span style="font-family: Calibri;color: #000077;font-size: small">severity rating</span></span></a><span style="font-family: Calibri"><span style="font-size: small"><span style="color: #333333"> and four are rated Important. </span><span style="color: #333333"></span></span></span></div>
</li>
<li>
<div class="MsoListParagraphCxSpMiddle"><span style="font-family: Calibri"><span style="font-size: small"><span style="color: #333333">Two bulletins, both with a severity rating of Important, affect Microsoft Office. </span><span style="color: #333333"></span></span></span></div>
</li>
<li>
<div class="MsoListParagraphCxSpMiddle"><span style="font-family: Calibri"><span style="font-size: small"><span style="color: #333333">One bulletin, again with a severity rating of Important, affects both Windows and Office. <span>&#160;</span></span><span style="color: #333333"></span></span></span></div>
</li>
<li>
<div class="MsoListParagraphCxSpLast"><span style="color: #333333"><span style="font-family: Calibri"><span style="font-size: small">One bulletin, with a severity rating of Critical, affects Internet Explorer.</span></span></span></div>
</li>
</ul>
<p class="MsoNormal"><span style="color: #333333"><span style="font-family: Calibri"><span style="font-size: small">As ever, we recommend that customers prepare for the testing and deployment of these bulletins as soon as possible. </span></span></span></p>
<p class="MsoNormal"><span style="color: #333333"><span style="font-family: Calibri"><span style="font-size: small">We will also be acting on two Security Advisories this month.</span></span></span></p>
<ul>
<li>
<div class="MsoListParagraphCxSpFirst"><span style="color: #333333"><span style="font-family: Calibri;font-size: small">We are closing Security Advisory 983438 (</span></span><a href="http://www.microsoft.com/technet/security/advisory/983438.mspx"><span style="color: #000077"><span style="font-family: Calibri"><span style="font-size: small"><span>Vuln</span><span>erability in Microsoft SharePoint Could Allow Elevation of Privilege</span></span></span></span></a><span><span style="font-family: Calibri"><span style="font-size: small">) with the June bulletins. </span></span></span></div>
</li>
<li>
<div class="MsoListParagraphCxSpLast"><span style="color: #333333"><span style="font-family: Calibri;font-size: small">We are also addressing Security Advisory 980088 (</span></span><a href="http://www.microsoft.com/technet/security/advisory/980088.mspx"><span><span style="font-family: Calibri;color: #000077;font-size: small">Vulnerability in Internet Explorer Could Allow Information Disclosure</span></span></a><span><span style="font-size: small"><span style="font-family: Calibri">). </span></span></span></div>
</li>
</ul>
<p class="MsoNormal"><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333">Please join Adrian Stone and me for a public webcast on Wednesday next week where we will go into detail about the bulletins and answer questions live on the air. Register at the link below:</span></span></span></p>
<p class="MsoNormal"><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333"></span></span></span></p>
<p class="MsoNormal"><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333"></span></span></span><span style="color: #333333"><span style="font-family: Calibri;font-size: small">Date: Wednesday June 9<br />Time: 11:00 a.m. PDT (UTC &#8211;7) <br />Registration: </span></span><a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032427727"><span><span style="font-family: Calibri;color: #000077;font-size: small">https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032427727</span></span></a></p>
<p class="MsoNormal">&#160;</p>
<p class="MsoNormal"><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333">Finally, we remind Windows 2000 and Windows XP SP2 customers once again that all support for these platforms will end after July 13, 2010 &#8211; that is, next month. Customers should upgrade to either a supported operating system or the latest service pack in order to keep receiving necessary security updates. </span></span></span></p>
<p class="MsoNormal"><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333"></span></span></span></p>
<p class="MsoNormal"><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333"></span></span></span><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333">Thanks,</span></span></span></p>
<p class="MsoNormal"><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333"></span></span></span></p>
<p class="MsoNormal"><span style="font-size: small"><span style="font-family: Calibri"><span style="color: #333333"></span></span></span><span style="color: #333333"><span style="font-size: small"><span style="font-family: Calibri">Jerry Bryant<br />Group Manager, Response Communications</span></span></span></p>
<p class="MsoNormal"><span style="color: #333333"><span style="font-size: small"><span style="font-family: Calibri"></span></span></span></p>
<p class="MsoNormal"><span style="color: #333333"><span style="font-size: small"><span style="font-family: Calibri"></span></span></span><span style="color: #333333"><span style="font-family: Calibri;font-size: small">Follow us on Twitter: </span></span><a href="http://twitter.com/msftsecresponse"><span style="color: blue"><span style="font-family: Calibri;font-size: small">@MSFTSecResponse</span></span></a><span style="color: #333333"></span></p><div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3335584" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p class="MsoNormal"><span style="font-family: Calibri;"><span style="font-size: small;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Hi everyone,</span></span></span></p>
<p class="MsoNormal"><span style="font-family: Calibri;"><span style="font-size: small;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></span><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri; font-size: small;">Today we published our </span></span><a href="http://www.microsoft.com/technet/security/bulletin/ms10-jun.mspx"><span style="mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri; color: #000077; font-size: small;">advance notification</span></span></a><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri;"><span style="font-size: small;"> for the June security bulletin release, scheduled for release next Tuesday, June 8. This month&rsquo;s release includes ten bulletins addressing 34 vulnerabilities.<o :p></o></span></span></span></p>
<ul>
<li>
<div class="MsoListParagraphCxSpFirst"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri; font-size: small;">Six of the bulletins affect Windows; of those, two carry a Critical </span></span><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx"><span style="mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri; color: #000077; font-size: small;">severity rating</span></span></a><span style="font-family: Calibri;"><span style="font-size: small;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"> and four are rated Important. </span><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><o :p></o></span></span></span></div>
</li>
<li>
<div class="MsoListParagraphCxSpMiddle"><span style="font-family: Calibri;"><span style="font-size: small;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Two bulletins, both with a severity rating of Important, affect Microsoft Office. </span><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><o :p></o></span></span></span></div>
</li>
<li>
<div class="MsoListParagraphCxSpMiddle"><span style="font-family: Calibri;"><span style="font-size: small;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">One bulletin, again with a severity rating of Important, affects both Windows and Office. <span style="mso-spacerun: yes;">&nbsp;</span></span><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><o :p></o></span></span></span></div>
</li>
<li>
<div class="MsoListParagraphCxSpLast"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri;"><span style="font-size: small;">One bulletin, with a severity rating of Critical, affects Internet Explorer.<o :p></o></span></span></span></div>
</li>
</ul>
<p class="MsoNormal"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri;"><span style="font-size: small;">As ever, we recommend that customers prepare for the testing and deployment of these bulletins as soon as possible. <o :p></o></span></span></span></p>
<p class="MsoNormal"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri;"><span style="font-size: small;">We will also be acting on two Security Advisories this month.<o :p></o></span></span></span></p>
<ul>
<li>
<div class="MsoListParagraphCxSpFirst"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri; font-size: small;">We are closing Security Advisory 983438 (</span></span><a href="http://www.microsoft.com/technet/security/advisory/983438.mspx"><span style="color: #000077;"><span style="font-family: Calibri;"><span style="font-size: small;"><span style="mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Vuln</span><span style="mso-bidi-font-weight: bold;">erability in Microsoft SharePoint Could Allow Elevation of Privilege</span></span></span></span></a><span style="mso-bidi-font-weight: bold;"><span style="font-family: Calibri;"><span style="font-size: small;">) with the June bulletins. <o :p></o></span></span></span></div>
</li>
<li>
<div class="MsoListParagraphCxSpLast"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri; font-size: small;">We are also addressing Security Advisory 980088 (</span></span><a href="http://www.microsoft.com/technet/security/advisory/980088.mspx"><span style="mso-bidi-font-weight: bold;"><span style="font-family: Calibri; color: #000077; font-size: small;">Vulnerability in Internet Explorer Could Allow Information Disclosure</span></span></a><span style="mso-bidi-font-weight: bold;"><span style="font-size: small;"><span style="font-family: Calibri;">). <o :p></o></span></span></span></div>
</li>
</ul>
<p class="MsoNormal"><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Please join Adrian Stone and me for a public webcast on Wednesday next week where we will go into detail about the bulletins and answer questions live on the air. Register at the link below:</span></span></span></p>
<p class="MsoNormal"><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></span></p>
<p class="MsoNormal"><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></span><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri; font-size: small;">Date: Wednesday June 9<br />Time: 11:00 a.m. PDT (UTC &ndash;7) <br />Registration: </span></span><a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032427727"><span style="mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri; color: #000077; font-size: small;">https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032427727</span></span></a></p>
<p class="MsoNormal">&nbsp;</p>
<p class="MsoNormal"><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Finally, we remind Windows 2000 and Windows XP SP2 customers once again that all support for these platforms will end after July 13, 2010 &ndash; that is, next month. Customers should upgrade to either a supported operating system or the latest service pack in order to keep receiving necessary security updates. </span></span></span></p>
<p class="MsoNormal"><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></span></p>
<p class="MsoNormal"><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></span><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Thanks,</span></span></span></p>
<p class="MsoNormal"><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></span></p>
<p class="MsoNormal"><span style="font-size: small;"><span style="font-family: Calibri;"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></span><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman';"><span style="font-size: small;"><span style="font-family: Calibri;">Jerry Bryant<br />Group Manager, Response Communications</span></span></span></p>
<p class="MsoNormal"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman';"><span style="font-size: small;"><span style="font-family: Calibri;"></span></span></span></p>
<p class="MsoNormal"><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman';"><span style="font-size: small;"><span style="font-family: Calibri;"></span></span></span><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman';"><span style="font-family: Calibri; font-size: small;">Follow us on Twitter: </span></span><a href="http://twitter.com/msftsecresponse"><span style="color: blue; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman';"><span style="font-family: Calibri; font-size: small;">@MSFTSecResponse</span></span></a><span style="color: #333333; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman';"><o :p></o></span></p><div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3335584" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/06/03/june-2010-security-bulletin-advance-notification.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Advisory 2028859 Released</title>
		<link>http://blogs.technet.com/msrc/archive/2010/05/18/security-advisory-2028859-released.aspx</link>
		<comments>http://blogs.technet.com/msrc/archive/2010/05/18/security-advisory-2028859-released.aspx#comments</comments>
		<pubDate>Tue, 18 May 2010 20:23:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Exploitability Index]]></category>
		<category><![CDATA[Microsoft Active Protections Program (MAPP)]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Workarounds]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3333255</guid>
		<description><![CDATA[<span><font face="Calibri">
<p class="MsoNormal"><span><font size="3">Hello all. As we start the week we’re investigating a publicly reported vulnerability in the Windows Canonical Display Driver (cdd.dll) and have released </font><a href="http://www.microsoft.com/technet/security/advisory/2028859.mspx"><span><font size="3">Security Advisory 2028859</font></span></a><font size="3"> to describe our findings. We’re not aware of any current customer impact as a result of the issue.</font></span></p>
<p class="MsoNormal"><span><font size="3">The Canonical Display Driver is used by desktop composition to blend the Windows Graphics Device Interface (GDI) and DirectX drawing. The vulnerability affects Windows 7 x64, Windows Server 2008 R2 x64, and Windows Server 2008 R2 for Itanium systems. If exploited, it would likely cause the affected system to stop responding and restart. Code execution, while possible in theory, would be very difficult due to memory randomization both in kernel memory and via Address Space Layout Randomization (ASLR). Additionally, this vulnerability only affects Windows systems if they have the Aero theme installed; Aero is not switched on by default in Windows Server 2008 R2, nor does 2008 R2 include Aero-capable graphics drivers by default.</font></span></p>
<p class="MsoNormal"><span><font size="3">With that in mind, we are giving this vulnerability a preliminary </font><a href="http://technet.microsoft.com/en-us/security/cc998259.aspx"><span><font size="3">Exploitability Index</font></span></a><font size="3"> rating of 3, meaning we’ve deduced so far that reliable exploit code is unlikely. We’re currently developing a security update for Windows that will address the vulnerability. In the meantime, customers may choose to disable Windows Aero as a workaround to protect against potential threats. With Aero disabled, the path by which cdd.dll can be exploited is bypassed. </font></span></p>
<p class="MsoNormal"><span><font size="3">We are also actively working with partners in our Microsoft Active Protections Program (MAPP) and have provided them with in-depth information on the issue so they can provide broader protections to customers. To see if your security vendor is a member of MAPP, please visit our </font><a href="http://www.microsoft.com/security/msrc/collaboration/mapppartners.aspx"><span><font size="3">MAPP Partners</font></span></a><font size="3"> page</font><a title="_GoBack" name="_GoBack"></a><font size="3">. As ever, we encourage all Windows users to apply the latest Microsoft security updates to help make sure their computers are as protected as possible.</font></span></p>
<p class="MsoNormal"><font size="3"><span>We will continue to share updates on this blog and through our Twitter feed (</span><span><a href="http://www.twitter.com/msftsecresponse"><span>@msftsecresponse</span></a></span><span>). </span></font></p>
<p class="MsoNormal"><span><font size="3">Thanks!</font></span></p>
<p class="MsoNormal"><span><font size="3">Jerry Bryant <br />Group Manager, Response Communications</font></span></p>
<p class="MsoNormal"><span><font size="3">*This posting is provided "AS IS" with no warranties, and confers no rights*</font></span></p>
<p class="MsoNormal"><span><font size="3">______________________</font></span></p>
<p class="MsoNormal"><span><a href="http://www.microsoft.com/technet/security/advisory/2028859.mspx"><span><font size="3">Security Advisory 2028859</font></span></a><font size="3"> addresses a vuln in the Canonical Display Driver (cdd.dll), a <b>3 </b>on the </font><a href="http://technet.microsoft.com/en-us/security/cc998259.aspx"><span><font size="3">exploitability index</font></span></a><font size="3">.</font></span></p></font></span><img src="http://blogs.technet.com/aggbug.aspx?PostID=3333255" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"><font face=Calibri>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'"><font size=3>Hello all. As we start the week we’re investigating a publicly reported vulnerability in the Windows Canonical Display Driver (cdd.dll) and have released </font><a href="http://www.microsoft.com/technet/security/advisory/2028859.mspx" mce_href="http://www.microsoft.com/technet/security/advisory/2028859.mspx"><span style="COLOR: blue"><font size=3>Security Advisory 2028859</font></span></a><font size=3> to describe our findings. We’re not aware of any current customer impact as a result of the issue.< ?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /><o :p></o></font></span></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'"><font size=3>The Canonical Display Driver is used by desktop composition to blend the Windows Graphics Device Interface (GDI) and DirectX drawing. The vulnerability affects Windows 7 x64, Windows Server 2008 R2 x64, and Windows Server 2008 R2 for Itanium systems. If exploited, it would likely cause the affected system to stop responding and restart. Code execution, while possible in theory, would be very difficult due to memory randomization both in kernel memory and via Address Space Layout Randomization (ASLR). Additionally, this vulnerability only affects Windows systems if they have the Aero theme installed; Aero is not switched on by default in Windows Server 2008 R2, nor does 2008 R2 include Aero-capable graphics drivers by default.<o :p></o></font></span></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'"><font size=3>With that in mind, we are giving this vulnerability a preliminary </font><a href="http://technet.microsoft.com/en-us/security/cc998259.aspx" mce_href="http://technet.microsoft.com/en-us/security/cc998259.aspx"><span style="COLOR: blue"><font size=3>Exploitability Index</font></span></a><font size=3> rating of 3, meaning we’ve deduced so far that reliable exploit code is unlikely. We’re currently developing a security update for Windows that will address the vulnerability. In the meantime, customers may choose to disable Windows Aero as a workaround to protect against potential threats. With Aero disabled, the path by which cdd.dll can be exploited is bypassed. <o :p></o></font></span></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'"><font size=3>We are also actively working with partners in our Microsoft Active Protections Program (MAPP) and have provided them with in-depth information on the issue so they can provide broader protections to customers. To see if your security vendor is a member of MAPP, please visit our </font><a href="http://www.microsoft.com/security/msrc/collaboration/mapppartners.aspx" mce_href="http://www.microsoft.com/security/msrc/collaboration/mapppartners.aspx"><span style="COLOR: blue"><font size=3>MAPP Partners</font></span></a><font size=3> page</font><a title=_GoBack name=_GoBack></a><font size=3>. As ever, we encourage all Windows users to apply the latest Microsoft security updates to help make sure their computers are as protected as possible.<o :p></o></font></span></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3><span style="mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'">We will continue to share updates on this blog and through our Twitter feed (</span><span style="mso-bidi-font-family: 'Times New Roman'; mso-fareast-font-family: 'Times New Roman'"><a href="http://www.twitter.com/msftsecresponse" mce_href="http://www.twitter.com/msftsecresponse"><span style="COLOR: blue; mso-bidi-font-family: Calibri">@msftsecresponse</span></a></span><span style="mso-bidi-font-family: Calibri; mso-fareast-font-family: 'Times New Roman'">). <o :p></o></span></font></p>
<p style="MARGIN: 0in 0in 0pt; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto" class=MsoNormal><span style="COLOR: black; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'; mso-themecolor: text1"><font size=3>Thanks!<o :p></o></font></span></p>
<p style="MARGIN: 0in 0in 0pt; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto" class=MsoNormal><span style="COLOR: black; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'; mso-themecolor: text1"><font size=3>Jerry Bryant <br />Group Manager, Response Communications<o :p></o></font></span></p>
<p style="MARGIN: 0in 0in 0pt; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto" class=MsoNormal><span style="COLOR: black; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'; mso-themecolor: text1"><font size=3>*This posting is provided "AS IS" with no warranties, and confers no rights*<o :p></o></font></span></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'"><font size=3>______________________<o :p></o></font></span></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: 'Times New Roman'"><a href="http://www.microsoft.com/technet/security/advisory/2028859.mspx" mce_href="http://www.microsoft.com/technet/security/advisory/2028859.mspx"><span style="COLOR: blue"><font size=3>Security Advisory 2028859</font></span></a><font size=3> addresses a vuln in the Canonical Display Driver (cdd.dll), a <b style="mso-bidi-font-weight: normal">3 </b>on the </font><a href="http://technet.microsoft.com/en-us/security/cc998259.aspx" mce_href="http://technet.microsoft.com/en-us/security/cc998259.aspx"><span style="COLOR: blue"><font size=3>exploitability index</font></span></a><font size=3>.<o :p></o></font></span></p></font></span><img src="http://blogs.technet.com/aggbug.aspx?PostID=3333255" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/msrc/archive/2010/05/18/security-advisory-2028859-released.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Advance Notification for the May 2010 Security Bulletin Release</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/05/06/advance-notification-for-the-may-2010-security-bulletin-release.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/05/06/advance-notification-for-the-may-2010-security-bulletin-release.aspx#comments</comments>
		<pubDate>Thu, 06 May 2010 16:50:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft Office]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Security Bulletin]]></category>
		<category><![CDATA[Security Update]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3330873</guid>
		<description><![CDATA[<p class="MsoNormal"><font size="3" face="Calibri">Hi everyone,</font></p>
<p class="MsoNormal"><font size="3" face="Calibri">Today we published our </font><a href="http://www.microsoft.com/technet/security/bulletin/ms10-may.mspx"><font color="#0000ff" size="3" face="Calibri">advance notification</font></a><a title="_GoBack" name="_GoBack"></a><font size="3" face="Calibri"> for the May security bulletin release letting customers know that next Tuesday, May 11, we will release two Critical bulletins addressing two vulnerabilities - one in Windows and one in Office. Windows 7 and Windows Server 2008 R2 customers will be offered the Windows related update but they are not vulnerable in their default configurations. More information on this will be provided on Tuesday.</font></p>
<p class="MsoNormal"><font size="3" face="Calibri">Concerning the recent Security Advisory for SharePoint, </font><a href="http://www.microsoft.com/technet/security/advisory/983438.mspx"><font color="#0000ff" size="3" face="Calibri">983438</font></a><font size="3" face="Calibri">, we will not be releasing an update for that with the May bulletins. Our teams are still working on an update for that issue. In the meantime, we recommend customers review the advisory and apply the workarounds. </font></p>
<p class="MsoNormal"><font size="3" face="Calibri">On a side note, I want to also continue reminding customers of Windows 2000 and Windows XP SP2 that all support for these platforms will end after July 13, 2010. Customers should upgrade to either a supported operating system or the latest service pack in order to keep receiving security updates. </font></p>
<p class="MsoNormal"><font size="3"></font><font face="Calibri"><span>We recommend that customers prepare for the testing and deployment of both bulletins as soon as possible. </span><span>Finally, please join Adrian Stone and me for a public webcast next week where we will go in to details about the bulletins and answer questions live on the air. Here’s how to register:</span></font></p>
<p class="MsoNormal"><span><font size="3" face="Calibri">Date: Wednesday May 12<br />Time: 11:00 a.m. PDT (UTC –8) <br />Registration: </font></span><a href="http://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032427724"><font color="#0000ff" size="3" face="Calibri">http://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032427724</font></a><font size="3" face="Calibri"> </font></p>
<p class="MsoNormal"><font size="3" face="Calibri">Thanks,</font></p>
<p><span>Jerry Bryant<br />Group Manager, Response Communications</span></p>
<p><span>Follow us on Twitter: </span><span><a href="http://twitter.com/msftsecresponse"><span><font color="#0000ff">@MSFTSecResponse</font></span></a></span><span></span></p>
<p><span>*This posting is provided "AS IS" with no warranties, and confers no rights*</span></p><div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3330873" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3 face=Calibri>Hi everyone,</font></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3 face=Calibri>Today we published our </font><a href="http://www.microsoft.com/technet/security/bulletin/ms10-may.mspx" mce_href="http://www.microsoft.com/technet/security/bulletin/ms10-may.mspx"><font color=#0000ff size=3 face=Calibri>advance notification</font></a><a title=_GoBack name=_GoBack></a><font size=3 face=Calibri> for the May security bulletin release letting customers know that next Tuesday, May 11, we will release two Critical bulletins addressing two vulnerabilities - one in Windows and one in Office. Windows 7 and Windows Server 2008 R2 customers will be offered the Windows related update but they are not vulnerable in their default configurations. More information on this will be provided on Tuesday.</font></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3 face=Calibri>Concerning the recent Security Advisory for SharePoint, </font><a href="http://www.microsoft.com/technet/security/advisory/983438.mspx" mce_href="http://www.microsoft.com/technet/security/advisory/983438.mspx"><font color=#0000ff size=3 face=Calibri>983438</font></a><font size=3 face=Calibri>, we will not be releasing an update for that with the May bulletins. Our teams are still working on an update for that issue. In the meantime, we recommend customers review the advisory and apply the workarounds. </font></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3 face=Calibri>On a side note, I want to also continue reminding customers of Windows 2000 and Windows XP SP2 that all support for these platforms will end after July 13, 2010. Customers should upgrade to either a supported operating system or the latest service pack in order to keep receiving security updates. </font></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3></font><font face=Calibri><span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin">We recommend that customers prepare for the testing and deployment of both bulletins as soon as possible. </span><span style="mso-bidi-font-family: Calibri">Finally, please join Adrian Stone and me for a public webcast next week where we will go in to details about the bulletins and answer questions live on the air. Here’s how to register:</span></font></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><span style="mso-bidi-font-family: Calibri"><font size=3 face=Calibri>Date: Wednesday May 12<br />Time: 11:00 a.m. PDT (UTC –8) <br />Registration: </font></span><a href="http://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032427724" mce_href="http://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032427724"><font color=#0000ff size=3 face=Calibri>http://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032427724</font></a><font size=3 face=Calibri> </font></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3 face=Calibri>Thanks,</font></p>
<p><span style="FONT-FAMILY: 'Calibri','sans-serif'; FONT-SIZE: 11pt; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin">Jerry Bryant<br />Group Manager, Response Communications< ?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /><o :p></o></span></p>
<p><span style="FONT-FAMILY: 'Calibri','sans-serif'; FONT-SIZE: 11pt; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin">Follow us on Twitter: </span><span style="FONT-FAMILY: 'Calibri','sans-serif'; FONT-SIZE: 11pt; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"><a href="http://twitter.com/msftsecresponse" mce_href="http://twitter.com/msftsecresponse"><span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"><font color=#0000ff>@MSFTSecResponse</font></span></a></span><span style="FONT-FAMILY: 'Calibri','sans-serif'; FONT-SIZE: 11pt; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin"><o :p></o></span></p>
<p><span style="FONT-FAMILY: 'Calibri','sans-serif'; FONT-SIZE: 11pt; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin">*This posting is provided "AS IS" with no warranties, and confers no rights*<o :p></o></span></p><div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3330873" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/05/06/advance-notification-for-the-may-2010-security-bulletin-release.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>MS10-025 Security Update to be Re-released</title>
		<link>http://blogs.technet.com/b/msrc/archive/2010/04/21/ms10-025-security-update-to-be-re-released.aspx</link>
		<comments>http://blogs.technet.com/b/msrc/archive/2010/04/21/ms10-025-security-update-to-be-re-released.aspx#comments</comments>
		<pubDate>Wed, 21 Apr 2010 21:07:00 +0000</pubDate>
		<dc:creator>MSRCTEAM</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Monthly Releases]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Mitigations]]></category>
		<category><![CDATA[Risk Assessment]]></category>
		<category><![CDATA[Security Bulletin]]></category>
		<category><![CDATA[Security Update]]></category>
		<category><![CDATA[Workarounds]]></category>

		<guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3327222</guid>
		<description><![CDATA[<p class="MsoNormal"><font size="3"></font><font face="Calibri">Hi, </font></p>
<p class="MsoNormal"><a href="http://www.microsoft.com/technet/security/Bulletin/MS10-025.mspx"><font size="3" face="Calibri">MS10-025</font></a><font size="3"></font><font face="Calibri"> is a security update that only affects Windows 2000 Server customers who have installed Windows Media Services (this is a non-default configuration). Today we pulled the update because we found it does not address the underlying issue effectively. We are not aware of any active attacks seeking to exploit this issue and are targeting a re-release of the update for next week.</font></p>
<p class="MsoNormal"><font size="3"></font><font face="Calibri">Customers should review the bulletin for mitigations and workarounds and those with internet facing systems with Windows Media Services installed should evaluate and use firewall best practices to limit their overall exposure. We will continue to share updates here on the blog as available. </font></p><font size="3"></font><font face="Calibri">
<p>Thanks!</p>
<p>Jerry Bryant <br />Group Manager, Response Communications</p>
<p>Follow us on Twitter - <a href="http://www.twitter.com/msftsecresponse"><font size="3" face="Calibri">@MSFTSecResponse</font></a></p>
<p>*This posting is provided "AS IS" with no warranties, and confers no rights*</p></font><div style="clear:both"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3327222" width="1" height="1"/>]]></description>
			<content:encoded><![CDATA[<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3></font><font face=Calibri>Hi, < ?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /><o :p></o></font></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><a href="http://www.microsoft.com/technet/security/Bulletin/MS10-025.mspx" mce_href="http://www.microsoft.com/technet/security/Bulletin/MS10-025.mspx"><font size=3 face=Calibri>MS10-025</font></a><font size=3></font><font face=Calibri> is a security update that only affects Windows 2000 Server customers who have installed Windows Media Services (this is a non-default configuration). Today we pulled the update because we found it does not address the underlying issue effectively. We are not aware of any active attacks seeking to exploit this issue and are targeting a re-release of the update for next week.<o :p></o></font></p>
<p style="MARGIN: 0in 0in 10pt" class=MsoNormal><font size=3></font><font face=Calibri>Customers should review the bulletin for mitigations and workarounds and those with internet facing systems with Windows Media Services installed should evaluate and use firewall best practices to limit their overall exposure. We will continue to share updates here on the blog as available. </font></p><font size=3></font><font face=Calibri>
<p>Thanks!</p>
<p>Jerry Bryant <br />Group Manager, Response Communications</p>
<p>Follow us on Twitter - <a href="http://www.twitter.com/msftsecresponse" mce_href="http://www.twitter.com/msftsecresponse"><font size=3 face=Calibri>@MSFTSecResponse</font></a></p>
<p>*This posting is provided "AS IS" with no warranties, and confers no rights*</p><o :p></o></font><div style="clear:both;"></div><img src="http://blogs.technet.com/aggbug.aspx?PostID=3327222" width="1" height="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.technet.com/b/msrc/archive/2010/04/21/ms10-025-security-update-to-be-re-released.aspx/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
