Microsoft readies first Patch Tuesday release of 2011

Powered by SC Magazine
 

Three vulnerabilities to be addressed.

Microsoft will use the first Patch Tuesday of the New Year to address three vulnerabilities in its Windows architecture.

The company said it expected to issue two bulletins next week: one affecting Vista that was rated "important" and a second bulletin with an aggregate rating of "critical" that affected all supported versions of Windows.

The potential impact of all vulnerabilities was said to be remote code execution.

"As always, we recommend that customers deploy these updates as soon as possible," Microsoft trustworthy computing senior response communications manager Carlene Chmaj said in a blog post.

Microsoft confirmed that this month's release would not include fixes for the vulnerability in the Windows graphics rendering engine, nor a public vulnerability affecting Internet Explorer.

The IE vulnerability was caused by the "creation of uninitialised memory during a CSS function within Internet Explorer," the vendor said.

"It is possible under certain conditions for the memory to be leveraged by an attacker using a specially crafted web page to gain remote code execution," Microsoft said in a security advisory.

Chmaj said today that Microsoft had "started to see targeted attacks" using the IE vulnerability.

Copyright © iTnews.com.au . All rights reserved.


Microsoft readies first Patch Tuesday release of 2011
 
 
 
Top Stories
Westpac interim CIO resigns
Group CIO yet to be appointed.
 
Earning the right to innovate
Breaking down the barriers to innovation is a long, but rewarding process, says Bank of Queensland Group CIO, Julie Bale.
 
A call for timely reporting
[Blog post] Businesses need incentives to keep customer data secure.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest articles on BIT Latest Articles from BIT
Have customers that won't pay debts?
Jul 10, 2014
The ACCC and ASIC have updated their advice when it comes to collecting debts.
Carpet cleaner faces court over online testimonials
Jul 4, 2014
The ACCC has initiated proceedings against A Whistle (1979) Pty Ltd, the franchisor of Electrodry...
You can now get 15GB of free online storage using Microsoft OneDrive
Jun 25, 2014
Cloud storage has reached both the capacity and price where it's a viable alternative to local ...
Another clever trick you can perform with Xero
Jun 25, 2014
Here is another way to reach out to particular subsets of your customers using Xero.
Have a phone, tablet and laptop?
Jun 20, 2014
This new Telstra pre-paid 4G mobile hotspot might be useful if you regularly need to use fast ...
Latest Comments
Polls
What is delaying adoption of public cloud in your organisation?







   |   View results
Lock-in concerns
  27%
 
Application integration concerns
  3%
 
Security and compliance concerns
  28%
 
Unreliable network infrastructure
  9%
 
Data sovereignty concerns
  22%
 
Lack of stakeholder support
  3%
 
Protecting on-premise IT jobs
  5%
 
Difficulty transitioning CapEx budget into OpEx
  3%
TOTAL VOTES: 878

Vote