iTnews
  • Home
  • News
  • Technology
  • Security

Microsoft to patch three critical flaws in May

By Dan Raywood on May 7, 2012 2:23PM
Microsoft to patch three critical flaws in May

Patches will send IT admins scrambling.

Microsoft will release three critical patches on Patch Tuesday tomorrow.

The patches would fix remote code execution flaws in Office, Windows, the .NET Framework and Silverlight.

Four other patches were rated important and would fix remote code execution flaws in Office and elevation of privilege vulnerabilities in Windows.

Qualys CTO said Wolfgang Kandek the bulletins would be the highest-priority for IT admins.

"Bulletin one also affects Office for the Macintosh, but is rated only important on that platform," he wrote.

"Bulletins four and five will also cover Office, and while they are ranked as important, they provide fixes for remote code execution vulnerabilities.

"They should be considered a high priority as bulletin four affects the free Excel viewer and bulletin five the free Visio viewer, giving us a clue as to what file formats contain the weaknesses.”

Lumension security and forensic analyst Paul Henry said "disruptive restarts" and the wide range of platforms impacted will "have IT teams scrambling to accomplish their flaw remediation tasks".

“Pending the official release from Microsoft on Tuesday, of greatest concern are critical bulletins two and three, which impact both legacy and current-generation operating systems.”

This article originally appeared at scmagazineuk.com

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:
exploitsmicrosoftofficepatchingsecuritysoftwarevulnerabilitieswindows

Partner Content

Avoiding CAPEX by making on-premise IT more cloud-like
Promoted Content Avoiding CAPEX by making on-premise IT more cloud-like
"We're seeing some good policy put in place, but that's the exception"
Partner Content "We're seeing some good policy put in place, but that's the exception"
Why Genworth Australia embraced low-code software development
Promoted Content Why Genworth Australia embraced low-code software development
The Great Resignation has intensified insider security threats
Promoted Content The Great Resignation has intensified insider security threats

Sponsored Whitepapers

Extracting the value of data using Unified Observability
Extracting the value of data using Unified Observability
Planning before the breach: You can’t protect what you can’t see
Planning before the breach: You can’t protect what you can’t see
Beyond FTP: Securing and Managing File Transfers
Beyond FTP: Securing and Managing File Transfers
NextGen Security Operations: A Roadmap for the Future
NextGen Security Operations: A Roadmap for the Future
Video: Watch Juniper talk about its Aston Martin partnership
Video: Watch Juniper talk about its Aston Martin partnership

Events

  • CRN Channel Meets: CyberSecurity Live Event
  • IoT Insights: Secure By Design for manufacturing
  • Cyber Security for Government Summit
By Dan Raywood
May 7 2012
2:23PM
0 Comments

Related Articles

  • Microsoft pushes patch for exploited flaw in on-prem Exchange
  • New ActiveX Windows zero-day exploited: Microsoft alert
  • Patches released for exploited Windows PrintNightmare bug
  • Researchers accidentally publish 'PrintNightmare' Stuxnet-style zero-day
Share on Twitter Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Qantas calls time on IBM, Fujitsu in tech modernisation

Qantas calls time on IBM, Fujitsu in tech modernisation

Service NSW hits digital services goal two years early

Service NSW hits digital services goal two years early

SA Police ignores Adelaide council plea for facial recognition ban on CCTV

SA Police ignores Adelaide council plea for facial recognition ban on CCTV

NBN Co says TPG tie-up could help Telstra sidestep spectrum limits

NBN Co says TPG tie-up could help Telstra sidestep spectrum limits

Digital Nation

COVER STORY: Operationalising net zero through the power of IoT
COVER STORY: Operationalising net zero through the power of IoT
Crypto experts optimistic about future of Bitcoin: Block
Crypto experts optimistic about future of Bitcoin: Block
IBM global chief data officer on the rise of the number crunchers
IBM global chief data officer on the rise of the number crunchers
The security threat of quantum computing
The security threat of quantum computing
Integrity, ethics and board decisions in the digital age
Integrity, ethics and board decisions in the digital age
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.