The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin Summary for August 2011
Time: 10:25 EST/15:25 GMT | News Source: ActiveWin.com | Posted By: Robert Stein
  • Cumulative Security Update for Internet Explorer (2559049) This security update resolves five privately reported vulnerabilities and two publicly disclosed vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
  • Vulnerabilities in DNS Server Could Allow Remote Code Execution (2562485) This security update resolves two privately reported vulnerabilities in Windows DNS server. The more severe of these vulnerabilities could allow remote code execution if an attacker registers a domain, creates an NAPTR DNS resource record, and then sends a specially crafted NAPTR query to the target DNS server. Servers that do not have the DNS role enabled are not at risk.
  • Vulnerability in Data Access Components Could Allow Remote Code Execution (2560656) This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a legitimate Excel file (such as a .xlsx file) that is located in the same network directory as a specially crafted library file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
  • Vulnerabilities in Microsoft Visio Could Allow Remote Code Execution (2560978) This security update resolves two privately reported vulnerabilities in Microsoft Visio. The vulnerabilities could allow remote code execution if a user opens a specially crafted Visio file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
  • Vulnerabilities in Microsoft Visio Could Allow Remote Code Execution (2560978) This security update resolves two privately reported vulnerabilities in Microsoft Visio. The vulnerabilities could allow remote code execution if a user opens a specially crafted Visio file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
  • Vulnerability in Remote Access Service NDISTAPI Driver Could Allow Elevation of Privilege (2566454) This security update resolves a privately reported vulnerability in all supported editions of Windows XP and Windows Server 2003. This security update is rated Important for all supported editions of Windows XP and Windows Server 2003. Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 are not affected by the vulnerability. The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application designed to exploit the vulnerability and take complete control over the affected system. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.
  • Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (2567680) This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application designed to send a device event message to a higher-integrity process. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.
  • Vulnerabilities in TCP/IP Stack Could Allow Denial of Service (2563894) This security update resolves two privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow denial of service if an attacker sends a sequence of specially crafted Internet Control Message Protocol (ICMP) messages to a target system or sends a specially crafted URL request to a server that is serving Web content and has the URL-based Quality of Service (QoS) feature enabled.
  • Vulnerability in Remote Desktop Protocol Could Allow Denial of Service (2570222) This security update resolves a privately reported vulnerability in the Remote Desktop Protocol. The vulnerability could allow denial of service if an affected system received a sequence of specially crafted RDP packets. Microsoft has also received reports of limited, targeted attacks attempting to exploit this vulnerability. By default, the Remote Desktop Protocol (RDP) is not enabled on any Windows operating system.
  • Vulnerability in Microsoft Chart Control Could Allow Information Disclosure (2567943) This security update resolves a privately reported vulnerability in ASP.NET Chart controls. The vulnerability could allow information disclosure if an attacker sent a specially crafted GET request to an affected server hosting the Chart controls. Note that this vulnerability would not allow an attacker to execute code or to elevate the attacker's user rights directly, but it could be used to retrieve information that could be used to further compromise the affected system. Only web applications using Microsoft Chart Control are affected by this issue. Default installations of the .NET Framework are not affected.
  • Vulnerability in Microsoft Report Viewer Could Allow Information Disclosure (2578230) This security update resolves a privately reported vulnerability in Microsoft Report Viewer. The vulnerability could allow information disclosure if a user views a specially crafted Web page. In all cases, however, an attacker would have no way to force a user to visit the Web site. Instead, an attacker would have to persuade a user to visit the Web site, typically by getting them to click a link in an e-mail message or Instant Messenger message that takes the user to the vulnerable Web site.
  • Vulnerability in Windows Kernel Could Allow Denial of Service (2556532) This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if a user visits a network share (or visits a Web site that points to a network share) containing a specially crafted file. In all cases, however, an attacker would have no way to force a user to visit such a network share or Web site. Instead, an attacker would have to convince a user to do so, typically by getting the user to click a link in an e-mail message or Instant Messenger message.
  • Vulnerability in .NET Framework Could Allow Information Disclosure (2567951) This security update resolves a privately reported vulnerability in Microsoft .NET Framework. The vulnerability could allow information disclosure if a user views a specially crafted Web page using a Web browser that can run XAML Browser Applications (XBAPs). In a Web-based attack scenario, an attacker could host a Web site that contains a Web page that is used to exploit this vulnerability. In addition, compromised Web sites and Web sites that accept or host user-provided content or advertisements could contain specially crafted content that could exploit this vulnerability. In all cases, however, an attacker would have no way to force users to visit these Web sites. Instead, an attacker would have to convince users to visit the Web site, typically by getting them to click a link in an e-mail message or Instant Messenger message that takes users to the attacker's Web site. This vulnerability could also be used by Windows .NET applications to bypass Code Access Security (CAS) restrictions.
Write Comment
Return to News

  Displaying 601 through 612 of 612
Prev | First
  The time now is 4:01:44 PM ET.
Any comment problems? E-mail us
#601 By 4240821 (82.115.4.230) at 8/10/2025 9:07:38 PM
https://www.xfree.com/duwarala326
https://www.xfree.com/menevity594
https://www.xfree.com/roukabasstern289
https://www.xfree.com/setelharmla190
https://www.xfree.com/inpelroloo509
https://www.xfree.com/catspatbibi37
https://www.xfree.com/dedwiediater823
https://www.xfree.com/opusinel57
https://www.xfree.com/imarnsichin459
https://www.xfree.com/goewecentclun971

#602 By 4240821 (82.115.4.230) at 8/11/2025 9:14:26 PM
https://www.xfree.com/meininguwi74
https://www.xfree.com/ketprighscenlec6
https://www.xfree.com/efadarear194
https://www.xfree.com/riakenstmaspal155
https://www.xfree.com/lingdramcalfo961
https://www.xfree.com/tertibekom27
https://www.xfree.com/vorlaberkvi493
https://www.xfree.com/sonhokefe169
https://www.xfree.com/eralcalra215
https://www.xfree.com/quiviforce846

#603 By 4240821 (82.115.4.230) at 8/12/2025 4:55:22 PM
https://www.xfree.com/lamarodu647
https://www.xfree.com/ropbadesi773
https://www.xfree.com/pilsalibop709
https://www.xfree.com/lbookelobual660
https://www.xfree.com/healthkigipar43
https://www.xfree.com/unagflapil108
https://www.xfree.com/ivactiaque958
https://www.xfree.com/provuninta604
https://www.xfree.com/dertucoli771
https://www.xfree.com/flagnoamarkfi897

#604 By 4240821 (82.115.4.230) at 8/13/2025 11:02:02 AM
https://www.xfree.com/knudicrunpeo745
https://www.xfree.com/timoroho802
https://www.xfree.com/unrompoonsmi819
https://www.xfree.com/lecommole782
https://www.xfree.com/colenati493
https://www.xfree.com/unepidthe411
https://www.xfree.com/anbruseren952
https://www.xfree.com/newmafacor491
https://www.xfree.com/gsigaproame337
https://www.xfree.com/swanenbiotram204

#605 By 4240821 (82.115.4.230) at 8/13/2025 8:58:59 PM
https://www.xfree.com/roucopticu513
https://www.xfree.com/wankeutrodro474
https://www.xfree.com/erdeletzbo904
https://www.xfree.com/granexagir883
https://www.xfree.com/preemnicalgerp19
https://www.xfree.com/tiodethekro260
https://www.xfree.com/veabdonecer897
https://www.xfree.com/centviheaddde499
https://www.xfree.com/pavaropo289
https://www.xfree.com/ensumortrec59

#606 By 4240821 (82.115.4.230) at 8/14/2025 6:24:21 PM
https://www.xfree.com/lazacutbu566
https://www.xfree.com/indegespi70
https://www.xfree.com/gearfakino23
https://www.xfree.com/landsormittthumb479
https://www.xfree.com/fuecaptikam828
https://www.xfree.com/crawwicnelun871
https://www.xfree.com/premickupom195
https://www.xfree.com/chiegoslomem194
https://www.xfree.com/probtaguaje579
https://www.xfree.com/berisjacurr391

#607 By 4240821 (82.115.4.230) at 8/15/2025 9:03:00 AM
https://www.xfree.com/alhosmeize571
https://www.xfree.com/pilsalibop709
https://www.xfree.com/healthkigipar43
https://www.xfree.com/flordoogetas794
https://www.xfree.com/preemnicalgerp19
https://www.xfree.com/mortnesguaje249
https://www.xfree.com/bowlverringbi502
https://www.xfree.com/bryrarsketom265
https://www.xfree.com/calfaibetimb309
https://www.xfree.com/etosgomis752

#608 By 4240821 (82.115.4.230) at 8/16/2025 3:05:52 AM
https://www.xfree.com/vingnomage858
https://www.xfree.com/zillcontsoljua286
https://www.xfree.com/tioflatazen588
https://www.xfree.com/oriztiherd498
https://www.xfree.com/erouthpolo932
https://www.xfree.com/specerxmenjunc203
https://www.xfree.com/propvelryosie219
https://www.xfree.com/plemmustiwee78
https://www.xfree.com/trabinitam219
https://www.xfree.com/faumaworkcan309

#609 By 4240821 (82.115.4.230) at 8/16/2025 3:56:51 PM
https://www.xfree.com/tualmirero922
https://www.xfree.com/roucopticu513
https://www.xfree.com/racomgyomaxf638
https://www.xfree.com/exelanac162
https://www.xfree.com/sobibokmens649
https://www.xfree.com/typducknira8
https://www.xfree.com/sembtinggingla518
https://www.xfree.com/decobucktu344
https://www.xfree.com/stavakarup694
https://www.xfree.com/crosardragal135

#610 By 4240821 (82.115.4.230) at 8/17/2025 5:17:14 PM
https://www.xfree.com/seytatmela839
https://www.xfree.com/tercurirads50
https://www.xfree.com/lickkenbaders86
https://www.xfree.com/brutelalra535
https://www.xfree.com/lerenwhifo843
https://www.xfree.com/worktosbili261
https://www.xfree.com/plasedgarous222
https://www.xfree.com/tiirebider470
https://www.xfree.com/dikilkunsbrav43
https://www.xfree.com/sounhysoundcy587

#611 By 4240821 (82.115.4.230) at 8/18/2025 9:47:36 AM
https://www.xfree.com/pamoosedi190
https://www.xfree.com/dehednafas221
https://www.xfree.com/defacgealis373
https://www.xfree.com/mornoretra783
https://www.xfree.com/bestbogtili156
https://www.xfree.com/testvidsina187
https://www.xfree.com/ovriymenswolf129
https://www.xfree.com/propsuquarli499
https://www.xfree.com/earartiosup415
https://www.xfree.com/lesenlacu728

#612 By 4240821 (82.115.4.230) at 8/18/2025 3:20:47 PM
https://www.xfree.com/robumige386
https://www.xfree.com/dipoundnoball569
https://www.xfree.com/festebookwto365
https://www.xfree.com/idevcanri418
https://www.xfree.com/parmontrassu295
https://www.xfree.com/morrolipart540
https://www.xfree.com/dirahanne497
https://www.xfree.com/nazupemill288
https://www.xfree.com/samblittficgutt38
https://www.xfree.com/maggnalrestti398

Write Comment
Return to News
  Displaying 601 through 612 of 612
Prev | First
  The time now is 4:01:44 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *