Jaa


The July 2009 Security Updates For Runtimes Are Now Available on the ECE

The July 2009 Windows XP Embedded and Windows Embedded Standard Security Updates - Product Download is now available on the ECE for Windows® Embedded Standard 2009 and/or Microsoft® Windows® XP Embedded with Service Pack 2, Feature Pack 2007, Update Rollup 1.0 and Service Pack 3. These updates can be applied to run-times.

This download is a cumulative update which incorporates all updates from prior months. Therefore you do not need to download and install previous monthly updates. These updates can be applied directly to runtimes that include the necessary dependencies.

The Updates in this rollup package are arranged in the following way:

  • The downloads in WindowsEmbeddedStandard folder are applicable to Windows Embedded Standard 2009 toolkit and images.
    • The downloads in the WindowsEmbeddedStandard\Windows folder are only to be used with the Component Database within the Target Designer toolkit in the Windows Embedded Standard release.
    • The downloads in the WindowsEmbeddedStandard\DQI folder contains individual updates for use with Desktop QFE Installer only. Use these updates to individually update the Windows Embedded Standard image.
    • The downloads in WindowsXPEmbedded folder are applicable to Windows XP Embedded toolkit and images.
    • The downloads in the WindowsXPEmbedded\Windows folder are only to be used with the Component Database within the Target Designer toolkit in the Windows XP Embedded release.
    • The downloads in the WindowsXPEmbedded\DQI folder contains individual updates for use with Desktop QFE Installer only. Use these updates to individually update the Windows XP Embedded image.

NOTE : Unlike most odd-month releases (January, March, May, July and so on), the July 2009 release also includes a component database update for Windows Embedded Standard 2009. This cumulative database update corrects a versioning regression introduced with the April 2009 cumulative security updates for the Windows Embedded Standard 2009 development environment component databases. It does not contain July Security updates- those remain on the regular schedule and will be included with the August 2009 cumulative security updates.

The July Security updates include:

  • KB 961371 - Vulnerabilities in the Embedded OpenType Font Engine Could Allow Remote Code Execution
  • KB 971633 - Vulnerabilities in Microsoft DirectShow Could Allow Remote Code Execution
  • KB 973346 - Cumulative Security Update of ActiveX Kill Bits
  • KB 973047 - Update for Windows Embedded Standard 2009 to correct Versioning Regression introduced with April Security Updates. See Readme file on disk for more information.

For full details on the July 2009 Embedded Windows Security Updates see the ECE site:

https://ece.partners.extranet.microsoft.com/ece/Embedded/Products/ProductSupplements/Embedded/XPE/XPEMonthlyUpdates/DistOEM-Jul09XPe_WESSecUpdts.htm

If you have questions on accessing the ECE, please email MS Mobile & Embedded Communications Feedback & Support, ECE@microsoft.com.

Thanks,

- Patrick

Technorati Tags: XPe,Standard 2009

Comments

  • Anonymous
    August 03, 2009
    Getting an access denied error on the July 2009 page...

  • Anonymous
    August 03, 2009
    Eric, Shoot a mail to ECE@microsoft.com if you are having access issues. Lynda