Partager via


June 10 - Security Release - ADVANCE NOTIFICATION

On 10 June 2008 Microsoft is planning to release seven new security bulletins. Below is a summary in order of severity.

 

New Bulletin Summary

 

Critical:

Bulletin Identifier

Bluetooth Bulletin

Maximum Severity Rating

Critical

Impact of Vulnerability

Remote Code Execution

Detection

Microsoft Baseline Security Analyzer can detect whether your computer system requires this update. The update may require a restart.

Affected Software

Windows XP and Windows Vista. For more information, see the Affected Software section of the Advance Notification web page at the address below.

 

Bulletin Identifier

Internet Explorer Bulletin

Maximum Severity Rating

Critical

Impact of Vulnerability

Remote Code Execution

Detection

Microsoft Baseline Security Analyzer can detect whether your computer system requires this update. The update requires a restart.

Affected Software

Internet Explorer on Windows 2000, Windows XP, Windows Server 2003, Windows Vista and Windows Server 2008. For more information, see the Affected Software section of the Advance Notification web page at the address below.

 

Bulletin Identifier

DirectX Bulletin

Maximum Severity Rating

Critical

Impact of Vulnerability

Remote Code Execution

Detection

Microsoft Baseline Security Analyzer can detect whether your computer system requires this update. The update may require a restart.

Affected Software

DirectX on Windows 2000, Windows XP, Windows Server 2003, Windows Vista and Windows Server 2008. For more information, see the Affected Software section of the Advance Notification web page at the address below.

 

Important:

Bulletin Identifier

WINS Bulletin

Maximum Severity Rating

Important

Impact of Vulnerability

Elevation of Privilege

Detection

Microsoft Baseline Security Analyzer can detect whether your computer system requires this update. The update requires a restart.

Affected Software

Windows 2000 Server and Windows Server 2003. For more information, see the Affected Software section of the Advance Notification web page at the address below.

 

Bulletin Identifier

Active Directory Bulletin

Maximum Severity Rating

Important

Impact of Vulnerability

Denial of Service

Detection

Microsoft Baseline Security Analyzer can detect whether your computer system requires this update. The update requires a restart.

Affected Software

Windows 2000 Server, Windows XP, Windows Server 2003 and Windows Server 2008. For more information, see the Affected Software section of the Advance Notification web page at the address below.

 

Bulletin Identifier

PGM Bulletin

Maximum Severity Rating

Important

Impact of Vulnerability

Denial of Service

Detection

Microsoft Baseline Security Analyzer can detect whether your computer system requires this update. The update requires a restart.

Affected Software

Windows XP, Windows Server 2003, Windows Vista and Windows Server 2008. For more information, see the Affected Software section of the Advance Notification web page at the address below.

 

Moderate:

Bulletin Identifier

Kill Bit Bulletin

Maximum Severity Rating

Moderate

Impact of Vulnerability

Remote Code Execution

Detection

Microsoft Baseline Security Analyzer can detect whether your computer system requires this update. The update may require a restart.

Affected Software

Windows 2000, Windows XP, Windows Server 2003, Windows Vista and Windows Server 2008. For more information, see the Affected Software section of the Advance Notification web page at the address below.

Although we do not anticipate any changes, the number of bulletins, products affected, restart information and severities are subject to change until released.

Advance Notification Web Page: The full version of the Microsoft Security Bulletin Advance Notification for this month can be found here: https://www.microsoft.com/technet/security/bulletin/ms08-jun.mspx

Microsoft Windows Malicious Software Removal Tool:   Microsoft will release an updated version of the Microsoft Windows Malicious Software Removal Tool on Windows Update, Microsoft Update, Windows Server Update Services and the Download Center.

Monthly Security Bulletin Webcast: To address customer questions on these bulletins Microsoft will host a webcast next week Wednesday at 11:00 AM Pacific Time (US & Canada). Registration for this event and other details can be found here:

https://www.microsoft.com/technet/security/bulletin/summary.mspx

At this time no additional information on these bulletins such as details regarding severity or details regarding the vulnerability will be made available until the bulletins are published on Tuesday.

Regarding Information Consistency

We strive to provide you with accurate information in static (this mail) and dynamic (web-based) content. Microsoft’s security content posted to the web is occasionally updated to reflect late-breaking information. If this results in an inconsistency between the information here and the information in Microsoft’s web-based security content, the information in Microsoft’s web-based security content is authoritative.

If you have any questions regarding this alert please contact your Technical Account Manager or Application Development Consultant.

Thank you,

Microsoft CSS Security Team

Comments