<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msmvps.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>DP's Security Bits</title><link>http://msmvps.com/blogs/donpatterson/default.aspx</link><description>Don Patterson (aka DP)</description><dc:language>en</dc:language><generator>CommunityServer 2008 SP1 (Build: 30619.63)</generator><item><title>Microsoft Security Bulletin Advance Notification for July 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/07/03/microsoft-security-bulletin-advance-notification-for-july-2008.aspx</link><pubDate>Thu, 03 Jul 2008 19:03:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1639268</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1639268</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/07/03/microsoft-security-bulletin-advance-notification-for-july-2008.aspx#comments</comments><description>&lt;p&gt;Issued: July 3, 2008&lt;br /&gt;&lt;br /&gt;This is an advance notification of security bulletins that&lt;br /&gt;Microsoft is intending to release on July 8, 2008.&lt;br /&gt;&lt;br /&gt;The full version of the Microsoft Security Bulletin Advance&lt;br /&gt;Notification for July 2008 can be found at&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms08-jul.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms08-jul.mspx&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;This bulletin advance notification will be replaced with the &lt;br /&gt;July bulletin summary on July 8, 2008. For more information&lt;br /&gt;about the bulletin advance notification service, see&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/advance.mspx"&gt;http://www.microsoft.com/technet/security/Bulletin/advance.mspx&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;To receive automatic notifications whenever &lt;br /&gt;Microsoft Security Bulletins are issued, subscribe to Microsoft&lt;br /&gt;Technical Security Notifications on&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/notify.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/notify.mspx&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Microsoft will host a webcast to address customer questions on&lt;br /&gt;these bulletins on Wednesday, July 9, 2008,&lt;br /&gt;at 11:00 AM Pacific Time (US &amp;amp; Canada). Register for the July&lt;br /&gt;Security Bulletin Webcast at &lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/summary.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/summary.mspx&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Microsoft also provides information to help customers prioritize&lt;br /&gt;monthly security updates with any non-security, high-priority&lt;br /&gt;updates that are being released on the same day as the monthly&lt;br /&gt;security updates. Please see the section, Other Information.&lt;br /&gt;&lt;br /&gt;This advance notification provides the software subject as the&lt;br /&gt;bulletin identifier, because the official Microsoft Security&lt;br /&gt;Bulletin numbers are not issued until release. The bulletin summary&lt;br /&gt;that replaces this advance notification will have the proper&lt;br /&gt;Microsoft Security Bulletin numbers (in the MSyy-xxx format) as the&lt;br /&gt;bulletin identifier. The security bulletins for this month are as&lt;br /&gt;follows, in order of severity:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="text-decoration:underline;"&gt;&lt;b&gt;Important Security Bulletins&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;SQL Bulletin&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software:&lt;/b&gt;&lt;/i&gt; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft SQL Server 2000 Desktop Engine (WMSDE) on&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Microsoft Windows 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft SQL Server 2000 Desktop Engine (WMSDE) on&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 1 and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Internal Database (WYukon) Service Pack 2 on&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 1 and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft SQL Server 2000 Desktop Engine (WMSDE) on&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Internal Database (WYukon) x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; on Windows Server 2003 x64 Edition and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Internal Database (WYukon) Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; on Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Internal Database (WYukon) x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; on Windows Server 2008 for x64-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for SQL Server 7.0 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for SQL Server 7.0 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for SQL Server 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for SQL Server 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for SQL Server 2000 &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Edition Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for SQL Server 2000 &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Edition Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for SQL Server 2005 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for SQL Server 2005 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for SQL Server 2005 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for SQL Server 2005 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for SQL Server 2005 with SP2 for&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for SQL Server 2005 with SP2 for&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for Microsoft Data Engine (MSDE) 1.0 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for Microsoft Data Engine (MSDE) 1.0 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for Microsoft SQL Server 2000 &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Desktop Engine (MSDE 2000) Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for Microsoft SQL Server 2000 &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Desktop Engine (MSDE 2000) Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for Microsoft SQL Server 2005 &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Express Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for Microsoft SQL Server 2005 &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Express Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - GDR update for Microsoft SQL Server 2005 &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Express Edition with Advanced Services Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - QFE update for Microsoft SQL Server 2005 &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Express Edition with Advanced Services Service Pack 2&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Elevation of Privilege&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Windows Bulletin 1&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software:&lt;/b&gt;&lt;/i&gt; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Vista Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista x64 Edition and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Vista x64 Edition Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for x64-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for Itanium-based Systems&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Remote Code Execution&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Windows Bulletin 2&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software:&lt;/b&gt;&lt;/i&gt; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Client update for Microsoft Windows 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Server update for Microsoft Windows 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Client update for Windows XP Service Pack 2 and &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows XP Service Pack 3&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Client update for Windows XP Professional x64 Edition and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows XP Professional x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Client update for Windows Server 2003 Service Pack 1 and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Server update for Windows Server 2003 Service Pack 1 and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Client update for Windows Server 2003 x64 Edition and &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Server update for Windows Server 2003 x64 Edition and &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Client update for Windows Server 2003 with SP1 for &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Systems and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 with SP2 for Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Server update for Windows Server 2003 with SP1 for &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Systems and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 with SP2 for Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Server update for Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Server update for Windows Server 2008 for x64-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Spoofing&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Exchange Server Bulletin&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software:&lt;/b&gt;&lt;/i&gt; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Exchange Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Exchange Server 2007&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Exchange Server 2007 Service Pack 1&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Elevation of Privilege&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="text-decoration:underline;"&gt;&lt;b&gt;Other Information&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="text-decoration:underline;"&gt;&lt;b&gt;Microsoft Windows Malicious Software Removal Tool:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Microsoft will release an updated version of the Microsoft Windows&lt;br /&gt;Malicious Software Removal Tool on Windows Update, Microsoft Update,&lt;br /&gt;Windows Server Update Services, and the Download Center.&lt;br /&gt;&lt;br /&gt;&lt;span style="text-decoration:underline;"&gt;&lt;b&gt;Non-Security, High-Priority Updates on MU, WU, and WSUS:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;For information about non-security releases on Windows Update and&lt;br /&gt;Microsoft &lt;br /&gt;update, please see:&lt;br /&gt;* &lt;a href="http://support.microsoft.com/kb/894199"&gt;http://support.microsoft.com/kb/894199&lt;/a&gt;: Microsoft Knowledge Base&lt;br /&gt;&amp;nbsp; Article 894199, Description of Software Update Services and&lt;br /&gt;&amp;nbsp; Windows Server Update Services changes in content for 2008.&lt;br /&gt;&amp;nbsp; Includes all Windows content.&lt;br /&gt;* &lt;a href="http://technet.microsoft.com/en-us/wsus/bb466214.aspx"&gt;http://technet.microsoft.com/en-us/wsus/bb466214.aspx&lt;/a&gt;: New,&lt;br /&gt;&amp;nbsp; Revised, and Released Updates for Microsoft Products Other Than&lt;br /&gt;&amp;nbsp; Microsoft Windows&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1639268" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Microsoft Security Advisory Notification - July 2, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/07/03/microsoft-security-advisory-notification-july-2-2008.aspx</link><pubDate>Thu, 03 Jul 2008 04:55:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1639204</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1639204</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/07/03/microsoft-security-advisory-notification-july-2-2008.aspx#comments</comments><description>&lt;p&gt; &lt;i&gt;Issued: July 2, 2008&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="text-decoration:underline;"&gt;&lt;b&gt;Security Advisories Updated or Released Today&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp;* &lt;b&gt;Microsoft Security Advisory (953818)&lt;/b&gt;&lt;br /&gt;&amp;nbsp; - Title: Blended Threat from Combined Attack Using&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Apple&amp;#39;s Safari on the Windows Platform&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/advisory/953818.mspx"&gt;http://www.microsoft.com/technet/security/advisory/953818.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Revision Note: July 2, 2008: Updated the Suggested Actions.&amp;nbsp;&amp;nbsp; &lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1639204" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Firefox 2.0.0.15 Released</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/07/02/firefox-2-0-0-15-released.aspx</link><pubDate>Wed, 02 Jul 2008 10:57:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1639085</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1639085</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/07/02/firefox-2-0-0-15-released.aspx#comments</comments><description>&lt;p&gt;&lt;span style="text-decoration:underline;"&gt;Known Vulnerabilities Fixed in Firefox 2.0.0.15: &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="text-decoration:underline;"&gt;&lt;/span&gt;&lt;br /&gt;MFSA 2008-33 Crash and remote code execution in block reflow&lt;br /&gt;MFSA 2008-32 Remote site run as local file via Windows URL shortcut&lt;br /&gt;MFSA 2008-31 Peer-trusted certs can use alt names to spoof&lt;br /&gt;MFSA 2008-30 File location URL in directory listings not escaped properly&lt;br /&gt;MFSA 2008-29 Faulty .properties file results in uninitialized memory being used&lt;br /&gt;MFSA 2008-28 Arbitrary socket connections with Java LiveConnect on Mac OS X&lt;br /&gt;MFSA 2008-27 Arbitrary file upload via originalTarget and DOM Range&lt;br /&gt;MFSA 2008-25 Arbitrary code execution in mozIJSSubScriptLoader.loadSubScript()&lt;br /&gt;MFSA 2008-24 Chrome script loading from fastload file&lt;br /&gt;MFSA 2008-23 Signed JAR tampering&lt;br /&gt;MFSA 2008-22 XSS through JavaScript same-origin violation&lt;br /&gt;MFSA 2008-21 Crashes with evidence of memory corruption (rv:1.8.1.15)&lt;/p&gt;
&lt;p&gt;&lt;br /&gt;&lt;a href="http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.15"&gt;http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.15&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1639085" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/News/default.aspx">News</category></item><item><title>Apple closes holes in Mac OS X, Safari</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/07/02/apple-closes-holes-in-mac-os-x-safari.aspx</link><pubDate>Wed, 02 Jul 2008 09:51:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1639081</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1639081</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/07/02/apple-closes-holes-in-mac-os-x-safari.aspx#comments</comments><description>&lt;p&gt;&lt;span class="body"&gt;
&lt;p&gt;
Apple plugged 25 security holes in components of its Mac OS X operating
system on Monday, closing remote execution vulnerabilities in its
Safari Web browser and the Ruby Web programming language.&lt;/p&gt;
&lt;p&gt;
The software patch -- the fourth this year for Apple&amp;#39;s Mac OS X -- also
fixed flaws in the open-source Apache Tomcat Java server, Apple&amp;#39;s VPN
client, the operating system&amp;#39;s screen lock, and the handling of
potentially unsafe types of content. While the open-source Apache
Tomcat server racked up the most vulnerabilities, the most severe
issues affect the Ruby Web programming language, WebKit library for
Safari, and Mac OS X core library functions.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.securityfocus.com/brief/767"&gt;http://www.securityfocus.com/brief/767&lt;/a&gt;&lt;/p&gt;
&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1639081" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/News/default.aspx">News</category></item><item><title>Microsoft Security Advisory Notification - June 30, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/30/microsoft-security-advisory-notification-june-30-2008.aspx</link><pubDate>Mon, 30 Jun 2008 22:01:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1638934</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1638934</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/30/microsoft-security-advisory-notification-june-30-2008.aspx#comments</comments><description>&lt;p&gt;&lt;br /&gt;&lt;i&gt;Issued: June 30, 2008&lt;br /&gt;&lt;/i&gt;&lt;br /&gt;&lt;span style="text-decoration:underline;"&gt;&lt;b&gt;Security Advisories Updated or Released Today&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&amp;nbsp;* &lt;b&gt;Microsoft Security Advisory (954960)&lt;/b&gt;&lt;br /&gt;&amp;nbsp; - Title: Microsoft Windows Server Update Services&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; (WSUS) Blocked from Deploying Security Updates&lt;br /&gt;&amp;nbsp; - &lt;a target="_blank" href="http://www.microsoft.com/technet/security/advisory/954960.mspx"&gt;http://www.microsoft.com/technet/security/advisory/954960.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Revision Note: Advsiory published.&amp;nbsp; &lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1638934" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Onslaught of fake Microsoft patch spam</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/30/onslaught-of-fake-microsoft-patch-spam.aspx</link><pubDate>Mon, 30 Jun 2008 21:13:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1638929</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1638929</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/30/onslaught-of-fake-microsoft-patch-spam.aspx#comments</comments><description>&lt;p&gt;Websense&amp;reg; Security Labs&amp;trade; ThreatSeeker&amp;trade; Network has discovered a
substantial number of spam messages utilizing a reliable social
engineering trick that lures users to download a Microsoft critical
security update.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://securitylabs.websense.com/content/Alerts/3122.aspx"&gt;Details ...&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1638929" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Alerts/default.aspx">Alerts</category></item><item><title>Malware morphs to greater numbers</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/25/malware-morphs-to-greater-numbers.aspx</link><pubDate>Wed, 25 Jun 2008 20:37:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1637678</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1637678</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/25/malware-morphs-to-greater-numbers.aspx#comments</comments><description>&lt;p&gt;&lt;span class="body"&gt;&lt;p&gt;The number of signatures required to detect malicious code skyrocketed
in the first half of 2008, increasing by 80 percent since the end of
2007, according to data released by antivirus firm F-Secure on Tuesday.&lt;/p&gt;
&lt;p&gt;
The data -- part of the F-Secure&amp;#39;s &lt;a href="http://www.f-secure.com/2008/1/index.html" target="_blank"&gt;IT Security Threat Summary&lt;/a&gt;
-- showed that the company currently requires nearly 900,000 different
signatures, also referred to as &amp;quot;definitions&amp;quot; or &amp;quot;detections,&amp;quot; in its
product to catch current threats, up from &lt;a href="http://www.securityfocus.com/brief/655"&gt;500,000 signatures&lt;/a&gt; at the end of 2007.&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.securityfocus.com/brief/763"&gt;http://www.securityfocus.com/brief/763&lt;/a&gt;&amp;nbsp;&lt;/p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1637678" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/News/default.aspx">News</category></item><item><title>Microsoft Security Advisory Notification - June 24, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/25/microsoft-security-advisory-notification-june-24-2008.aspx</link><pubDate>Wed, 25 Jun 2008 17:03:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1637607</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1637607</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/25/microsoft-security-advisory-notification-june-24-2008.aspx#comments</comments><description>&lt;p&gt;&lt;i&gt;Issued: June 24, 2008&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Security Advisories Updated or Released Today&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp;* Microsoft Security Advisory (954462)&lt;br /&gt;&amp;nbsp; - Title: Rise in SQL Injection Attacks Exploiting&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Unverified User Data Input&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/advisory/954462.mspx"&gt;http://www.microsoft.com/technet/security/advisory/954462.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Revision Note: Advisory published.&amp;nbsp;&amp;nbsp; &lt;br /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1637607" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Microsoft Security Bulletin Revisions - June 24, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/24/microsoft-security-bulletin-revisions-june-24-2008.aspx</link><pubDate>Tue, 24 Jun 2008 21:53:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1637340</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1637340</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/24/microsoft-security-bulletin-revisions-june-24-2008.aspx#comments</comments><description>&lt;p&gt;&lt;i&gt;Issued: June 24, 2008&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;The following bulletins have undergone a major revision increment. &lt;br /&gt;Please see the appropriate bulletin for more details.&lt;br /&gt;&lt;br /&gt;&amp;nbsp; * &lt;span style="font-weight:bold;"&gt;MS07-042 - Critical&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Bulletin Information:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;* &lt;b&gt;MS07-042 - Critical&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp;- &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-042.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms07-042.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp;- Reason for Revision: V4.0 (June 24, 2008): Bulletin updated:&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Added Windows XP Service Pack 3, Windows Vista Service Pack&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1, Windows Vista x64 Edition Service Pack 1, Windows Server&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2008 for 32-bit Systems, Windows Server 2008 for x64-based&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Systems, and Windows Server 2008 for Itanium-based Systems as&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; affected software. This is a detection update only. There&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; were no changes to the binaries.&amp;nbsp; &lt;br /&gt;&amp;nbsp;- Originally posted: August 14, 2007&lt;br /&gt;&amp;nbsp;- Updated: June 24, 2008&lt;br /&gt;&amp;nbsp;- Bulletin Severity Rating: Critical&lt;br /&gt;&amp;nbsp;- Version: 4.0&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1637340" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Microsoft Security Advisory Notification - June 20, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/21/microsoft-security-advisory-notification-june-20-2008.aspx</link><pubDate>Sat, 21 Jun 2008 16:33:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1636523</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1636523</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/21/microsoft-security-advisory-notification-june-20-2008.aspx#comments</comments><description>&lt;p&gt; &lt;i&gt;Issued: June 20, 2008&lt;br /&gt;&lt;/i&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Security Advisories Updated or Released Today&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp;* Microsoft Security Advisory (953818)&lt;br /&gt;&amp;nbsp; - Title: Blended Threat from Combined Attack Using&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Apple&amp;#39;s Safari on the Windows Platform&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/advisory/953818.mspx"&gt;http://www.microsoft.com/technet/security/advisory/953818.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Revision Note: June 20, 2008: Advisory updated to provide&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; link to related Apple security advisory.&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1636523" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>New Phishing/Storm Worm Variant Spreading</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/20/new-phishing-storm-worm-variant-spreading.aspx</link><pubDate>Fri, 20 Jun 2008 10:32:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1636010</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1636010</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/20/new-phishing-storm-worm-variant-spreading.aspx#comments</comments><description>&lt;p&gt;&lt;font face="Arial, Geneva, Helvetica"&gt; US-CERT has received reports
of new phishing activity, some of which has been linked to Storm Worm.
The latest activity is centered around messages related to the recent
earthquake in China and the upcoming Olympic Games. This Trojan is
spread via an unsolicited email message that contains a link to a
malicious website. This website contains a video that, when opened, may
run the executable file &amp;quot;beijing.exe&amp;quot; to infect the user&amp;#39;s system with
malicious code.&lt;br /&gt;&lt;br /&gt;Reports, including a posting by &lt;a href="https://forums.symantec.com/syment/blog/article?blog.id=malicious_code&amp;amp;thread.id=207" target="_self"&gt;Symantec&lt;/a&gt;, indicate that the following subject lines are being used. Please note that subject lines can change at any time.&lt;br /&gt;&lt;/font&gt;&lt;/p&gt;&lt;ul&gt;&lt;font face="Arial, Geneva, Helvetica"&gt;&lt;li&gt;The most powerful quake hits China&lt;/li&gt;&lt;li&gt;Countless victims of earthquake in China&lt;/li&gt;&lt;li&gt;Death toll in China is growing&lt;/li&gt;&lt;li&gt;Recent earthquake in china took a heavy toll&lt;/li&gt;&lt;li&gt;Recent china earthquake kills million&lt;/li&gt;&lt;li&gt;China is paralyzed by new earthquake&lt;/li&gt;&lt;li&gt;Death toll in China exceeds 1000000&lt;/li&gt;&lt;li&gt;A new powerful disaster in China&lt;/li&gt;&lt;li&gt;A new deadly catastrophe in China&lt;/li&gt;&lt;li&gt;2008 Olympic Games are under the threat&lt;/li&gt;&lt;li&gt;China&amp;#39;s most deadly earthquake&lt;br /&gt;&lt;/li&gt;&lt;/font&gt;&lt;/ul&gt;&lt;font face="Arial, Geneva, Helvetica"&gt;US-CERT encourages users and administrators to take the following preventative measures to mitgate the security risks:&lt;br /&gt;&lt;/font&gt;&lt;ul&gt;&lt;font face="Arial, Geneva, Helvetica"&gt;&lt;li&gt;Install anti-virus software, and keep its virus signature files up-to-date.&lt;/li&gt;&lt;li&gt;Do not follow unsolicited web links received in email messages.&lt;/li&gt;&lt;li&gt;Refer to the &lt;a href="http://www.us-cert.gov/reading_room/emailscams_0905.pdf" target="_self"&gt;Recognizing and Avoiding Email Scams&lt;/a&gt; (pdf) document for more information on avoiding email scams.&lt;/li&gt;&lt;li&gt;Refer to the &lt;a href="http://www.us-cert.gov/cas/tips/ST04-014.html" target="_self"&gt;Avoiding Social Engineering and Phishing Attacks&lt;/a&gt; document for more information on social engineering attacks.&lt;/li&gt;&lt;/font&gt;&lt;/ul&gt;&lt;p&gt;&lt;font face="Arial, Geneva, Helvetica"&gt;US-CERT reminds users to beware of future phishing attacks that may target natural disasters and the Olympic Games.
















  
&lt;/font&gt;&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.us-cert.gov/current/index.html#new_storm_worm_variant_spreads2"&gt;http://www.us-cert.gov/current/index.html#new_storm_worm_variant_spreads2&lt;/a&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1636010" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Alerts/default.aspx">Alerts</category></item><item><title>Opera adds security, Firefox coming</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/14/opera-adds-security-firefox-coming.aspx</link><pubDate>Sat, 14 Jun 2008 12:57:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1634979</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1634979</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/14/opera-adds-security-firefox-coming.aspx#comments</comments><description>&lt;p&gt;&lt;span class="body"&gt;&lt;p&gt;
Security-conscious users will have a choice to make in the next week.&lt;/p&gt;
&lt;p&gt;
Software maker Opera released the latest version of its browser, Opera
9.5, on Thursday, and rival Mozilla announced it would release a major
update of its Firefox browser on June 17. Both browsers add a number of
security-focused features, chief among them technology designed to
block the downloading and execution of malicious code. Microsoft&amp;#39;s next
major version of its browser, Internet Explorer 8, is currently in beta
and will also include anti-malware features.&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.securityfocus.com/brief/755"&gt;http://www.securityfocus.com/brief/755&lt;/a&gt;&amp;nbsp;&lt;/p&gt;&lt;/span&gt;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1634979" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/News/default.aspx">News</category></item><item><title>Microsoft Security Advisory Notification - June 13, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/14/microsoft-security-advisory-notification-june-13-2008.aspx</link><pubDate>Sat, 14 Jun 2008 08:07:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1634941</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1634941</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/14/microsoft-security-advisory-notification-june-13-2008.aspx#comments</comments><description>&lt;p&gt;&amp;nbsp;&lt;i&gt;Issued: June 13, 2008&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Security Advisories Updated or Released Today&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&amp;nbsp; * Microsoft Security Advisory (954474)&lt;br /&gt;&amp;nbsp; - Title: System Center Configuration Manager 2007&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Blocked from Deploying Security Updates&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/advisory/954474.mspx"&gt;http://www.microsoft.com/technet/security/advisory/954474.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Revision Note: Advisory published&amp;nbsp; &lt;br /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1634941" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Microsoft Security Bulletin Re-Releases - June 10, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/10/microsoft-security-bulletin-re-releases-june-10-2008.aspx</link><pubDate>Tue, 10 Jun 2008 21:24:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1633721</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1633721</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/10/microsoft-security-bulletin-re-releases-june-10-2008.aspx#comments</comments><description>&lt;p&gt;&lt;i&gt;Issued: June 10, 2008&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;The following bulletins have undergone a major revision increment. &lt;br /&gt;Please see the appropriate bulletin for more details.&lt;br /&gt;&lt;br /&gt;&amp;nbsp; * MS07-068 - Critical&lt;br /&gt;&amp;nbsp; * MS06-078 - Critical&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Bulletin Information:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;* &lt;b&gt;MS07-068 - Critical&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp;- &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-068.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms07-068.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp;- Reason for Revision: V2.0 (June 10, 2008): Bulletin updated to&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add Windows Media Format Runtime 9, Windows Media Format&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Runtime 9.5, and Windows Media Format Runtime 11 as affected&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; components for Windows XP Service Pack 3. This is a detection&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; change only. There were no changes to the binaries.&amp;nbsp; &lt;br /&gt;&amp;nbsp;- Originally posted: December 11, 2007&lt;br /&gt;&amp;nbsp;- Updated: June 10, 2008&lt;br /&gt;&amp;nbsp;- Bulletin Severity Rating: Critical&lt;br /&gt;&amp;nbsp;- Version: 2.0&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;* &lt;b&gt;MS06-078 - Critical&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp;- &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms06-078.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms06-078.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp;- Reason for Revision: V5.0 (June 10, 2008): Bulletin updated to&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; add Microsoft Windows XP Service Pack 3 to the Affected&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Software section for Microsoft Windows Media Format 7.1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; through 9.5 Series Runtime and to the Affected Software&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; section for Microsoft Windows Media Player 6.4. This is a&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; detection change only. There were no changes to the binaries.&amp;nbsp; &lt;br /&gt;&amp;nbsp;- Originally posted: December 12, 2006&lt;br /&gt;&amp;nbsp;- Updated: June 10, 2008&lt;br /&gt;&amp;nbsp;- Bulletin Severity Rating: Critical&lt;br /&gt;&amp;nbsp;- Version: 5.0 &lt;br /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1633721" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Microsoft Security Bulletin(s) for June 10, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/10/microsoft-security-bulletin-s-for-june-10-2008.aspx</link><pubDate>Tue, 10 Jun 2008 17:48:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1633671</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1633671</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/10/microsoft-security-bulletin-s-for-june-10-2008.aspx#comments</comments><description>&lt;p&gt;
&lt;span style="font-weight:bold;"&gt; Note&lt;/span&gt;: There
may be latency issues due to replication, if the page does not display
keep refreshing&lt;br /&gt;
June 10, 2008
&lt;/p&gt;&lt;p&gt;Today
Microsoft released the following Security Bulletin(s).&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Note: &lt;a href="http://www.microsoft.com/technet/security" target="_blank"&gt;www.microsoft.com/technet/security&lt;/a&gt;
and &lt;a href="http://www.microsoft.com/security" target="_blank"&gt;www.microsoft.com/security&lt;/a&gt;
are
authoritative in all matters concerning Microsoft Security Bulletins!
ANY e-mail, web board or newsgroup posting (including this one) should
be verified by visiting these sites for official information. Microsoft
never sends security or other updates as attachments. These updates
must be downloaded from the microsoft.com download center or Windows
Update. See the individual bulletins for details.&lt;br /&gt;
&lt;br /&gt;
Because some malicious messages attempt to masquerade as official
Microsoft security notices, it is recommended that you physically type
the URLs into your web browser and not click on the hyperlinks
provided.
&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms08-jun.mspx"&gt;June
Bulletin Summary&lt;/a&gt;&lt;/p&gt;
&lt;p style="font-weight:bold;"&gt;
Critical (3)&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-030.mspx"&gt;MS08-030&lt;/a&gt;
- Vulnerability in Bluetooth Stack Could Allow Remote Code Execution
(951376)&lt;br /&gt;
&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-031.mspx"&gt;MS08-031&lt;/a&gt;
- Cumulative Security Update for Internet Explorer (950759)&lt;br /&gt;
&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-033.mspx"&gt;MS08-033&lt;/a&gt;
- Vulnerabilities in DirectX Could Allow Remote Code Execution (951698)&lt;/p&gt;
&lt;span style="font-weight:bold;"&gt;Important (3)&lt;br /&gt;
&lt;br /&gt;
&lt;/span&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-034.mspx"&gt;MS08-034&lt;/a&gt;
- Vulnerability in WINS Could Allow Elevation of Privilege (948745)&lt;br /&gt;
&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-035.mspx"&gt;MS08-035&lt;/a&gt;
- Vulnerability in Active Directory Could Allow Denial of Service
(953235)&lt;br /&gt;
&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-036.mspx"&gt;MS08-036&lt;/a&gt;
- Vulnerabilities in Pragmatic General Multicast (PGM) Could Allow
Denial of Service (950762)
&lt;p style="font-weight:bold;"&gt;Moderate (1)&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-032.mspx"&gt;MS08-032&lt;/a&gt;
- Cumulative Security Update of ActiveX Kill Bits (950760) &amp;nbsp;
&lt;/p&gt;
This represents our regularly scheduled monthly bulletin
release
(second Tuesday of each month). Please note that Microsoft may release
bulletins out side of this schedule if we determine the need to do so. &lt;br /&gt;
&lt;p&gt;If you have
any questions regarding the patch or its implementation after
reading the above listed bulletin you should contact Product Support
Services in the United States at 1-866-PCSafety (1-866-727-2338).
International customers should contact their local subsidiary.&lt;br /&gt;
&amp;nbsp;&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1633671" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Microsoft Security Advisory Notification - June 6, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/07/microsoft-security-advisory-notification-june-6-2008.aspx</link><pubDate>Sat, 07 Jun 2008 07:18:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1632541</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1632541</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/07/microsoft-security-advisory-notification-june-6-2008.aspx#comments</comments><description>&lt;p&gt;&lt;b&gt;Microsoft Security Advisory Notification&lt;/b&gt;&lt;/p&gt;&lt;p&gt;Issued: June 6, 2008&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Security Advisories Updated or Released Today&lt;/b&gt;&lt;/u&gt;&lt;/p&gt;&lt;p&gt;* &lt;b&gt;Microsoft Security Advisory (953818)&lt;/b&gt;&amp;nbsp; &lt;/p&gt;&lt;p&gt;&amp;nbsp; - Title: Blended Threat from Combined Attack Using&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Apple&amp;#39;s Safari on the Windows Platform&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/advisory/953818.mspx"&gt;http://www.microsoft.com/technet/security/advisory/953818.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Revision Note: June 6, 2008: Modified the steps in the&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; workaround and added acknowledgment.&amp;nbsp;&amp;nbsp; &lt;br /&gt;&lt;br /&gt;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1632541" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Opera sings anti-malware tune</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/06/opera-sings-anti-malware-tune.aspx</link><pubDate>Fri, 06 Jun 2008 18:06:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1632425</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1632425</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/06/opera-sings-anti-malware-tune.aspx#comments</comments><description>&lt;p&gt;&lt;span class="body"&gt;&lt;p&gt;
Software maker Opera announced on Friday that its browser of the same
name will incorporate anti-malware features starting with the next
version.&lt;/p&gt;
&lt;p&gt;
The feature -- to be added in the next version of the browser, Opera
9.5 -- will prevent users from downloading programs from Web pages that
purposefully or inadvertently attempt to infected visitors with
malicious code. The browser&amp;#39;s ability to block known malicious links
puts the soon-to-be-released browser on par with its competitors&amp;#39;
software -- Microsoft&amp;#39;s Internet Explorer 8 and Mozilla&amp;#39;s Firefox 3 --
both which have anti-malware features.&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.securityfocus.com/brief/750"&gt;http://www.securityfocus.com/brief/750&lt;/a&gt;&amp;nbsp;&lt;/p&gt;&lt;/span&gt;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1632425" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/News/default.aspx">News</category></item><item><title>Hong Kong hosts most risky sites, says McAfee</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/05/hong-kong-hosts-most-risky-sites-says-mcafee.aspx</link><pubDate>Thu, 05 Jun 2008 19:31:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1631771</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1631771</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/05/hong-kong-hosts-most-risky-sites-says-mcafee.aspx#comments</comments><description>&lt;p&gt;&lt;span class="body"&gt;&lt;p&gt;
The Chinese territory of Hong Kong and the People&amp;#39;s Republic of China
are home to the largest fraction of malicious Web sites, according to a
report published by antivirus company McAfee on Wednesday.&lt;/p&gt;
&lt;p&gt;
In its report, &lt;a href="http://www.mcafee.com/us/about/press/corporate/2008/20080604_181010_g.html" target="_blank"&gt;Mapping the Mal Web Revisited&lt;/a&gt;,
the company found that the top-level domains with the largest
proportion of malicious sites belonged to Hong Kong (.hk) and China
(.cn) with the Philippines (.ph) and Romania (.ro) tied for fourth. The
company surveyed nearly 10 million heavily-trafficked Web sites around
the world and found that 19.2 percent of all Web sites ending in the &lt;i&gt;.hk&lt;/i&gt;
posed a danger to visitors. Approximately 11 percent of Web sites in
mainland China&amp;#39;s top-level domain were rated as risky by SiteAdvisor.&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.securityfocus.com/brief/749"&gt;http://www.securityfocus.com/brief/749&lt;/a&gt;&amp;nbsp;&lt;/p&gt;&lt;/span&gt;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1631771" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/News/default.aspx">News</category></item><item><title>MS Security Bulletin Advance Notification - Jun 5, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/05/ms-security-bulletin-advance-notification-jun-5-2008.aspx</link><pubDate>Thu, 05 Jun 2008 17:41:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1631741</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1631741</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/05/ms-security-bulletin-advance-notification-jun-5-2008.aspx#comments</comments><description>&lt;p&gt;&lt;b&gt;&lt;/b&gt;Microsoft Security Bulletin Advance Notification for June 2008&lt;br /&gt;Issued: June 5, 2008&lt;br /&gt;&lt;br /&gt;This is an advance notification of security bulletins that&lt;br /&gt;Microsoft is intending to release on June 10, 2008.&lt;br /&gt;&lt;br /&gt;The full version of the Microsoft Security Bulletin Advance&lt;br /&gt;Notification for June 2008 can be found at&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms08-jun.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms08-jun.mspx&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;This bulletin advance notification will be replaced with the &lt;br /&gt;June bulletin summary on June 10, 2008. For more information&lt;br /&gt;about the bulletin advance notification service, see&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/advance.mspx"&gt;http://www.microsoft.com/technet/security/Bulletin/advance.mspx&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Microsoft will host a webcast to address customer questions on&lt;br /&gt;these bulletins on Wednesday, June 11, 2008,&lt;br /&gt;at 11:00 AM Pacific Time (US &amp;amp; Canada). Register for the June&lt;br /&gt;Security Bulletin Webcast at &lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/summary.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/summary.mspx&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Microsoft also provides information to help customers prioritize&lt;br /&gt;monthly security updates with any non-security, high-priority&lt;br /&gt;updates that are being released on the same day as the monthly&lt;br /&gt;security updates. Please see the section, Other Information.&lt;br /&gt;&lt;br /&gt;This advance notification provides the software subject as the&lt;br /&gt;bulletin identifier, because the official Microsoft Security&lt;br /&gt;Bulletin numbers are not issued until release. The bulletin summary&lt;br /&gt;that replaces this advance notification will have the proper&lt;br /&gt;Microsoft Security Bulletin numbers (in the MSyy-xxx format) as the&lt;br /&gt;bulletin identifier. The security bulletins for this month are as&lt;br /&gt;follows, in order of severity:&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Critical Security Bulletins&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Bluetooth Bulletin&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software: &lt;/b&gt;&lt;/i&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows XP Service Pack 2 and Windows XP Service Pack 3&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows XP Professional x64 Edition and Windows XP&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Professional x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista and Windows Vista Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista x64 Edition and Windows Vista x64 Edition&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service Pack 1&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Remote Code Execution&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Internet Explorer Bulletin&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software:&lt;/b&gt;&lt;/i&gt; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 5.01 Service Pack 4 on Microsoft Windows&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 6 Service Pack 1 when installed on Microsoft&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 6 for Windows XP Service Pack 2 and Windows&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; XP Service Pack 3&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 6 for Windows XP Professional x64 Edition&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; and Windows XP Professional x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 6 for Windows Server 2003 Service Pack 1 and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 6 for Windows Server 2003 x64 Edition and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 6 for Windows Server 2003 with SP1 for&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Systems and Windows Server 2003 with SP2 for&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 for Windows XP Service Pack 2 and Windows&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; XP Service Pack 3&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 for Windows XP Professional x64 Edition&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; and Windows XP Professional x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 for Windows Server 2003 Service Pack 1 and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 for Windows Server 2003 x64 Edition and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 for Windows Server 2003 with SP1 for&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Systems and Windows Server 2003 with SP2 for&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 in Windows Vista and Windows Vista Service&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 in Windows Vista x64 Edition and Windows&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Vista x64 Edition Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 in Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 in Windows Server 2008 for x64-based&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Systems (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Internet Explorer 7 in Windows Server 2008 for Itanium-based&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Systems&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Remote Code Execution&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;b&gt;DirectX Bulletin&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software:&lt;/b&gt;&lt;/i&gt; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 7.0 on Microsoft Windows 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 8.1 on Microsoft Windows 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Microsoft&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows XP&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service Pack 2 and Windows XP Service Pack 3&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows XP&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Professional x64 Edition and Windows XP Professional x64&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows Server&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2003 Service Pack 1 and Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows Server&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2003 x64 Edition and Windows Server 2003 x64 Edition Service&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows Server&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2003 with SP1 for Itanium-based Systems and Windows Server&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2003 with SP2 for Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 10.0 on Windows Vista and Windows Vista Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 10.0 on Windows Vista x64 Edition and Windows Vista&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; x64 Edition Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 10.0 on Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation not affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 10.0 on Windows Server 2008 for x64-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation not affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - DirectX 10.0 on Windows Server 2008 for Itanium-based Systems&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Remote Code Execution&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Important Security Bulletins&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;WINS Bulletin&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software:&lt;/b&gt;&lt;/i&gt; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Windows 2000 Server Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 Service Pack 1 and Windows Server 2003&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 x64 Edition and Windows Server 2003 x64&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 with SP1 for Itanium-based Systems and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 with SP2 for Itanium-based Systems&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Elevation of Privilege&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Active Directory Bulletin&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software&lt;/b&gt;&lt;/i&gt;: &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Active Directory on Microsoft Windows 2000 Server Service Pack&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - ADAM when installed on Windows XP Service Pack 2 and Windows&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; XP Service Pack 3&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - ADAM when installed on Windows XP Professional x64 Edition&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; and Windows XP Professional x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Active Directory on Windows Server 2003 Service Pack 1 and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - ADAM when installed on Windows Server 2003 Service Pack 1 and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Active Directory on Windows Server 2003 x64 Edition and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - ADAM when installed on Windows Server 2003 x64 Edition and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Active Directory on Windows Server 2003 with SP1 for Itanium-&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; based Systems and Windows Server 2003 with SP2 for Itanium-&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Active Directory on Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - AD LDS on Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Active Directory on Windows Server 2008 for x64-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - AD LDS on Windows Server 2008 for x64-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Denial of Service&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;b&gt;PGM Bulletin&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software&lt;/b&gt;&lt;/i&gt;: &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows XP Service Pack 2 and Windows XP Service Pack 3&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows XP Professional x64 Edition and Windows XP&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Professional x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 Service Pack 1 and Windows Server 2003&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 x64 Edition and Windows Server 2003 x64&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 with SP1 for Itanium-based Systems and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 with SP2 for Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista and Windows Vista Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista x64 Edition and Windows Vista x64 Edition&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation not affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for x64-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation not affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for Itanium-based Systems&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Denial of Service&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Moderate Security Bulletins&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Kill Bit Bulletin&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;i&gt;&lt;b&gt;Affected Software:&lt;/b&gt;&lt;/i&gt; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Windows 2000 Service Pack 4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows XP Service Pack 2 and Windows XP Service Pack 3&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows XP Professional x64 Edition and Windows XP&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Professional x64 Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 Service Pack 1 and Windows Server 2003&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 x64 Edition and Windows Server 2003 x64&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Edition Service Pack 2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 with SP1 for Itanium-based Systems and&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Windows Server 2003 with SP2 for Itanium-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista and Windows Vista Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista x64 Edition and Windows Vista x64 Edition&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service Pack 1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for 32-bit Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for x64-based Systems&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Windows Server 2008 Server Core installation affected)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for Itanium-based Systems&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Impact: Remote Code Execution&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Version Number: 1.0&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Other Information&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Microsoft Windows Malicious Software Removal Tool:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;Microsoft will release an updated version of the Microsoft Windows&lt;br /&gt;Malicious Software Removal Tool on Windows Update, Microsoft Update,&lt;br /&gt;Windows Server Update Services, and the Download Center.&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Non-Security, High-Priority Updates on MU, WU, and WSUS:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;For information about non-security releases on Windows Update and&lt;br /&gt;Microsoft &lt;br /&gt;update, please see:&lt;br /&gt;* &lt;a href="http://support.microsoft.com/kb/894199"&gt;http://support.microsoft.com/kb/894199&lt;/a&gt;: Microsoft Knowledge Base&lt;br /&gt;&amp;nbsp; Article 894199, Description of Software Update Services and&lt;br /&gt;&amp;nbsp; Windows Server Update Services changes in content for 2008.&lt;br /&gt;&amp;nbsp; Includes all Windows content.&lt;br /&gt;* &lt;a href="http://technet.microsoft.com/en-us/wsus/bb466214.aspx"&gt;http://technet.microsoft.com/en-us/wsus/bb466214.aspx&lt;/a&gt;: New,&lt;br /&gt;&amp;nbsp; Revised, and Released Updates for Microsoft Products Other Than&lt;br /&gt;&amp;nbsp; Microsoft Windows&lt;br /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1631741" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item><item><title>Microsoft Security Bulletin Minor Revisions - June 4, 2008</title><link>http://msmvps.com/blogs/donpatterson/archive/2008/06/05/microsoft-security-bulletin-minor-revisions-june-4-2008.aspx</link><pubDate>Thu, 05 Jun 2008 06:47:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1631594</guid><dc:creator>Don</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/donpatterson/rsscomments.aspx?PostID=1631594</wfw:commentRss><comments>http://msmvps.com/blogs/donpatterson/archive/2008/06/05/microsoft-security-bulletin-minor-revisions-june-4-2008.aspx#comments</comments><description>&lt;p&gt;Title: Microsoft Security Bulletin Minor Revisions&lt;br /&gt;Issued: June 4, 2008&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;The following bulletins have undergone a minor revision increment. &lt;br /&gt;Please see the appropriate bulletin for more details.&lt;br /&gt;&lt;br /&gt;&amp;nbsp; * MS08-028 - Critical&lt;br /&gt;&amp;nbsp; * MS08-027 - Critical&lt;br /&gt;&amp;nbsp; * MS08-015 - Critical&lt;br /&gt;&amp;nbsp; * MS08-014 - Critical&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;Bulletin Information:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;* &lt;b&gt;MS08-028 - Critical&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms08-028.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms08-028.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Reason for Revision: V1.2 (June 4, 2008): Added a link to&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Microsoft Knowledge Base Article 950749 under Known Issues in&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; the Executive Summary.&amp;nbsp; &lt;br /&gt;&amp;nbsp; - Originally posted: May 13, 2008&lt;br /&gt;&amp;nbsp; - Updated: June 4, 2008&lt;br /&gt;&amp;nbsp; - Bulletin Severity Rating: Critical&lt;br /&gt;&amp;nbsp; - Version: 1.2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;* &lt;b&gt;MS08-027 - Critical&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms08-027.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms08-027.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Reason for Revision: V1.1 June 4, 2008: Added a link to Microsoft&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Knowledge Base Article 951208 under Known Issues in the&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Executive Summary.&amp;nbsp; &lt;br /&gt;&amp;nbsp; - Originally posted: May 13, 2008&lt;br /&gt;&amp;nbsp; - Updated: June 4, 2008&lt;br /&gt;&amp;nbsp; - Bulletin Severity Rating: Critical&lt;br /&gt;&amp;nbsp; - Version: 1.1&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;* &lt;b&gt;MS08-015 - Critical&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms08-015.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms08-015.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Reason for Revision: V1.5 (June 4, 2008): Bulletin updated: Added&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; entry to Update FAQ to explain why the update may be offered&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; even when Affected Software isn&amp;#39;t present on the system.&amp;nbsp; &lt;br /&gt;&amp;nbsp; - Originally posted: March 11, 2008&lt;br /&gt;&amp;nbsp; - Updated: June 4, 2008&lt;br /&gt;&amp;nbsp; - Bulletin Severity Rating: Critical&lt;br /&gt;&amp;nbsp; - Version: 1.5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;* &lt;b&gt;MS08-014 - Critical&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&amp;nbsp; - &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms08-014.mspx"&gt;http://www.microsoft.com/technet/security/bulletin/ms08-014.mspx&lt;/a&gt;&lt;br /&gt;&amp;nbsp; - Reason for Revision: V3.2 (June 4, 2008): Bulletin updated: Added&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; entry to Update FAQ to explain why the update may be offered&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; even when Affected Software isn&amp;#39;t present on the system.&amp;nbsp; &lt;br /&gt;&amp;nbsp; - Originally posted: March 11, 2008&lt;br /&gt;&amp;nbsp; - Updated: June 4, 2008&lt;br /&gt;&amp;nbsp; - Bulletin Severity Rating: Critical&lt;br /&gt;&amp;nbsp; - Version: 3.2&lt;br /&gt;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1631594" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/donpatterson/archive/tags/Advisories+_2F00_+Bulletins/default.aspx">Advisories / Bulletins</category></item></channel></rss>