Comments Off

Microsoft Security Advisory (2269637): Insecure Library Loading Could Allow Remote Code Execution – Version: 12.0

Revision Note: V12.0 (November 8, 2011): Added the following Microsoft Security Bulletin to the Updates relating to Insecure Library Loading section: MS11-085, “Vulnerability in Windows Mail and Windows Meeting Space Could Allow Remote Code Execution.” Summary: Microsoft is aware that research has been published detailing a remote attack vector for a class of vulnerabilities that [...]


Comments Off

Microsoft Security Advisory (2639658): Vulnerability in TrueType Font Parsing Could Allow Elevation of Privilege – Version: 1.2

Revision Note: V1.2 (November 4, 2011): Revised the workaround, Deny access to T2EMBED.DLL, to improve support for non-English versions of Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2. Customers with non-English versions of Microsoft Windows should reevaluate the applicability of the revised workaround for their environment. Summary: Microsoft is investigating a [...]


Comments Off

Microsoft Security Advisory (2269637): Insecure Library Loading Could Allow Remote Code Execution – Version: 11.0

Revision Note: V11.0 (October 11, 2011): Added the following Microsoft Security Bulletins to the Updates relating to Insecure Library Loading section: MS11-075, “Vulnerability in Microsoft Active Accessibility Could Allow Remote Code Execution;” and MS11-076, “Vulnerability in Windows Media Center Could Allow Remote Code Execution.” Summary: Microsoft is aware that research has been published detailing a [...]


Comments Off

Microsoft Security Advisory (2588513): Vulnerability in SSL/TLS Could Allow Information Disclosure – Version: 1.0

Revision Note: V1.0 (September 26, 2011): Advisory published. Summary: Microsoft is aware of detailed information that has been published describing a new method to exploit a vulnerability in SSL 3.0 and TLS 1.0, affecting the Windows operating system. This vulnerability affects the protocol itself and is not specific to the Windows operating system. This is [...]


Comments Off

Microsoft Security Advisory (2269637): Insecure Library Loading Could Allow Remote Code Execution – Version: 9.0

Revision Note: V9.0 (August 9, 2011): Added Microsoft Security Bulletin MS11-059, “Vulnerability in Data Access Components Could Allow Remote Code Execution,” to the Updates relating to Insecure Library Loading section. Summary: Microsoft is aware that research has been published detailing a remote attack vector for a class of vulnerabilities that affects how applications load external [...]