What the Tech logo
Welcome! Register for a free account (or login) > How does it work?
  1. Quickly register. It will only take 60 seconds.
  2. Start a new topic. Ask your question. Wait for an email reply.
  3. Is your system infected? Begin reading the malware removal guide.
register button
 
Reply to this topicStart new topic
> MS Security Bulletin Summary - January 2010
AplusWebMaster
post Jan 12 2010, 01:24 PM
Post #1


AplusWebMaster
*****

Group: Authentic Member
Posts: 4,561
Joined: 30-December 03
From: USA
Member No.: 1,643
Operating System: XP/SP3



FYI...

- http://www.microsoft.com/technet/security/...n/MS10-jan.mspx
January 12, 2010 - "This bulletin summary lists security bulletins released for January 2010... (Total of -1-) [See "Affected Software" at URL above.]

Critical -1-

Microsoft Security Bulletin MS10-001 - Critical
Vulnerability in the Embedded OpenType Font Engine Could Allow Remote Code Execution (972270*)
- http://www.microsoft.com/technet/security/...n/MS10-001.mspx
Maximum Severity Rating: Critical
Vulnerability Impact: Remote Code Execution
Restart Requirement: May require restart
Affected Software: Microsoft Windows
* http://support.microsoft.com/kb/972270
___

Severity and exploitability index
- http://blogs.technet.com/photos/msrcteam/i...6/original.aspx

Deployment Priority
- http://blogs.technet.com/photos/msrcteam/i...7/original.aspx
___

MSRT
- http://support.microsoft.com/?kbid=890830
January 12, 2010 - Revision: 68.0
(Recent additions)
Win32/FakeScanti - October 2009 (V 3.0) Moderate
Win32/FakeVimes - November 2009 (V 3.1) Moderate
Win32/PrivacyCenter - November 2009 (V 3.1) Moderate
Win32/Hamweq - December 2009 (V 3.2) Moderate
Win32/Rimecud - January 2010 (V 3.3) Moderate

- http://blogs.technet.com/mmpc/archive/2010...nuary-2010.aspx
January 19, 2010
___

ISC Analysis
- http://isc.sans.org/diary.html?storyid=7954
Last Updated: 2010-01-12 18:29:33 UTC
.

This post has been edited by AplusWebMaster: Jan 20 2010, 04:50 AM
Go to the top of the page
 
+Quote Post
AplusWebMaster
post Jan 21 2010, 05:07 PM
Post #2


AplusWebMaster
*****

Group: Authentic Member
Posts: 4,561
Joined: 30-December 03
From: USA
Member No.: 1,643
Operating System: XP/SP3



Get this NOW...

MS Security Bulletin MS10-002 - Critical
Cumulative Security Update for Internet Explorer (978207)
- http://www.microsoft.com/technet/security/...n/ms10-002.mspx
January 21, 2010
Maximum Severity Rating: Critical
Vulnerability Impact: Remote Code Execution
Restart Requirement: Requires restart
Affected Software: Microsoft Windows

>>> http://update.microsoft.com/

- http://isc.sans.org/diary.html?storyid=8062
Last Updated: 2010-01-21 21:59:42 UTC

- http://secunia.com/advisories/38209/2/
Last Update: 2010-01-25
Critical: Extremely critical

- http://atlas.arbor.net/briefs/index#79796348
Severity: Extreme Severity
January 22, 2010 - "... attacks are being abused in the wild at present to download commonly seen malware in many cases. All sites using Windows should update immediately to remedy their security position.
Analysis: This is a major attack vector at present and we anticipate that it will continue to be for some time. Sites using Windows should review this update and push it out to all sites immediately to address this situation..."

ph34r.gif ph34r.gif

- http://secunia.com/advisories/38209/3/
CVE reference:
- http://web.nvd.nist.gov/view/vuln/detail?v...d=CVE-2009-4074
- http://web.nvd.nist.gov/view/vuln/detail?v...d=CVE-2010-0027
- http://web.nvd.nist.gov/view/vuln/detail?v...d=CVE-2010-0244
- http://web.nvd.nist.gov/view/vuln/detail?v...d=CVE-2010-0245
- http://web.nvd.nist.gov/view/vuln/detail?v...d=CVE-2010-0246
- http://web.nvd.nist.gov/view/vuln/detail?v...d=CVE-2010-0247
- http://web.nvd.nist.gov/view/vuln/detail?v...d=CVE-2010-0248

- http://web.nvd.nist.gov/view/vuln/detail?v...d=CVE-2010-0249
Last revised: 01/23/2010
CVSS v2 Base Score: 9.3 (HIGH)
.

This post has been edited by AplusWebMaster: Jan 25 2010, 09:33 AM
Go to the top of the page
 
+Quote Post

Reply to this topicStart new topic

 


RSS Time is now: 13th March 2010 - 08:47 AM
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk.
Member site: Alliance of Security Analysis Professionals | UNITE Against Malware
Memory Forums | Auto Repair Forum
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy