This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

Microsoft Security Bulletin - Dec. 2005

2 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Microsoft Security Bulletin Summary for December, 2005
Published: December 13, 2005
Version: 1.0


Summary
Included in this advisory are updates for newly discovered vulnerabilities. These vulnerabilities, broken down by severity are:
  • Critical (1)
    Cumulative Security Update for Internet Explorer (905915)
    Vulnerabilities exist in Internet Explorer, the most severe of these could allow an attacker to take complete control of an affected system.
  • Important (1)
    Vulnerability in Windows Kernel Could Allow Elevation of Privilege (908523)
    A vulnerability exists in the Windows Kernel that could allow elevation of privileges on an affected system. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.
Security Bulletin Summary - December 2005»
Microsoft Security Bulletin Minor Revisions
Vulnerability in Server Message Block Could Allow Remote Code Execution (885250)
Issued: December 13, 2005

Summary
=======
The following bulletins have undergone a minor revision increment.
Please see the appropriate bulletin for more details: MS05-011

Bulletin Information:
=====================

MS05-011
http://www.microsoft.com/technet/security/…n/ms05-011.mspx

Reason for Revision:
Bulletin revised to advise customers of the availability of Microsoft Knowledge Base Article 896427 which describes a potential issue that may be encountered after installing this update.

Originally posted: February 8, 2005
Updated: December 13, 2005
Bulletin Severity Rating: Critical
Version: 1.1

Support:
========
Technical support resources can be found at:
http://go.microsoft.com/fwlink/?LinkId=21131
Microsoft Security Bulletin Re-Releases
Vulnerability in DirectShow(DirectX) Could Allow Remote Code Execution (904706)
Issued: December 13, 2005

Summary
=======
The following bulletins have undergone a major revision increment.
Please see the appropriate bulletin for more details: MS05-050

Bulletin Information: MS05-050
http://www.microsoft.com/technet/security/…n/ms05-050.mspx

- Reason for Revision:
Bulletin updated to advise customers that a revised version of the security update is available for Windows 2000 SP4, Windows XP SP1 and Windows 2003, listed in the "Affected Software" section. Customers that have applied the appropriate version of DirectX on the appropriate version of Windows need not take any action. Customers that may have installed the incorrect DirectX package manually are encouraged to evaluate their systems and re-deploy the correct update to ensure that the correct version of DirectX has been updated. For additional information, see "Why did Microsoft update this bulletin on November 9, 2005." in "Frequently asked questions (FAQ) related to this security update" section.

Originally posted: October 11, 2005
Updated: December 13, 2005
Bulletin Severity Rating: Critical
Version: 2.0

Support:
========
Technical support resources can be found at:
http://go.microsoft.com/fwlink/?LinkId=21131