republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Microsoft Security Bulletin(s) for December 9, 2008
Uniqs:
2920
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
MS Program Manager - "People who use IE..." »
« UK ISPs flip censorship switch on Wikipedia  
page: 1 · 2

dp
Go Steelers
Premium,MVM
join:2000-12-08
Greensburg, PA
·Verizon Online DSL

Microsoft Security Bulletin(s) for December 9, 2008

Microsoft Security Bulletin(s) for December 9, 2008

Note: There may be latency issues due to replication, if the page does not display keep refreshing

Today Microsoft released the following Security Bulletin(s).

Note: »www.microsoft.com/technet/security and »www.microsoft.com/security are authoritative in all matters concerning Microsoft Security Bulletins! ANY e-mail, web board or newsgroup posting (including this one) should be verified by visiting these sites for official information. Microsoft never sends security or other updates as attachments. These updates must be downloaded from the microsoft.com download center or Windows Update. See the individual bulletins for details.

Because some malicious messages attempt to masquerade as official Microsoft security notices, it is recommended that you physically type the URLs into your web browser and not click on the hyperlinks provided.

Bulletin Summary:

»www.microsoft.com/technet/securi···dec.mspx

Critical (6)

Microsoft Security Bulletin MS08-071
Vulnerabilities in GDI Could Allow Remote Code Execution (956802)
»www.microsoft.com/technet/securi···071.mspx

Microsoft Security Bulletin MS08-075
Vulnerabilities in Windows Search Could Allow Remote Code Execution (959349)
»www.microsoft.com/technet/securi···075.mspx

Microsoft Security Bulletin MS08-073
Cumulative Security Update for Internet Explorer (958215)
»www.microsoft.com/technet/securi···073.mspx

Microsoft Security Bulletin MS08-070
Vulnerabilities in Visual Basic 6.0 Runtime Extended Files (ActiveX Controls) Could Allow Remote Code Execution (932349)
»www.microsoft.com/technet/securi···070.mspx

Microsoft Security Bulletin MS08-072
Vulnerabilities in Microsoft Office Word Could Allow Remote Code Execution (957173)
»www.microsoft.com/technet/securi···072.mspx

Microsoft Security Bulletin MS08-074
Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution (959070)
»www.microsoft.com/technet/securi···074.mspx

Important (2)

Microsoft Security Bulletin MS08-077
Vulnerability in Microsoft Office SharePoint Server Could Cause Elevation of Privilege (957175)
»www.microsoft.com/technet/securi···077.mspx

Microsoft Security Bulletin MS08-076
Vulnerabilities in Windows Media Components Could Allow Remote Code Execution (959807)
»www.microsoft.com/technet/securi···076.mspx

Please note that Microsoft may release bulletins out side of this schedule if we determine the need to do so.

If you have any questions regarding the patch or its implementation after reading the above listed bulletin you should contact Product Support Services in the United States at 1-866-PCSafety 1-866-727-2338. International customers should contact their local subsidiary.

As always, download the updates only from the vendors website - visit Windows Update and Office Update or Microsoft Update websites. You may also get the updates thru Automatic Updates functionality in Windows system.

Security Tool
Find out if you are missing important Microsoft product updates by using MBSA.
--
Microsoft MVP, 2004 - 2008

lilhurricane
Crunchin' For Cures
Premium,Mod
join:2003-01-11
Purple Zone
clubs:

Re: Microsoft Security Bulletin(s) for December 9, 2008

Thank you kindly, dp See Profile
DrDemento

join:2005-07-25
Brick, NJ
Got the following for 3 XP machines
890830
955839
952069
954600
956802
958215
All downloaded and installed. Thanks much.

NICK ADSL UK
Premium,MVM
join:2004-02-22

Thank you dp

TechNet Webcast: Information About Microsoft December Security Bulletins (Level 200)
Event ID: 1032374647


Language(s): English.
Product(s): Security.
Audience(s): IT Professional.

Duration: 60 Minutes
Start Date: Wednesday, December 10, 2008 11:00 AM Pacific Time (US & Canada)


Event Overview

On December 9, 2008, Microsoft releases its monthly security bulletins. Join us for a brief overview of the technical details of the December security bulletins. The intent of this webcast is to address your concerns. Therefore, most of the webcast is devoted to attendees asking questions about the bulletins and getting answers from our security experts.

Presenters: Christopher Budd, Security Response Communications Lead, Microsoft Corporation and and Adrian Stone, Lead Security Program Manager, Microsoft Corporation

Register now for the December security bulletin webcast.
--
Wilders Security Forum Admin
Microsoft MVP - Consumer Security


NICK ADSL UK
Premium,MVM
join:2004-02-22

Malicious Software Removal Tool
Published: January 11, 2005 | Updated: December 9, 2008

New Additions

We have added detection and cleaning capabilities for the following malicious software:

• FakeXPA
»www.microsoft.com/security/porta···fFakeXPA

• Yektel
»www.microsoft.com/security/porta···Yektel.A
--
Wilders Security Forum Admin
Microsoft MVP - Consumer Security

jarrycanada

join:2004-12-02
Schenectady, NY

1 edit

Re: Microsoft Security Bulletin(s) for December 9, 2008

Strange, I got every update as normal this month as everyone did but the Malicious Software Removal Tool for this month... hmm anyone else not get it too?

MarkAW
Barry White or lil bratt
Premium
join:2001-08-27
Canada
·Bell Sympatico
·Cogeco Cable


3 edits
Click for full size
Click for full size
My wife's and MSRT is missing
Thanks dp See Profile and NICK ADSL UK See Profile got 5 XP PRO 1 for MS Office 2002/XP plus MSRT.

Edit Got 5 for XP Home no MSRT though.

TKJunkMail
Enjoy the sun
Premium
join:2002-03-03
Avalon, NJ
·Sprint Mobile Broa..
·Comcast

All fixes applied without issues so far.



dadkins
Can you do Blu?
Premium,MVM
join:2003-09-26
Hercules, CA
·Comcast


2 edits
Click for full size
Click for full size
Thanks DP!

Vista Home Premium - 8 plus the MSRT.

XP MCE 2005 - 6 plus the MSRT

Babar
Premium
join:2001-05-09
Washington
Thanks, dp!

6 applied to the XP boxes with no issues...
--
"Geez, I'm goin' crazy out there at the lake."

MagMan
Life is simpler when you tell the truth.
Premium
join:2003-10-01
Westlake, OH
Thanks, 7 for me on XP home, no problems.

TKJunkMail
Enjoy the sun
Premium
join:2002-03-03
Avalon, NJ
·Sprint Mobile Broa..
·Comcast

News item on today's patches:
»www.securityfocus.com/brief/868
Microsoft's last regularly scheduled update for the year closed 28 documented security holes, the most flaws fixed since the software giant moved over to monthly patches, according to one security firm.

The eight software updates released by the company on Tuesday closed six security issues in the ActiveX controls for Microsoft Visual Basic 6.0's Runtime Extended Files, all of which could allow remote code execution if a user visited a malicious Web site, Microsoft stated. A second update solved four memory-corruption issues in the company's browser, Internet Explorer. Two other fixes corrected a total of 11 vulnerabilities in Microsoft Word and Excel.

The eight updates also included fixes for security issues in Microsoft's graphics library, Windows' search functionality, Windows Media Components and a single vulnerability in Microsoft Office SharePoint Server.

Symantec stated that the collection of patches fixes the most vulnerabilities in a monthly update since Microsoft started its regularly scheduled patch program.

--
My BLOG .. .. Internet News .. .. My Web Page
Ask yourself one question: 'Do I feel lucky?' Well, do ya punk?

LadyL
Premium
join:2002-09-18
Lorain, OH
Only 3 for my Vista :
KB957321, 949108, 959130
All downloaded and installed with no problems.
Thank you.
--
Lonnie

jabarnut
Light Years Away
Premium,MVM
join:2005-01-22
Galaxy M31

Already that time of the month again?
(Time sure flies when you're having fun!)

Thanks for the heads up dp See Profile!

Eight updates here for my XP Pro SP3 machines-(6 for XP, 2 for Office).

All seems well so far...no immediate problems to report.
(Haven't done my 2 Vista Machines yet).
--
I had a life once.....now I have a Computer and a Modem.

Abiosis

join:2003-09-25
Covina, CA
smooth ride~~~


Pole883
Premium
join:2004-01-27
Schenectady, NY
TYKIFYWIM!!

redxii
too big to fail
Premium,Mod
join:2001-02-26
Texas

Host:
/dev/null
Broadband Tweaks
Suddenlink
ISDN
Fiber Optic
They pulled the MSRT? After I installed it from WU I got offered November's MSRT, and one computer I haven't update yet isn't offered December's.

Still available from here: »www.microsoft.com/downloads/deta···ylang=en
Version string 9BF57AAA-6CE6-4FC4-AEC7-1B288F067467

La Luna
Surviving Ashraful
Premium
join:2001-07-12
Warwick, NY
clubs:
·Optimum Online
·Vonage

Re: Microsoft Security Bulletin(s) for December 9, 2008

said by redxii See Profile :

They pulled the MSRT? After I installed it from WU I got offered November's MSRT, and one computer I haven't update yet isn't offered December's.

Still available from here: »www.microsoft.com/downloads/deta···ylang=en
Version string 9BF57AAA-6CE6-4FC4-AEC7-1B288F067467
Same here, no MSRT. Got the rest though.

Thanks dp See Profile!
--
1/20/09 The Beginning of the End

12,386 DEADLY TERROR ATTACKS SINCE 9/11
~~SARAH BRIGHTMAN SYMPHONY WORLD TOUR

Doobie

@tele.dk

Re: Microsoft Security Bulletin(s) for December 9, 2008

said by La Luna See Profile :

Same here, no MSRT. Got the rest though.
Yep. Same here
--
1/20/09 The Beginning of an era of hope

Buddel
If it ain't broke, don't fix it.
Premium
join:2004-03-06
EU

1 edit
8 for me on Vista Premium. Downloading ... ... Thanks, Mr. P.

EDIT: I'm back. No problems so far.

jaykaykay
4 Ever Young
Premium,MVM
join:2000-04-13
Scottsdale, AZ

1 edit
Thanks for the heads up to all noting that all was going well for you guys. Also to DP for noting the updates in the first place. My motto is never install until coming here to see if there is any problem once finding out that there is an update.

Owlbet
Ignite the Ice
Premium,MVM
join:2002-09-24
Palmer, AK
clubs:
·MTA Online

Good lord! Sixteen updates between Vista and Office!




Thanks for the heads up, dp See Profile and NICK ADSL UK See Profile. Muchly appreciated.


--
Team Discovery
The 2008-2009 Alaska Aces record as of this post: 14-7-1

MarkAW
Barry White or lil bratt
Premium
join:2001-08-27
Canada
Does anyone know why MS pulled the MSRT update from yesterdays MS updates.

dp
Go Steelers
Premium,MVM
join:2000-12-08
Greensburg, PA
·Verizon Online DSL

Re: Microsoft Security Bulletin(s) for December 9, 2008

said by MarkAW See Profile :

Does anyone know why MS pulled the MSRT update from yesterdays MS updates.
It may have been pulled to correct a False Positive (TrojanDropper:Win32/Renos.N detecting particular uninstall files).
--
Microsoft MVP, 2004 - 2008

MarkAW
Barry White or lil bratt
Premium
join:2001-08-27
Canada

Re: Microsoft Security Bulletin(s) for December 9, 2008

OK thanks dp See Profile.

Jrb2
Premium
join:2001-08-31
Thank you DP and Nick.
Forums » Up and Running » Security » SecurityMS Program Manager - "People who use IE..." »
« UK ISPs flip censorship switch on Wikipedia  
page: 1 · 2


Wednesday, 02-Dec 18:44:31 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [161] Comcast Releasing Promised Usage Meter
· [92] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [78] Latest Consumer Reports Survey Not Kind To AT&T
· [70] Baltimore To Ban Lazy Cable Installs
· [62] Broadband Killed The Game Console
· [54] Rogers Unveils The ISP Dream Model
· [46] ACTA: Global Three Strikes
· [41] Rural Carriers Quickly Embracing Fiber
· [38] Charter Exits Chapter 11
· [33] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
Most people now reading
· MS admits Windows Updates principally created to annoy [Security]
· Quality/longevity of 15A 120V receptacles [Home Repair & Improvement]
· [Newsgroups] Newzleech down? [Filesharing Software]
· Windows 7 boot manager editing questions [Microsoft Help]
· UBB round 2 at the CRTC [Canadian Broadband]
· IMG 1.7 (IMG Updates and Discussion) [Verizon FIOS TV]
· Ooma changing features [VOIP Tech Chat]
· A little freaky, not sure if its legit. [Spam, Scam and Phishbusters]
· DK Weapon Upgrade [World of Warcraft]