site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Uniqs:
5746
Share Topic
Posting?
Post a:
Post a:
Links: ·Hijack This logs? ·Panda Free Tools ·Vundo Removal
page: 1 · 2
AuthorAll Replies


dp
Premium,MVM
join:2000-12-08
Greensburg, PA
kudos:7

Microsoft Security Bulletin(s) for September 8, 2009

Note: There may be latency issues due to replication, if the page does not display keep refreshing

Today Microsoft released the following Security Bulletin(s).

Note: »www.microsoft.com/technet/security and »www.microsoft.com/security are authoritative in all matters concerning Microsoft Security Bulletins! ANY e-mail, web board or newsgroup posting (including this one) should be verified by visiting these sites for official information. Microsoft never sends security or other updates as attachments. These updates must be downloaded from the microsoft.com download center or Windows Update. See the individual bulletins for details.

Because some malicious messages attempt to masquerade as official Microsoft security notices, it is recommended that you physically type the URLs into your web browser and not click on the hyperlinks provided.

Bulletin Summary:

»www.microsoft.com/technet/securi···sep.mspx

Critical (5)

Microsoft Security Bulletin MS09-045
Vulnerability in JScript Scripting Engine Could Allow Remote Code Execution (971961)
»www.microsoft.com/technet/securi···045.mspx

Microsoft Security Bulletin MS09-049
Vulnerability in Wireless LAN AutoConfig Service Could Allow Remote Code Execution (970710)
»www.microsoft.com/technet/securi···049.mspx

Microsoft Security Bulletin MS09-047
Vulnerabilities in Windows Media Format Could Allow Remote Code Execution (973812)
»www.microsoft.com/technet/securi···047.mspx

Microsoft Security Bulletin MS09-048
Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (967723)
»www.microsoft.com/technet/securi···048.mspx

Microsoft Security Bulletin MS09-046
Vulnerability in DHTML Editing Component ActiveX Control Could Allow Remote Code Execution (956844)
»www.microsoft.com/technet/securi···046.mspx

Please note that Microsoft may release bulletins out side of this schedule if we determine the need to do so.

If you have any questions regarding the patch or its implementation after reading the above listed bulletin you should contact Product Support Services in the United States at 1-866-PCSafety 1-866-727-2338. International customers should contact their local subsidiary.

As always, download the updates only from the vendors website - visit Windows Update and Office Update or Microsoft Update websites. You may also get the updates thru Automatic Updates functionality in Windows system.

Security Tool
Find out if you are missing important Microsoft product updates by using MBSA.
--
Microsoft® Security MVP, 2004 - 2009
DP's Security Bits


MarkAW
Barry White
Premium
join:2001-08-27
Canada
kudos:16

1 edit

Click for full size
Thanks dp See Profile 5 updates for my XP systems.
Edit: Reboot was needed.

Romney2012
Defeat Obama 2012-Chg we can believe in
Premium
join:2002-03-03
USA
kudos:4

reply to dp
Applied the following 8 updates to 2 Windows Vista SP2 32 bit systems:



A reboot was needed.
Both Vista systems(desktop & laptop) are up and running with no problems seen so far.


NICK ADSL UK
Premium,MVM
join:2004-02-22
kudos:14
Reviews:
·Zen Internet

reply to dp
thanks don

TechNet Webcast: Information About Microsoft September Security Bulletins (Level 200)
Event ID: 1032407486

Language(s): English.
Product(s): Security.
Audience(s): IT Generalist.

Duration: 90 Minutes
Start Date: Wednesday, September 09, 2009 11:00 AM Pacific Time (US & Canada)

Event Overview

On September 8, 2009, Microsoft releases its monthly security bulletins. Join us for a brief overview of the technical details of the September security bulletins. We intend to address your concerns in this webcast, therefore, most of the webcast is devoted to attendees asking questions about the bulletins and getting answers from Microsoft security experts.

Presenters: Christopher Budd, Trustworthy Computing Senior Public Relations Manager, Microsoft Corporation and Adrian Stone, Senior Security Program Manager Lead, Microsoft Corporation

Register now for the september security bulletin webcast.
--
Wilders Security Forum Admin
Microsoft MVP - Consumer Security


DrDemento

join:2005-07-25
Brick, NJ

reply to dp
I got 956844, 890830,971961,968816 on 3 XP machines-reboot required and all installed seamlessly.



NICK ADSL UK
Premium,MVM
join:2004-02-22
kudos:14
Reviews:
·Zen Internet

reply to dp
Microsoft® Windows® Malicious Software Removal Tool (KB890830)
Brief Description
This tool checks your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps to remove the infection if it is found. Microsoft will release an updated version of this tool on the second Tuesday of each month.

Date Published: 9/8/2009
»www.microsoft.com/downloads/deta···ylang=en
--
Wilders Security Forum Admin
Microsoft MVP - Consumer Security



antiphishing
Phishing Scam Terminator
Premium
join:2004-06-09
Wilkes Barre, PA
kudos:2
Reviews:
·PenTeleData
·ProLog

reply to Romney2012

said by Romney2012:

Applied the following 8 updates to 2 Windows Vista SP2 32 bit systems:

I'm in the process of installing seven updates on my, Vista machine service pack 1 .

See you on the flip side of the Windows reboot.............

I just love Microsoft Vista
--

Specializing in "takes downs" of phishing and advance fee scams
Send your Phishing/Advance fee scams to: phish@antihotmail.com
»www.phishtank.com
»www.fraudwatchers.org
»mozilla.com

Romney2012
Defeat Obama 2012-Chg we can believe in
Premium
join:2002-03-03
USA
kudos:4

reply to Romney2012
And Windows 7 Release Candidate 32 bit picked up these 2 patches:



No reboot was needed.
System running without problems so far.


siljaline
I'm lovin' that double wide
Premium
join:2002-10-12
Montreal, QC
kudos:17
Reviews:
·Bell Sympatico

reply to dp
All Critical and selected updates installed seamlessly, dp See Profile less this nag > » Silverlight 3.0.40818



antdude
A Ninja Ant
Premium,VIP
join:2001-03-25
kudos:2

reply to dp
No problems on my XP Home and Pro. machines (SP2 and SP3) so far.



Ract
Microsoft Certified Systems Crasher
Premium
join:2004-01-07
Philippines

reply to dp

Click for full size
Microsoft Update
Thanks for the heads up!

9 available updates for me on a Vista Ultimate x64 with Office 2007 Ultimate system.

Installed with no problems.
--
"You can find almost anything on the Internet, As long as you know how and where to look for it. Trust me!"


LadyL
Premium
join:2002-09-18
Lorain, OH

reply to dp
Got 6 Updates for my Vista SP2...no problems so far. Reboot needed.
--
Lonnie


Tuulilapsi
Kenosis

join:2002-07-29
Finland

reply to dp
The MS09-048 bulletin is confusing me. Must be the hour. Can anyone else make heads or tails out of which of those TCP/IP vulnerabilities apply to "non-default" configurations of XP that have listening services (because there certainly are some of those configs out there)? Is it only the denial of service vulnerabilities that affect such XP systems? Or does the remote code execution vulnerability affect them, too? The latter would be as bad as it gets, considering that there seems to be no patch for XP.
--
Limited User Accounts.
Software Restriction Policies. How about the short version?



Thane_Bitter

join:2005-01-20
London

reply to dp
Thanks, forgot it was update Tueday.



Pop N Fresh

@shawcable.net

reply to dp

quote:
Critical (5)

Microsoft Security Bulletin MS09-045
Vulnerability in JScript Scripting Engine Could Allow Remote Code Execution (971961)
»www.microsoft.com/technet/securi···045.mspx

Microsoft Security Bulletin MS09-049
Vulnerability in Wireless LAN AutoConfig Service Could Allow Remote Code Execution (970710)
»www.microsoft.com/technet/securi···049.mspx

Microsoft Security Bulletin MS09-047
Vulnerabilities in Windows Media Format Could Allow Remote Code Execution (973812)
»www.microsoft.com/technet/securi···047.mspx

Microsoft Security Bulletin MS09-048
Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (967723)
»www.microsoft.com/technet/securi···048.mspx

Microsoft Security Bulletin MS09-046
Vulnerability in DHTML Editing Component ActiveX Control Could Allow Remote Code Execution (956844)
»www.microsoft.com/technet/securi···046.mspx
We are sorry, the page you requested cannot be found


siljaline
I'm lovin' that double wide
Premium
join:2002-10-12
Montreal, QC
kudos:17
Reviews:
·Bell Sympatico

reply to Thane_Bitter
Every second full Tuesday of every Calendar month is Patch-Tuesday Thane_Bitter See Profile


Romney2012
Defeat Obama 2012-Chg we can believe in
Premium
join:2002-03-03
USA
kudos:4

1 edit

said by siljaline:

Every second full Tuesday of every Calendar month is Patch-Tuesday Thane_Bitter See Profile
Are there Tuesday's that aren't FULL Tuesday's? Did I miss half-tuesdays on the calendar?


Thane_Bitter

join:2005-01-20
London

reply to siljaline

said by siljaline:

...is Patch-Tuesday Thane_Bitter See Profile
P-TT_B!!!
Holly crap they named it after me - Awesomeness!!!!

5 updates for Win2k (should someone else still be using that OS)
Security Update for Windows 2000 (KB956844)
Windows Malicious Software Removal Tool - September 2009 (KB890830)
Security Update for Windows 2000 (KB971961)
Security Update for Windows Media Format Runtime 9 for Windows 2000 (KB968816)
Update for Microsoft Silverlight (KB974331)


antdude
A Ninja Ant
Premium,VIP
join:2001-03-25
kudos:2
Reviews:
·RoadRunner Cable

1 edit

reply to dp

No update for W2K SP4.

»www.microsoft.com/technet/securi···048.mspx mentioned no updates for Windows 2000 SP4 because it requires a major change in OS. If no fixes, then what will stop it for those who still use it? Hardware routers and/or software firewalls?
--
Ant @ »antfarm.ma.cx and »aqfl.net. Please do not IM/e-mail me for technical support. Use the forum! Disclaimer: The views expressed in this posting are mine, and do not necessarily reflect the views of my employer

Romney2012
Defeat Obama 2012-Chg we can believe in
Premium
join:2002-03-03
USA
kudos:4

1 edit

reply to Tuulilapsi

Re: Microsoft Security Bulletin(s) for September 8, 2009

said by Tuulilapsi:

The MS09-048 bulletin is confusing me. Must be the hour. Can anyone else make heads or tails out of which of those TCP/IP vulnerabilities apply to "non-default" configurations of XP that have listening services (because there certainly are some of those configs out there)? Is it only the denial of service vulnerabilities that affect such XP systems? Or does the remote code execution vulnerability affect them, too? The latter would be as bad as it gets, considering that there seems to be no patch for XP.
Some explanations of all the fixes out today. Maybe one of them can answer your question:
»www.pcworld.com/article/171597/m···law.html

--
My BLOG .. .. Internet News .. .. My Web Page


Sunday, 03-Jun 01:49:29 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 12.5 years online © 1999-2012 dslreports.com.
Most commented news this week
Hot Topics