 dpPremium,MVM join:2000-12-08 Greensburg, PA kudos:7 | Microsoft Security Bulletin(s) for September 8, 2009 Note: There may be latency issues due to replication, if the page does not display keep refreshing
Today Microsoft released the following Security Bulletin(s).
Note: »www.microsoft.com/technet/security and »www.microsoft.com/security are authoritative in all matters concerning Microsoft Security Bulletins! ANY e-mail, web board or newsgroup posting (including this one) should be verified by visiting these sites for official information. Microsoft never sends security or other updates as attachments. These updates must be downloaded from the microsoft.com download center or Windows Update. See the individual bulletins for details.
Because some malicious messages attempt to masquerade as official Microsoft security notices, it is recommended that you physically type the URLs into your web browser and not click on the hyperlinks provided.
Bulletin Summary:
»www.microsoft.com/technet/securi···sep.mspx
Critical (5)
Microsoft Security Bulletin MS09-045 Vulnerability in JScript Scripting Engine Could Allow Remote Code Execution (971961) »www.microsoft.com/technet/securi···045.mspx
Microsoft Security Bulletin MS09-049 Vulnerability in Wireless LAN AutoConfig Service Could Allow Remote Code Execution (970710) »www.microsoft.com/technet/securi···049.mspx
Microsoft Security Bulletin MS09-047 Vulnerabilities in Windows Media Format Could Allow Remote Code Execution (973812) »www.microsoft.com/technet/securi···047.mspx
Microsoft Security Bulletin MS09-048 Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (967723) »www.microsoft.com/technet/securi···048.mspx
Microsoft Security Bulletin MS09-046 Vulnerability in DHTML Editing Component ActiveX Control Could Allow Remote Code Execution (956844) »www.microsoft.com/technet/securi···046.mspx
Please note that Microsoft may release bulletins out side of this schedule if we determine the need to do so.
If you have any questions regarding the patch or its implementation after reading the above listed bulletin you should contact Product Support Services in the United States at 1-866-PCSafety 1-866-727-2338. International customers should contact their local subsidiary.
As always, download the updates only from the vendors website - visit Windows Update and Office Update or Microsoft Update websites. You may also get the updates thru Automatic Updates functionality in Windows system.
Security Tool Find out if you are missing important Microsoft product updates by using MBSA. -- Microsoft® Security MVP, 2004 - 2009 DP's Security Bits |
|
 MarkAWBarry WhitePremium join:2001-08-27 Canada kudos:16 1 edit | Thanks dp 5 updates for my XP systems. Edit: Reboot was needed. |
|
 ThrowDemsOutIf you can't convince 'em, confuse 'emPremium join:2002-03-03 Mullica Hill, NJ kudos:4 | reply to dp Applied the following 8 updates to 2 Windows Vista SP2 32 bit systems:

A reboot was needed. Both Vista systems(desktop & laptop) are up and running with no problems seen so far. |
|
 Reviews:
·Zen Internet
| reply to dp thanks don 
TechNet Webcast: Information About Microsoft September Security Bulletins (Level 200) Event ID: 1032407486 Language(s): English. Product(s): Security. Audience(s): IT Generalist.
Duration: 90 Minutes Start Date: Wednesday, September 09, 2009 11:00 AM Pacific Time (US & Canada)
Event Overview
On September 8, 2009, Microsoft releases its monthly security bulletins. Join us for a brief overview of the technical details of the September security bulletins. We intend to address your concerns in this webcast, therefore, most of the webcast is devoted to attendees asking questions about the bulletins and getting answers from Microsoft security experts.
Presenters: Christopher Budd, Trustworthy Computing Senior Public Relations Manager, Microsoft Corporation and Adrian Stone, Senior Security Program Manager Lead, Microsoft Corporation
Register now for the september security bulletin webcast. -- Wilders Security Forum Admin Microsoft MVP - Consumer Security
|
|
 | reply to dp I got 956844, 890830,971961,968816 on 3 XP machines-reboot required and all installed seamlessly. |
|
 Reviews:
·Zen Internet
| reply to dp Microsoft® Windows® Malicious Software Removal Tool (KB890830) Brief Description This tool checks your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps to remove the infection if it is found. Microsoft will release an updated version of this tool on the second Tuesday of each month.
Date Published: 9/8/2009 »www.microsoft.com/downloads/deta···ylang=en -- Wilders Security Forum Admin Microsoft MVP - Consumer Security
|
|
 antiphishingPhishing Scam TerminatorPremium join:2004-06-09 Wilkes Barre, PA kudos:2 Reviews:
·PenTeleData
·ProLog
| reply to ThrowDemsOut said by ThrowDemsOut:Applied the following 8 updates to 2 Windows Vista SP2 32 bit systems: I'm in the process of installing seven updates on my, Vista machine service pack 1 .
See you on the flip side of the Windows reboot............. 
I just love Microsoft Vista  --
Specializing in "takes downs" of phishing and advance fee scams Send your Phishing/Advance fee scams to: phish@antihotmail.com »www.phishtank.com »www.fraudwatchers.org »mozilla.com
|
|
 ThrowDemsOutIf you can't convince 'em, confuse 'emPremium join:2002-03-03 Mullica Hill, NJ kudos:4 | reply to ThrowDemsOut And Windows 7 Release Candidate 32 bit picked up these 2 patches:

No reboot was needed. System running without problems so far. |
|
 siljalineI'm lovin' that double widePremium join:2002-10-12 Montreal, QC kudos:17 Reviews:
·Bell Sympatico
| reply to dp All Critical and selected updates installed seamlessly, dp less this nag > » Silverlight 3.0.40818 |
|
 antdudeA Ninja AntPremium,VIP join:2001-03-25 kudos:2 | reply to dp No problems on my XP Home and Pro. machines (SP2 and SP3) so far. |
|
|
|
 RayMorrisMicrosoft Certified Systems CrasherPremium join:2004-01-07 Philippines | reply to dp
 Microsoft Update |
Thanks for the heads up!
9 available updates for me on a Vista Ultimate x64 with Office 2007 Ultimate system.
Installed with no problems.  -- "You can find almost anything on the Internet, As long as you know how and where to look for it. Trust me!" |
|
 LadyLPremium join:2002-09-18 Lorain, OH | reply to dp Got 6 Updates for my Vista SP2...no problems so far. Reboot needed. -- Lonnie |
|
 | reply to dp The MS09-048 bulletin is confusing me. Must be the hour. Can anyone else make heads or tails out of which of those TCP/IP vulnerabilities apply to "non-default" configurations of XP that have listening services (because there certainly are some of those configs out there)? Is it only the denial of service vulnerabilities that affect such XP systems? Or does the remote code execution vulnerability affect them, too? The latter would be as bad as it gets, considering that there seems to be no patch for XP. -- Limited User Accounts. Software Restriction Policies. How about the short version? |
|
 | reply to dp Thanks, forgot it was update Tueday.  |
|
 | reply to dp quote: Critical (5)
Microsoft Security Bulletin MS09-045 Vulnerability in JScript Scripting Engine Could Allow Remote Code Execution (971961) »www.microsoft.com/technet/securi···045.mspx
Microsoft Security Bulletin MS09-049 Vulnerability in Wireless LAN AutoConfig Service Could Allow Remote Code Execution (970710) »www.microsoft.com/technet/securi···049.mspx
Microsoft Security Bulletin MS09-047 Vulnerabilities in Windows Media Format Could Allow Remote Code Execution (973812) »www.microsoft.com/technet/securi···047.mspx
Microsoft Security Bulletin MS09-048 Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (967723) »www.microsoft.com/technet/securi···048.mspx
Microsoft Security Bulletin MS09-046 Vulnerability in DHTML Editing Component ActiveX Control Could Allow Remote Code Execution (956844) »www.microsoft.com/technet/securi···046.mspx
We are sorry, the page you requested cannot be found  |
|
 siljalineI'm lovin' that double widePremium join:2002-10-12 Montreal, QC kudos:17 Reviews:
·Bell Sympatico
| reply to Thane_Bitter Every second full Tuesday of every Calendar month is Patch-Tuesday Thane_Bitter  |
|
 ThrowDemsOutIf you can't convince 'em, confuse 'emPremium join:2002-03-03 Mullica Hill, NJ kudos:4 1 edit | said by siljaline:Every second full Tuesday of every Calendar month is Patch-Tuesday Thane_Bitter Are there Tuesday's that aren't FULL Tuesday's? Did I miss half-tuesdays on the calendar? |
|
 Reviews:
·Bell Sympatico
| reply to siljaline said by siljaline:...is Patch-Tuesday Thane_Bitter P-TT_B!!! Holly crap they named it after me - Awesomeness!!!! 
5 updates for Win2k (should someone else still be using that OS) Security Update for Windows 2000 (KB956844) Windows Malicious Software Removal Tool - September 2009 (KB890830) Security Update for Windows 2000 (KB971961) Security Update for Windows Media Format Runtime 9 for Windows 2000 (KB968816) Update for Microsoft Silverlight (KB974331)
|
|
 antdudeA Ninja AntPremium,VIP join:2001-03-25 kudos:2 Reviews:
·RoadRunner Cable
1 edit | reply to dp
No update for W2K SP4. »www.microsoft.com/technet/securi···048.mspx mentioned no updates for Windows 2000 SP4 because it requires a major change in OS. If no fixes, then what will stop it for those who still use it? Hardware routers and/or software firewalls? -- Ant @ »antfarm.ma.cx and »aqfl.net. Please do not IM/e-mail me for technical support. Use the forum! Disclaimer: The views expressed in this posting are mine, and do not necessarily reflect the views of my employer |
|
 ThrowDemsOutIf you can't convince 'em, confuse 'emPremium join:2002-03-03 Mullica Hill, NJ kudos:4 1 edit | reply to Tuulilapsi
Re: Microsoft Security Bulletin(s) for September 8, 2009 said by Tuulilapsi:The MS09-048 bulletin is confusing me. Must be the hour.  Can anyone else make heads or tails out of which of those TCP/IP vulnerabilities apply to "non-default" configurations of XP that have listening services (because there certainly are some of those configs out there)? Is it only the denial of service vulnerabilities that affect such XP systems? Or does the remote code execution vulnerability affect them, too? The latter would be as bad as it gets, considering that there seems to be no patch for XP. Some explanations of all the fixes out today. Maybe one of them can answer your question: »www.pcworld.com/article/171597/m···law.html  -- My BLOG .. .. Internet News .. .. My Web Page
|
|