Microsoft launched a patch program in October of this release, the quantity of protection patches and resolve the number of safety vulnerabilities have hit the most this yr, a complete of 16 safety patches, fixes 49 protection vulnerabilities. Within this patch release 16, four for the greatest severity amount of Windows and IE fixes a remote code execution vulnerability; ten degree is critical to repair the Windows, Office of the remote code execution, privilege escalation and DOS denial of company assault vulnerability. Microsoft mentioned this month the 49 vulnerabilities affect the fix of Windows, IE, Office and. Web Framework item, but only 6 holes were categorized as serious stage, and also the release patch to fix three of 34 security vulnerabilities. To facilitate deployment from the subsequent sixteen protection patches, Microsoft is also in accordance with all the priority stage created the subsequent two charts, from which you can visualize the impact of the different protection patches running systems and software program, and they need to install the patch that is rated stage. Click on to watch bigger image Click on to watch bigger image very first severe look at the 4 levels of patch: 1, Summary: IE browser security vulnerabilities up-to-date accumulated Public ID: MS10-071 Information Base amount: KB2360131 Description: This patch fixes the IE browser safety holes ten, the huge component of the vulnerability leads to the user to use IE browser malicious attacker designed Web page, which causes the attacker's malicious code to be implemented,
Office Home And Stude/nt, install malicious plans or steal, alter the user's private information. highest degree of protection: Vital of software: IE6, IE7, IE8 two,
Office 2010 License, Summary: Windows Media Player Network Sharing Services remote code execution vulnerability Public ID: MS10-075 Knowledge Base number: KB2281679 greatest amount of protection: Crucial
Description: Microsoft Windows Media Player Network Sharing Company exists a remote code execution vulnerability, an attacker can deliver specifically crafted RTSP data packet to a susceptible system,
Windows 7 Discount, which causes the attacker's malicious code to be implemented,
Purchase Office 2010, set up malicious code or steal, tampering using the user's personal data. This vulnerability in the Windows Media Player the default settings can not be triggered, and only by, and susceptible systems on the very same subnet because the attacker triggered. impact the operating technique: Windows Vista, Windows 7 3, Summary: Windows OpenType Font Engine remote code execution vulnerability
Public ID: MS10-076 Information Base ID: KB982132 highest level of security: Vital Description: Windows running technique, the existence of embedded OpenType Font Engine a remote code execution vulnerability, the attacker when a consumer browsing the Internet cautiously built, it could allow an attacker to execute malicious code by running malicious code or steal, alter person privacy information. affect the running program: Windows XP, Windows Server 2003, Vista, Windows Server 2008, Windows 7 4, Summary: Microsoft. Net Framework remote code execution vulnerability Public ID: MS10-077 Knowledge Base quantity: KB2160841 highest level of protection: Vital short : Microsoft. Net Framework there is certainly a remote code execution vulnerability when a consumer utilizes a browser to run XAML browser applications attacker designed malicious web page could possibly result in the attacker's malicious code to be applied, install malicious packages or theft, tampering with all the user's non-public data. The vulnerability can also trigger the server operating IIS, a remote code execution vulnerability when an attacker ASP.Web upload a specifically crafted Internet web page for the server and execute the web page,
Office 2010 Professional, it will cause malicious code to become implemented to the server. from the software program:. Net Framework 4.0