Friday, 7 March 2014
On
04:34
by
Unknown
No comments
Microsoft has marked two of the five security updates it plans to release next week as "critical," including one that addresses a vulnerability in Internet Explorer that is currently being exploited in the wild.
One of the updates announced in a security bulletin Thursday will patch a flaw in IE10 that was discovered last month by security company FireEye being exploited by attack code found on the Veterans of Foreign Wars' Web site. Security firm Websense reported finding similar code exploiting the same flaw on the compromised Web site of a French aerospace association, indicating there was evidence the exploits had been circulating since January 20.
Last month, Microsoft delivered a Fixi-It tool as a temporary fix for the IE flaw, which was rated as "critical," Microsoft's most severe classification. The flaw also affects IE 9 but is not being exploited in that version.
The security update also addresses a Windows vulnerability also rated as critical that allows remote code execution in all Windows versions other than RT and Server Core. Two other Windows updates rated as important address a privilege elevation vulnerability and a security feature bypass, affect nearly all Windows versions.
A fifth update, also rated as important, patches a a security feature bypass flaw in Silverlight 5, the most recent version of its multimedia player plug-in used to deliver streaming content to Windows and Mac OS X computers.
The security updates address vulnerabilities on most supported versions of Windows, including Window XP, the 12-year-old operating system that Microsoft will stop supporting in April.
"Windows XP is affected by all five updates, and there is really no reason to expect this picture to change; Windows XP will continue to be impacted by the majority of vulnerabilities found in the Windows ecosystem, but you will not be able to address the issues anymore," blogged Qualys CTO Wolfgang Kande. "Windows XP is getting its penultimate update and is now very close (just over 30 days) to its declared end of life date."
"So you need a strategy for the XP machines remaining in your infrastructure," Kande wrote. "We are still seeing a significant number of XP machines in our scans."
The security updates are scheduled to be released on March at 10 a.m. PT.
Subscribe to:
Post Comments
(
Atom
)
Search
Popular Posts
-
Hello friends, today we have something special for pc beginners. We have some keyboard shortcut which will really help you to operate any ...
-
Embattled Bitcoin exchange Mt. Gox has resigned from the board of the Bitcoin Foundation, the organization that manages the crypto-curren...
-
Ultra HD, colloquially known as "4K," is the latest buzzword, and the latest push from TV manufacturers. While your next TV mig...
-
BlackBerry CEO John Chen confirmed two new phones were on their way this year. The first, codenamed "Jakarta," but known as the...
-
Amazon is developing its drone service in both Seattle (US) and Cambridge (UK) UK drone experts are being sought by Am...
-
Obidike, the leader of the warriors is sent out in the company of other warriors to fetch seven virgins with which to bury the king. Incid...
-
M icrosoft has patched a critical bug in its software that had existed for 19 years. IBM researchers discovered the flaw, which affect...
-
If BitTorrent has its way, you'll be paying for some torrented content before the end of the year thanks to the integration of BitTo...
-
New photos of Nokia’s upcoming Android handset, code named Normandy, have leaked — and rather oddly, it appears the standard Android UI...
-
Nick Statt/CNET A large part of Hyperlapse's cha...
Recent Posts
Sample Text
Blog Archive
-
▼
2014
(
367
)
-
▼
March
(
75
)
- BlackBerry sales tumble 64% amid weak BB10 adoption
- Amazon launches new way to work in the cloud
- Microsoft 'EMS' biz suite due, for 'bring your own...
- NASA spots Washington mudslide from space
- Box builds out platform with first standalone serv...
- Microsoft's new CEO to host press event on Thursday
- Android app pirates plead guilty to copyright infr...
- Tumblr boosts security with two-factor authentication
- 3 Spritz-like speed-reading apps for Android
- Obama said to announce legislation halting NSA’s p...
- Firefox 28 aims for easier media playback
- iPad with Retina Display makes $399 comeback, knoc...
- Moga iPhone controller makes unique gift
- Facebook makes wrong call on anti-Semitic page
- What are the biggest issues with Wii U, PS4, Xbox ...
- US government begins loosening decades-old grip on...
- Transcend gives Mac Pro a 128GB memory upgrade option
- Mozilla kills Metro version of Firefox, citing low...
- Apple's 'spaceship' campus architect dishes details
- Snowden at SXSW: The NSA set fire to the future of...
- HOW TO ROOT TECNO P3 AND P5 ANDROID PHONES
- Aviate organizes the Android apps you want, when y...
- Use EasyDownloader to save Instagram photos, videos
- Disney Interactive lays off 700 workers, adios soc...
- Microsoft leaks Windows 8.1 update early
- Drones allowed to fly the US skies, for now
- Microsoft plans to patch critical Windows, IE bugs...
- Android 4.4.2 KitKat N900TUVUCNB4 Official Firmwar...
- Beats Music opens up, making its API public
- Gmail on iOS just got a lot faster
- Google Barge arriving in Stockton this morning
- D. Satoshi Nakamoto denies being father of Bitcoin
- Privacy groups ask FTC to block Facebook-WhatsApp ...
- NASA discovers 715 new planets
- How To Get Android 4.2 Emoji Keyboard On Any Device
- Xbox 360 Kinect For Spying? Microsoft Responds To ...
- Cortana Windows Phone: Check Out The Microsoft Per...
- Mobile apps overtake PC Internet usage in U.S.
- Key trends from the world's biggest mobile technol...
- Clinton adviser to lead Microsoft strategy
- Boeing to sell phone that can self-destruct
- Disney deal blazes trail for Dish without the dish
- RadioShack to close 1,100 'underperforming' US stores
- Apple CFO role to change hands in June
- Facebook Paper users can now share stories with an...
- Windows 8.1 update reportedly hits final stage
- US sues Sprint for allegedly overcharging on wiretaps
- Skype rolls out to Outlook.com users worldwide
- Sony PlayStation 4 racks up 6 million sales
- Facebook reportedly in talks for drone maker Titan...
- Android beat Apple in tablet sales last year
- Google, Samsung diss MicroNokia in China -- report
- How to get a no-contract iPhone 5c for $299.99 and...
- Kickstarter pledges surpass $1 billion; half pledg...
- Windows XP starts countdown to end-of-support on A...
- Samsung's new Chromebook to get leather makeover?
- Microsoft to lose execs Bates and Reller, report says
- Apple CarPlay to bring iPhone experience to your n...
- Google Glass updates slow down ahead of KitKat upg...
- Wave your hand to control smart devices -- even if...
- Storm-tracking NOAA satellite system gets a techno...
- Ultra HD 4K TV Cheat Sheet
- Google donates $6.8 million to San Francisco youth...
- California court: Drivers can use smartphone maps,...
- Google Maps Gallery debuts as Web's interactive di...
- Scientists capture first super-res X-rays of livin...
- Daughter's Facebook foghorn blows dad's $80,000
- Security firm claims Russian government makes malware
- Yahoo taps TrustyCon co-founder Alex Stamos for ch...
- Stool sample sausage: Poop probiotics might make m...
- Avoid spam calls, find numbers faster with Current...
- Why Facebook is suddenly smitten with Groups
- Imagination, Apple graphics tech supplier, talks f...
- Colbert turns his funny gun on Snowden in RSA keynote
-
▼
March
(
75
)
Copyright © 2014 Harry Jacks All Rights Reserved. Powered by Blogger.
About Me
Copyright Text
Copyright © 2014 Harry Jacks
All Rights Reserved
All Rights Reserved
0 comments :
Post a Comment