2008-09-09

Vista September Updates - here we go


ok let's see what microsoft has in petto for us:


UPDATE: Install KB938464


ok let's see what microsoft has in petto for us:


UPDATE: Install KB938464!
2x security updates
KB938464

Microsoft Security Bulletin MS08-052 – Critical
Vulnerabilities in GDI+ Could Allow Remote Code Execution (954593)


GDI+ VML Buffer Overrun Vulnerability - CVE-2007-5348
GDI+ EMF Memory Corruption Vulnerability - CVE-2008-3012
GDI+ GIF Parsing Vulnerability - CVE-2008-3013
GDI+ WMF Buffer Overrun Vulnerability - CVE-2008-3014
GDI+ BMP Integer Overflow Vulnerability - CVE-2008-3015

KB954154

Microsoft Security Bulletin MS08-054 – Critical
Vulnerability in Windows Media Player Could Allow Remote Code Execution (954154)

This security update resolves a privately reported vulnerability in Windows Media Player that could allow remote code execution when a specially crafted audio file is streamed from a Windows Media server

The security update addresses the vulnerability by correcting the manner in which Windows Media Player 11 handles audio files streamed from a server-side playlist (SSPL)

This vulnerability can only be exploited via the Real Time Streaming Protocol (RTSP). Organizations that do not allow RTSP inbound from the Internet are at reduced risk from this vulnerability. For more information on the ports used by RTSP, refer to Microsoft Knowledge Base Article 827562

Unregister wmpeffects.dllTo unregister this DLL, run the following command from an elevated command prompt:
For 32-bit Windows-based systems:Regsvr32.exe –u %WINDIR%\system32\wmpeffects.dll
For 64-bit Windows-based systems:Regsvr32.exe –u %WINDIR%\syswow64\wmpeffects.dll
Impact of workaround: Visualizations will fail to display in the Now Playing view of Windows Media Player.


1x update for vista
KB955302


Improvements to the stability of Windows Vista SP1-based or Windows Server 2008-based computers that use Windows ReadyBoost technology.

Improvements to the performance of wireless adapters when you switch between preferred networks after the computer resumes from hibernation.

New functionality to prevent a data loss scenario when certain registry keys are missing while the Microsoft Disk Cleanup tool is running.

Improvements to system reliability when Group Policy settings and SMB signing are used.

Improvements to the stability of systems on which Nvidia graphics cards are installed.

1x malicious software removal tool
Wow, it recognises 1 new malicious software:


Win32/Slenfbot (http://go.microsoft.com/fwlink/?linkid=37020&name=Win32/Slenfbot)
September 2008 (V 2.2)
Moderate

1x junk
kb link goes to a very old reviewed article == junk

1x update for vista (recommended)
Update for Windows Vista (KB954366)
More information: http://support.microsoft.com/kb/954366

This is application compatibility update

The KB article is from august 12th and not from september and it specifies

sqlserver 2005

.net framework 3.5

and a hard block on some "saming one key recovery 5"

BTW: Have I told you lately that blogger.com editing is crap. Simple as that. Not usable.

No comments: