Technical Cyber Security Alert 2010-348A - There are multiple vulnerabilities in Microsoft Windows, Internet Explorer, Office, Sharepoint, and Exchange. Microsoft has released updates to address these vulnerabilities.
85913a7c3a6dd148e01e4ede674b2adb3689bc4b66f5c1b7810d556323df8122
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
National Cyber Alert System
Technical Cyber Security Alert TA10-348A
Microsoft Updates for Multiple Vulnerabilities
Original release date: December 14, 2010
Last revised: --
Source: US-CERT
Systems Affected
* Microsoft Windows
* Microsoft Internet Explorer
* Microsoft Office
* Microsoft Sharepoint
* Microsoft Exchange
Overview
There are multiple vulnerabilities in Microsoft Windows, Internet
Explorer, Office, Sharepoint, and Exchange. Microsoft has released
updates to address these vulnerabilities.
I. Description
The Microsoft Security Bulletin Summary for December 2010 describes
multiple vulnerabilities in Microsoft Windows, Internet Explorer,
Office, Sharepoint, and Exchange. Microsoft has released updates to
address the vulnerabilities.
II. Impact
A remote, unauthenticated attacker could execute arbitrary code,
cause a denial of service, or gain unauthorized access to your
files or system.
III. Solution
Apply updates
Microsoft has provided updates for these vulnerabilities in the
Microsoft Security Bulletin Summary for December 2010. That
bulletin describes any known issues related to the updates.
Administrators are encouraged to note these issues and test for any
potentially adverse effects. In addition, administrators should
consider using an automated update distribution system such as
Windows Server Update Services (WSUS).
IV. References
* Microsoft Security Bulletin Summary for December 2010 -
<http://www.microsoft.com/technet/security/bulletin/ms10-dec.mspx>
* Microsoft Windows Server Update Services -
<http://technet.microsoft.com/en-us/wsus/default.aspx>
____________________________________________________________________
The most recent version of this document can be found at:
<http://www.us-cert.gov/cas/techalerts/TA10-348A.html>
____________________________________________________________________
Feedback can be directed to US-CERT Technical Staff. Please send
email to <cert@cert.org> with "TA10-348A Feedback VU#462388" in
the subject.
____________________________________________________________________
For instructions on subscribing to or unsubscribing from this
mailing list, visit <http://www.us-cert.gov/cas/signup.html>.
____________________________________________________________________
Produced 2010 by US-CERT, a government organization.
Terms of use:
<http://www.us-cert.gov/legal.html>
____________________________________________________________________
Revision History
December 14, 2010: Initial release
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
iQEVAwUBTQfHLz6pPKYJORa3AQKscQf+PuoQMdOhFTA15BHwhfvSisQ6rtS4qN/S
GZHTverwD+frfgbTpuwCwQIy0pr99Xg2Tgxh589AYrHoQMsCOmoOTn5J+36j5YFU
8eynvA4heEebmYGdygykItEoZNjtDVKqEIpWq3k71au4O0i1r+qqEx4dWCWNl0vo
YbEiY9t5pXwWfZElvAGN6bOWdE1vMU3yVakXm4L8wadRd1DPTYYE76DecOkIeU+i
wjRzxSa6+63OtUXp/WYrnuG17L3FPkNyHB3Hh537+NtcXvFqu4OIr3uWaZOi70AC
6JzFrz3yRSEUiOsJuIvFcNl+RQDFlo/so4XfqVAw/J8uZ7vspmLB7Q==
=O1/Z
-----END PGP SIGNATURE-----