Risk
2/9/2010
04:35 PM
Connect Directly
LinkedIn
Twitter
Google+
RSS
E-Mail
50%
50%

Microsoft Fixes 26 Vulnerabilities In Windows, Office

February brings a substantial set of patches from Microsoft.

Microsoft on Tuesday released 13 security bulletins to address 26 vulnerabilities in its Windows and Office software.

Five of the vulnerabilities are rated "Critical," seven are rated "Important," and one is rated "Moderate."

Microsoft also issued a security advisory for a publicly disclosed flaw in the Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols. Though this vulnerability is not addressed in the patch, Microsoft has provided a temporary workaround.

The company recommends that customers deploy MS10-006, MS10-007, MS10-008, and MS10-013 given that they are rated "Critical," with Exploitability Index ratings of 1.

Andrew Storms, director of security operations at nCircle, says MS10-013, a Microsoft media player flaw, is the most dangerous vulnerability. "The nature of the exploit lends itself to drive-by attacks that leave unsuspecting victims infected," he said in an e-mailed statement. "Since media is what excites people most on the Internet today, an exploit of this bug would make it extremely easy to entice users to watch videos that are actually gateways to malware."

Qualys CTO Wolfgang Kandek says that both MS10-006, an SMB client vulnerability, and MS10-013 should be patched as soon as possible. He adds that MS10-012 is important for server administrators. "It allows a malicious, unauthenticated party to launch a remote denial of service attack," he explained in an e-mailed statement. "In addition remote authenticated clients can execute code using another flaw addressed in the bulletin."

Joshua Talbot, security intelligence manager at Symantec Security Response, also says that MS10-012, an SMB Server pathname overflow vulnerability, tops his list of vulnerabilities that need immediate attention. "Server-side vulnerabilities aren't too common anymore, but they're a golden goose for attackers when they are discovered," he explained in an e-mailed statement.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading December Tech Digest
Experts weigh in on the pros and cons of end-user security training.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-7178
Published: 2014-11-28
Enalean Tuleap before 7.5.99.6 allows remote attackers to execute arbitrary commands via the User-Agent header, which is provided to the passthru PHP function.

CVE-2014-7850
Published: 2014-11-28
Cross-site scripting (XSS) vulnerability in the Web UI in FreeIPA 4.x before 4.1.2 allows remote attackers to inject arbitrary web script or HTML via vectors related to breadcrumb navigation.

CVE-2014-8423
Published: 2014-11-28
Unspecified vulnerability in the management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to execute arbitrary commands via unknown vectors.

CVE-2014-8424
Published: 2014-11-28
ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication.

CVE-2014-8425
Published: 2014-11-28
The management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to obtain credentials by reading the configuration files.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Now that the holiday season is about to begin both online and in stores, will this be yet another season of nonstop gifting to cybercriminals?