MyCERT Advisories

MyCERT Advisories, Alerts and Summaries for the year 2010
Bookmark and Share

MA-233.062010: MyCERT Alert -Latest Microsoft Security Bulletin Advance Notification (June 2010)

Date First Published: 2010-06-04

1.0 Introduction

As part of the monthly security bulletin release cycle, Microsoft provides advance notification to their customers concerning the number of new security updates being released, the products affected, the aggregate maximum severity, and information about detection tools relevant to the update. This is intended to help their customers plan for the deployment of these security updates more effectively. 

On June 8, 2010 Microsoft plans to release ten (10) new security bulletins.

The full version of the Microsoft Security Bulletin Advance Notification for this month can be found at


2.0 The list of the bulletins is as below:

Bulletin ID: Bulletin 1 
Maximum Severity Rating: Important  
Vulnerability Impact: Elevation of Privilege
Restart Requirement: Requires restart 
Affected Software: Microsoft Windows

Bulletin ID: Bulletin 2 
Maximum Severity Rating: Critical
Vulnerability Impact: Remote Code Execution
Restart Requirement: May require restart
Affected Software: Microsoft Windows

Bulletin ID: Bulletin 3 
Maximum Severity Rating: Critical
Vulnerability Impact: Remote Code Execution
Restart Requirement: May require restart
Affected Software: Microsoft Windows

Bulletin ID: Bulletin 4 
Maximum Severity Rating: Critical
Vulnerability Impact: Remote Code Execution
Restart Requirement: Requires restart
Affected Software: Internet Explorer

Bulletin ID: Bulletin 5 
Maximum Severity Rating: Important
Vulnerability Impact: Remote Code Execution
Restart Requirement: May require restart
Affected Software: Microsoft Office

Bulletin ID: Bulletin 6 
Maximum Severity Rating: Important
Vulnerability Impact: Elevation of Privilege
Restart Requirement: May require restart
Affected Software: Microsoft Windows

Bulletin ID: Bulletin 7 
Maximum Severity Rating: Important
Vulnerability Impact: Remote Code Execution
Restart Requirement: May require restart
Affected Software: Microsoft Office Excel, Microsoft Office Compatibility Pack, Office 2004 for Mac, Office 2008 for Mac, and Open XML File Format Converter for Mac.

Bulletin ID: Bulletin 8 
Maximum Severity Rating: Important
Vulnerability Impact: Elevation of Privilege
Restart Requirement: May require restart
Affected Software: Microsoft Office InfoPath 2003, InfoPath 2007, SharePoint Server 2007, and Windows SharePoint Services 3.0.

Bulletin ID: Bulletin 9 
Maximum Severity Rating: Important
Vulnerability Impact: Remote Code Execution
Restart Requirement: May require restart
Affected Software: Microsoft Windows

Bulletin ID: Bulletin 10
Maximum Severity Rating: Important
Vulnerability Impact: Tampering
Restart Requirement: May require restart
Affected Software: Microsoft Windows 

3.0 Recommendations

All of the patches could be done almost automatically via the Windows Update application once the patch is released on the 8th of June.
The how-to perform of the windows update is available at the following URL:

Generally, MyCERT advises the users of this software to be updated with the latest security announcements by the vendor. MyCERT can be reached through the following channels:

E-mail : mycert@mycert.org.my
Phone : +603 89926969  or 1-300-88-2999 (monitored during business hours)
Fax : +603 89453442
Handphone : +60 19 2665850 (24x7 call incident reporting)
SMS : CYBER999 REPORT <EMAIL> <COMPLAINT> to 15888
Business Hours : Mon - Fri 08:30 -17:30 MYT
Web:
http://www.mycert.org.my

4.0 References