MA-233.062010: MyCERT Alert -Latest Microsoft Security Bulletin Advance Notification (June 2010) Date First Published: 2010-06-04 1.0 Introduction As part of the monthly security bulletin release cycle, Microsoft provides advance notification to their customers concerning the number of new security updates being released, the products affected, the aggregate maximum severity, and information about detection tools relevant to the update. This is intended to help their customers plan for the deployment of these security updates more effectively. On June 8, 2010 Microsoft plans to release ten (10) new security bulletins. The full version of the Microsoft Security Bulletin Advance Notification for this month can be found at 2.0 The list of the bulletins is as below:
Bulletin ID: Bulletin 1 Maximum Severity Rating: Important Vulnerability Impact: Elevation of Privilege Restart Requirement: Requires restart Affected Software: Microsoft Windows Bulletin ID: Bulletin 2 Maximum Severity Rating: Critical Vulnerability Impact: Remote Code Execution Restart Requirement: May require restart Affected Software: Microsoft Windows Bulletin ID: Bulletin 3 Maximum Severity Rating: Critical Vulnerability Impact: Remote Code Execution Restart Requirement: May require restart Affected Software: Microsoft Windows Bulletin ID: Bulletin 4 Maximum Severity Rating: Critical Vulnerability Impact: Remote Code Execution Restart Requirement: Requires restart Affected Software: Internet Explorer Bulletin ID: Bulletin 5 Maximum Severity Rating: Important Vulnerability Impact: Remote Code Execution Restart Requirement: May require restart Affected Software: Microsoft Office Bulletin ID: Bulletin 6 Maximum Severity Rating: Important Vulnerability Impact: Elevation of Privilege Restart Requirement: May require restart Affected Software: Microsoft Windows Bulletin ID: Bulletin 7 Maximum Severity Rating: Important Vulnerability Impact: Remote Code Execution Restart Requirement: May require restart Affected Software: Microsoft Office Excel, Microsoft Office Compatibility Pack, Office 2004 for Mac, Office 2008 for Mac, and Open XML File Format Converter for Mac. Bulletin ID: Bulletin 8 Maximum Severity Rating: Important Vulnerability Impact: Elevation of Privilege Restart Requirement: May require restart Affected Software: Microsoft Office InfoPath 2003, InfoPath 2007, SharePoint Server 2007, and Windows SharePoint Services 3.0. Bulletin ID: Bulletin 9 Maximum Severity Rating: Important Vulnerability Impact: Remote Code Execution Restart Requirement: May require restart Affected Software: Microsoft Windows Bulletin ID: Bulletin 10 Maximum Severity Rating: Important Vulnerability Impact: Tampering Restart Requirement: May require restart Affected Software: Microsoft Windows 3.0 Recommendations
All of the patches could be done almost automatically via the Windows Update application once the patch is released on the 8th of June. The how-to perform of the windows update is available at the following URL: Generally, MyCERT advises the users of this software to be updated with the latest security announcements by the vendor. MyCERT can be reached through the following channels: E-mail : mycert@mycert.org.my Phone : +603 89926969 or 1-300-88-2999 (monitored during business hours) Fax : +603 89453442 Handphone : +60 19 2665850 (24x7 call incident reporting) SMS : CYBER999 REPORT <EMAIL> <COMPLAINT> to 15888 Business Hours : Mon - Fri 08:30 -17:30 MYT Web: http://www.mycert.org.my 4.0 References |