Dan
12-12-2006, 21:05
************************************************** ******************
Title: Microsoft Security Bulletin Summary for December 2006
Issued: December 12, 2006
Version Number: 1.0
Bulletin: http://go.microsoft.com/fwlink/?LinkId=79710
************************************************** ******************
Summary:
========
This advisory contains information about all security updates
released this month. It is broken down by security bulletin severity.
Critical Security Bulletins
===========================
MS06-072 - Cumulative Security Update for Internet Explorer (925454)
- Affected Software:
- Internet Explorer 5.01 Service Pack 4 on Windows 2000 Service
Pack 4
- Internet Explorer 6 Service Pack 1 on Windows 2000 Service
Pack 4
- Internet Explorer 6 for Windows XP Service Pack 2
- Internet Explorer 6 for Windows XP Professional x64 Edition
- Internet Explorer 6 for Windows Server 2003 and Windows
Server 2003 Service Pack 1
- Internet Explorer 6 for Windows Server 2003 for Itanium-based
Systems and Windows Server 2003 with SP1 for Itanium-based
Systems
- Internet Explorer 6 for Windows Server 2003 x64 Edition
- Impact: Remote Code Execution
- Version Number: 1.0
MS06-073 - Vulnerability in Visual Studio 2005
Could Allow Remote Code Execution (925674)
- Affected Software:
- Microsoft Visual Studio 2005
- Impact: Remote Code Execution
- Version Number: 1.0
MS06-078 - Vulnerability in Windows Media Format
Could Allow Remote Code Execution (923689)
- Affected Software:
- Microsoft Windows Media Format 7.1 through 9.5 Series Runtime
on the following operating system versions:
- Microsoft Windows 2000 Service Pack 4
- Microsoft Windows XP Service Pack 2
- Microsoft Windows XP Professional x64 Edition
- Microsoft Windows Server 2003 or Microsoft Windows Server
2003 Service Pack 1
- Microsoft Windows Server 2003 x64 Edition
- Microsoft Windows Media Format 9.5 Series Runtime x64 Edition
on the following operating system versions:
- Microsoft Windows XP Professional x64 Edition
- Microsoft Windows Server 2003 x64 Edition
- Microsoft Windows Media Player 6.4
- Microsoft Windows 2000 Service Pack 4
- Microsoft Windows XP Service Pack 2
- Microsoft Windows XP Professional x64 Edition
- Microsoft Windows Server 2003 or on Microsoft Windows
Server 2003 Service Pack 1
- Microsoft Windows Server 2003 x64 Edition
- Impact: Remote Code Execution
- Version Number: 1.0
Important Security Bulletins
============================
MS06-074 - Vulnerability in SNMP
Could Allow Remote Code Execution (926247)
- Affected Software:
- Microsoft Windows 2000 Service Pack 4
- Microsoft Windows XP Service Pack 2
- Microsoft Windows XP Professional x64 Edition
- Microsoft Windows Server 2003
- Microsoft Windows Server 2003 Service Pack 1
- Microsoft Windows Server 2003 for Itanium-based Systems
- Microsoft Windows Server 2003 with SP1
for Itanium-based Systems
- Microsoft Windows Server 2003 x64 Edition
- Impact: Remote Code Execution
- Version Number: 1.0
MS06-075 - Vulnerability in Windows
Could Allow Elevation of Privilege (926255)
- Affected Software:
- Microsoft Windows XP Service Pack 2
- Microsoft Windows Server 2003
- Microsoft Windows Server 2003 for Itanium-based Systems
- Impact: Elevation of Privilege
- Version Number: 1.0
MS06-076 - Cumulative Security Update for Outlook Express (923694)
- Affected Software:
- Outlook Express 5.5 Service Pack 2 on Windows 2000 Service
Pack 4
- Outlook Express 6 Service Pack 1 on Windows 2000 Service
Pack 4
- Outlook Express 6 on Windows XP Service Pack 2
- Outlook Express 6 on Windows XP Professional x64 Edition
- Outlook Express 6 on Windows Server 2003 and Windows
Server 2003 Service Pack 1
- Outlook Express 6 on Windows Server 2003 for Itanium-based
Systems and Windows Server 2003 with SP1 for Itanium-based
Systems
- Outlook Express 6 on Windows Server 2003 x64 Edition
- Impact: Remote Code Execution
- Version Number: 1.0
MS06-077 - Vulnerability in Remote Installation Service
Could Allow Remote Code Execution (926121)
- Affected Software:
- Microsoft Windows 2000 Service Pack 4
- Impact: Remote Code Execution
- Version Number: 1.0
Title: Microsoft Security Bulletin Summary for December 2006
Issued: December 12, 2006
Version Number: 1.0
Bulletin: http://go.microsoft.com/fwlink/?LinkId=79710
************************************************** ******************
Summary:
========
This advisory contains information about all security updates
released this month. It is broken down by security bulletin severity.
Critical Security Bulletins
===========================
MS06-072 - Cumulative Security Update for Internet Explorer (925454)
- Affected Software:
- Internet Explorer 5.01 Service Pack 4 on Windows 2000 Service
Pack 4
- Internet Explorer 6 Service Pack 1 on Windows 2000 Service
Pack 4
- Internet Explorer 6 for Windows XP Service Pack 2
- Internet Explorer 6 for Windows XP Professional x64 Edition
- Internet Explorer 6 for Windows Server 2003 and Windows
Server 2003 Service Pack 1
- Internet Explorer 6 for Windows Server 2003 for Itanium-based
Systems and Windows Server 2003 with SP1 for Itanium-based
Systems
- Internet Explorer 6 for Windows Server 2003 x64 Edition
- Impact: Remote Code Execution
- Version Number: 1.0
MS06-073 - Vulnerability in Visual Studio 2005
Could Allow Remote Code Execution (925674)
- Affected Software:
- Microsoft Visual Studio 2005
- Impact: Remote Code Execution
- Version Number: 1.0
MS06-078 - Vulnerability in Windows Media Format
Could Allow Remote Code Execution (923689)
- Affected Software:
- Microsoft Windows Media Format 7.1 through 9.5 Series Runtime
on the following operating system versions:
- Microsoft Windows 2000 Service Pack 4
- Microsoft Windows XP Service Pack 2
- Microsoft Windows XP Professional x64 Edition
- Microsoft Windows Server 2003 or Microsoft Windows Server
2003 Service Pack 1
- Microsoft Windows Server 2003 x64 Edition
- Microsoft Windows Media Format 9.5 Series Runtime x64 Edition
on the following operating system versions:
- Microsoft Windows XP Professional x64 Edition
- Microsoft Windows Server 2003 x64 Edition
- Microsoft Windows Media Player 6.4
- Microsoft Windows 2000 Service Pack 4
- Microsoft Windows XP Service Pack 2
- Microsoft Windows XP Professional x64 Edition
- Microsoft Windows Server 2003 or on Microsoft Windows
Server 2003 Service Pack 1
- Microsoft Windows Server 2003 x64 Edition
- Impact: Remote Code Execution
- Version Number: 1.0
Important Security Bulletins
============================
MS06-074 - Vulnerability in SNMP
Could Allow Remote Code Execution (926247)
- Affected Software:
- Microsoft Windows 2000 Service Pack 4
- Microsoft Windows XP Service Pack 2
- Microsoft Windows XP Professional x64 Edition
- Microsoft Windows Server 2003
- Microsoft Windows Server 2003 Service Pack 1
- Microsoft Windows Server 2003 for Itanium-based Systems
- Microsoft Windows Server 2003 with SP1
for Itanium-based Systems
- Microsoft Windows Server 2003 x64 Edition
- Impact: Remote Code Execution
- Version Number: 1.0
MS06-075 - Vulnerability in Windows
Could Allow Elevation of Privilege (926255)
- Affected Software:
- Microsoft Windows XP Service Pack 2
- Microsoft Windows Server 2003
- Microsoft Windows Server 2003 for Itanium-based Systems
- Impact: Elevation of Privilege
- Version Number: 1.0
MS06-076 - Cumulative Security Update for Outlook Express (923694)
- Affected Software:
- Outlook Express 5.5 Service Pack 2 on Windows 2000 Service
Pack 4
- Outlook Express 6 Service Pack 1 on Windows 2000 Service
Pack 4
- Outlook Express 6 on Windows XP Service Pack 2
- Outlook Express 6 on Windows XP Professional x64 Edition
- Outlook Express 6 on Windows Server 2003 and Windows
Server 2003 Service Pack 1
- Outlook Express 6 on Windows Server 2003 for Itanium-based
Systems and Windows Server 2003 with SP1 for Itanium-based
Systems
- Outlook Express 6 on Windows Server 2003 x64 Edition
- Impact: Remote Code Execution
- Version Number: 1.0
MS06-077 - Vulnerability in Remote Installation Service
Could Allow Remote Code Execution (926121)
- Affected Software:
- Microsoft Windows 2000 Service Pack 4
- Impact: Remote Code Execution
- Version Number: 1.0