[BigFix-Announcements] BES Auto Notification: New Fixlets Published in Fixlet Site: 'Enterprise Security'

autonotify at us.ibm.com autonotify at us.ibm.com
Wed Jan 12 02:00:37 PST 2011


Fixlet Site - 'Enterprise Security'
Current Version: 1434	Published: Wed, 12 Jan 2011 01:07:16  GMT

New Fixlets:
============

***************************************************************
Title: MS11-001: Vulnerability in Windows Backup Manager Could Allow Remote Code Execution - Windows Vista SP1/SP2
Severity: Important
Fixlet ID: 1100101
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-001.mspx

Fixlet Description: Microsoft has released a security update that resolves a publicly disclosed vulnerability in Windows Backup Manager. The vulnerability could allow remote code execution if a user opens a legitimate Windows Backup Manager file that is located in the same network directory as a specially crafted library file. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open the legitimate file from that location, which in turn could cause Windows Backup Manager to load the specially crafted library file. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability.

***************************************************************
Title: MS11-001: Vulnerability in Windows Backup Manager Could Allow Remote Code Execution - Windows Vista SP1/SP2 (x64)
Severity: Important
Fixlet ID: 1100103
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-001.mspx

Fixlet Description: Microsoft has released a security update that resolves a publicly disclosed vulnerability in Windows Backup Manager. The vulnerability could allow remote code execution if a user opens a legitimate Windows Backup Manager file that is located in the same network directory as a specially crafted library file. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open the legitimate file from that location, which in turn could cause Windows Backup Manager to load the specially crafted library file. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Microsoft Data Access Components 2.8 SP1 - Windows XP SP3
Severity: Critical
Fixlet ID: 1100201
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Microsoft Data Access Components 2.8 SP1 - Windows XP SP3 - CORRUPT PATCH
Severity: Critical
Fixlet ID: 1100202
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Microsoft Data Access Components 2.8 SP2 - Windows XP SP2 (x64)
Severity: Critical
Fixlet ID: 1100203
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Microsoft Data Access Components 2.8 SP2 - Windows XP SP2 (x64) - CORRUPT PATCH
Severity: Critical
Fixlet ID: 1100204
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Microsoft Data Access Components 2.8 SP2 - Windows Server 2003 SP2
Severity: Important
Fixlet ID: 1100205
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Microsoft Data Access Components 2.8 SP2 - Windows Server 2003 SP2 - CORRUPT PATCH
Severity: Important
Fixlet ID: 1100206
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Microsoft Data Access Components 2.8 SP2 - Windows Server 2003 SP2 (x64)
Severity: Important
Fixlet ID: 1100207
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Microsoft Data Access Components 2.8 SP2 - Windows Server 2003 SP2 (x64) - CORRUPT PATCH
Severity: Important
Fixlet ID: 1100208
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Windows Data Access Components 6.0 - Windows Vista SP1/SP2
Severity: Critical
Fixlet ID: 1100209
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Windows Data Access Components 6.0 - Windows Vista SP1/SP2 (x64)
Severity: Critical
Fixlet ID: 1100211
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Windows Data Access Components 6.0 - Windows Server 2008 Gold/SP2
Severity: Important
Fixlet ID: 1100213
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Windows Data Access Components 6.0 - Windows Server 2008 Gold/SP2 (x64)
Severity: Important
Fixlet ID: 1100215
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Windows Data Access Components 6.0 - Windows 7 Gold
Severity: Critical
Fixlet ID: 1100217
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Windows Data Access Components 6.0 - Windows 7 (x64)
Severity: Critical
Fixlet ID: 1100219
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: MS11-002: Vulnerabilities in Microsoft Data Access Components Could Allow Remote Code Execution - Windows Data Access Components 6.0 - Windows Server 2008 R2 (x64)
Severity: Important
Fixlet ID: 1100221
Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS11-002.mspx

Fixlet Description: Microsoft has released a security update that resolves two privately reported vulnerabilities in Microsoft Data Access Components. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities.

***************************************************************
Title: UPDATE: Outlook 2003 Update Package Available - Office 2003 SP3 (Network/Local Install)
Severity: <Unspecified>
Fixlet ID: 244979801
Fixlet Link: http://support.microsoft.com/kb/2449798

Fixlet Description: Microsoft has released an update for Microsoft Office Outlook 2003. This update provides the latest fixes to Office Outlook 2003. Additionally, this update contains stability and performance improvements.

***************************************************************
Title: UPDATE: Outlook 2003 Update Package Available - Office 2003 SP3 (Administrative Install)
Severity: <Unspecified>
Fixlet ID: 244979802
Fixlet Link: http://support.microsoft.com/kb/2449798

Fixlet Description: Microsoft has released an update for Microsoft Office Outlook 2003. This update provides the latest fixes to Office Outlook 2003. Additionally, this update contains stability and performance improvements.



More information about the BigFix-Announcements mailing list