Fixlet Site - EnterpriseSecurity Current Version: 785 Published: Tue, 26 Sep 2006 23:52:46 GMT *************************************************************** Title: MS06-049: Vulnerability in Windows Kernel Could Result in Elevation of Privilege - Windows 2000 SP4 Severity: Important Fixlet ID: 604903 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-049.mspx Fixlet Description: Microsoft has released an update that resolves a newly-discovered, privately-reported vulnerability. An attacker who successfully exploited the vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: This patch was re-released on September 26, 2006 to address known issues with the original patch. This Fixlet message will not become relevant if the original version of the patch is installed. The action below deploys the revised version of the patch. See the Caveats and FAQ section of the security bulletin for more information. *************************************************************** Title: MS06-049: CORRUPT PATCH - Windows 2000 SP4 Severity: Important Fixlet ID: 604904 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-049.mspx *************************************************************** Title: MS06-055: Vulnerability in Vector Markup Language Could Allow Remote Code Execution - IE 6.0 SP1 - Windows 2000 SP4 Severity: Critical Fixlet ID: 605501 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx Fixlet Description: Microsoft has released a patch that resolves a public vulnerability as well as additional issues discovered through internal investigations. The vulnerability could allow an attacker to take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS06-055: CORRUPT PATCH - IE 6.0 SP1 - Windows 2000 SP4 Severity: Critical Fixlet ID: 605502 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx *************************************************************** Title: MS06-055: Vulnerability in Vector Markup Language Could Allow Remote Code Execution - IE 6.0 - Windows XP SP2 Severity: Critical Fixlet ID: 605503 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx Fixlet Description: Microsoft has released a patch that resolves a public vulnerability as well as additional issues discovered through internal investigations. The vulnerability could allow an attacker to take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS06-055: CORRUPT PATCH - IE 6.0 - Windows XP SP2 Severity: Critical Fixlet ID: 605504 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx *************************************************************** Title: MS06-055: Vulnerability in Vector Markup Language Could Allow Remote Code Execution - IE 6.0 SP1 - Windows XP SP1 Severity: Critical Fixlet ID: 605505 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx Fixlet Description: Microsoft has released a patch that resolves a public vulnerability as well as additional issues discovered through internal investigations. The vulnerability could allow an attacker to take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS06-055: CORRUPT PATCH - IE 6.0 SP1 - Windows XP SP1 Severity: Critical Fixlet ID: 605506 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx *************************************************************** Title: MS06-055: Vulnerability in Vector Markup Language Could Allow Remote Code Execution - Windows XP/2003 (x64) Severity: Critical Fixlet ID: 605507 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx Fixlet Description: Microsoft has released a patch that resolves a public vulnerability as well as additional issues discovered through internal investigations. The vulnerability could allow an attacker to take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS06-055: CORRUPT PATCH - Windows XP/2003 (x64) Severity: Critical Fixlet ID: 605508 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx *************************************************************** Title: MS06-055: Vulnerability in Vector Markup Language Could Allow Remote Code Execution - Windows Server 2003 Severity: Moderate Fixlet ID: 605509 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx Fixlet Description: Microsoft has released a patch that resolves a public vulnerability as well as additional issues discovered through internal investigations. The vulnerability could allow an attacker to take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS06-055: CORRUPT PATCH - Windows Server 2003 Severity: Moderate Fixlet ID: 605510 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx *************************************************************** Title: MS06-055: Vulnerability in Vector Markup Language Could Allow Remote Code Execution - Windows XP/2003 (x64) - BES < 6.0 Severity: Critical Fixlet ID: 605511 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx Fixlet Description: Microsoft has released a patch that resolves a public vulnerability as well as additional issues discovered through internal investigations. The vulnerability could allow an attacker to take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: The current 32-bit BES Client can only verify the properties of 32-bit files located in the %WINDIR%\SysWOW64 directory and cannot access registry keys outside the HKLM\SOFTWARE\WOW6432Node branch of the registry. Only limited content for x64 Windows will be available before a 64-bit compatible BES Client is released. Full support for x64 Windows is forthcoming. *************************************************************** Title: MS06-055: Vulnerability in Vector Markup Language Could Allow Remote Code Execution - Windows 2000 SP4 - IE 5.01 SP4 Severity: Critical Fixlet ID: 605513 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx Fixlet Description: Microsoft has released a patch that resolves a public vulnerability as well as additional issues discovered through internal investigations. The vulnerability could allow an attacker to take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS06-055: CORRUPT PATCH - Windows 2000 SP4 - IE 5.01 SP4 Severity: Critical Fixlet ID: 605514 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS06-055.mspx