Fixlet Site - EnterpriseSecurity Current Version: 948 Published: Wed, 13 Feb 2008 06:54:16 GMT New Fixlets: ============ *************************************************************** Title: MS08-003: Vulnerability in Active Directory Could Allow Denial of Service - Active Directory - Windows 2000 SP4 Severity: Important Fixlet ID: 800301 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx Fixlet Description: Microsoft has released an important security update that resolves a privately reported vulnerability in implementations of Active Directory on Microsoft Windows 2000 Server and Windows Server 2003 and Active Directory Application Mode (ADAM) when installed on Windows XP and Windows Server 2003. The vulnerability could allow a denial of service condition. On Windows Server 2003 and Windows XP an attacker must have valid logon credentials to exploit this vulnerability. An attacker who successfully exploited this vulnerability could cause the system to stop responding or automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-003: CORRUPT PATCH - Windows 2000 SP4 Severity: Important Fixlet ID: 800302 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx *************************************************************** Title: MS08-003: Vulnerability in Active Directory Could Allow Denial of Service - ADAM - Windows XP SP2 Severity: Moderate Fixlet ID: 800303 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx Fixlet Description: Microsoft has released an important security update that resolves a privately reported vulnerability in implementations of Active Directory on Microsoft Windows 2000 Server and Windows Server 2003 and Active Directory Application Mode (ADAM) when installed on Windows XP and Windows Server 2003. The vulnerability could allow a denial of service condition. On Windows Server 2003 and Windows XP an attacker must have valid logon credentials to exploit this vulnerability. An attacker who successfully exploited this vulnerability could cause the system to stop responding or automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-003: CORRUPT PATCH - Windows XP SP2 Severity: Moderate Fixlet ID: 800304 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx *************************************************************** Title: MS08-003: Vulnerability in Active Directory Could Allow Denial of Service - ADAM - Windows XP (x64) Severity: Moderate Fixlet ID: 800305 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx Fixlet Description: Microsoft has released an important security update that resolves a privately reported vulnerability in implementations of Active Directory on Microsoft Windows 2000 Server and Windows Server 2003 and Active Directory Application Mode (ADAM) when installed on Windows XP and Windows Server 2003. The vulnerability could allow a denial of service condition. On Windows Server 2003 and Windows XP an attacker must have valid logon credentials to exploit this vulnerability. An attacker who successfully exploited this vulnerability could cause the system to stop responding or automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-003: CORRUPT PATCH - Windows XP (x64) Severity: Moderate Fixlet ID: 800306 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx *************************************************************** Title: MS08-003: Vulnerability in Active Directory Could Allow Denial of Service - Active Directory - Windows Server 2003 SP1/SP2 Severity: Moderate Fixlet ID: 800307 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx Fixlet Description: Microsoft has released an important security update that resolves a privately reported vulnerability in implementations of Active Directory on Microsoft Windows 2000 Server and Windows Server 2003 and Active Directory Application Mode (ADAM) when installed on Windows XP and Windows Server 2003. The vulnerability could allow a denial of service condition. On Windows Server 2003 and Windows XP an attacker must have valid logon credentials to exploit this vulnerability. An attacker who successfully exploited this vulnerability could cause the system to stop responding or automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-003: CORRUPT PATCH - Windows Server 2003 SP1/SP2 Severity: Moderate Fixlet ID: 800308 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx *************************************************************** Title: MS08-003: Vulnerability in Active Directory Could Allow Denial of Service - ADAM - Windows Server 2003 SP1/SP2 Severity: Moderate Fixlet ID: 800309 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx Fixlet Description: Microsoft has released an important security update that resolves a privately reported vulnerability in implementations of Active Directory on Microsoft Windows 2000 Server and Windows Server 2003 and Active Directory Application Mode (ADAM) when installed on Windows XP and Windows Server 2003. The vulnerability could allow a denial of service condition. On Windows Server 2003 and Windows XP an attacker must have valid logon credentials to exploit this vulnerability. An attacker who successfully exploited this vulnerability could cause the system to stop responding or automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-003: CORRUPT PATCH - Windows Server 2003 SP1/SP2 Severity: Moderate Fixlet ID: 800310 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx *************************************************************** Title: MS08-003: Vulnerability in Active Directory Could Allow Denial of Service - Active Directory - Windows Server 2003 (x64) Severity: Moderate Fixlet ID: 800311 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx Fixlet Description: Microsoft has released an important security update that resolves a privately reported vulnerability in implementations of Active Directory on Microsoft Windows 2000 Server and Windows Server 2003 and Active Directory Application Mode (ADAM) when installed on Windows XP and Windows Server 2003. The vulnerability could allow a denial of service condition. On Windows Server 2003 and Windows XP an attacker must have valid logon credentials to exploit this vulnerability. An attacker who successfully exploited this vulnerability could cause the system to stop responding or automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-003: CORRUPT PATCH - Windows Server 2003 (x64) Severity: Moderate Fixlet ID: 800312 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx *************************************************************** Title: MS08-003: Vulnerability in Active Directory Could Allow Denial of Service - ADAM - Windows Server 2003 (x64) Severity: Moderate Fixlet ID: 800313 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx Fixlet Description: Microsoft has released an important security update that resolves a privately reported vulnerability in implementations of Active Directory on Microsoft Windows 2000 Server and Windows Server 2003 and Active Directory Application Mode (ADAM) when installed on Windows XP and Windows Server 2003. The vulnerability could allow a denial of service condition. On Windows Server 2003 and Windows XP an attacker must have valid logon credentials to exploit this vulnerability. An attacker who successfully exploited this vulnerability could cause the system to stop responding or automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-003: CORRUPT PATCH - Windows Server 2003 (x64) Severity: Moderate Fixlet ID: 800314 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-003.mspx *************************************************************** Title: MS08-004: Vulnerability in Windows TCP/IP Could Allow Denial of Service - Windows Vista Severity: Important Fixlet ID: 800401 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-004.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Transmission Control Protocol/Internet Protocol (TCP/IP) processing. An attacker who successfully exploited this vulnerability could cause the affected system to stop responding and automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-004: Vulnerability in Windows TCP/IP Could Allow Denial of Service - Windows Vista (x64) Severity: Important Fixlet ID: 800403 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-004.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Transmission Control Protocol/Internet Protocol (TCP/IP) processing. An attacker who successfully exploited this vulnerability could cause the affected system to stop responding and automatically restart. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-005: Vulnerability in Internet Information Services Could Allow Elevation of Privilege - Windows 2000 SP4 Severity: Important Fixlet ID: 800501 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-005: CORRUPT PATCH - Windows 2000 SP4 Severity: Important Fixlet ID: 800502 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx *************************************************************** Title: MS08-005: Vulnerability in Internet Information Services Could Allow Elevation of Privilege - Windows XP SP2 Severity: Important Fixlet ID: 800503 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-005: CORRUPT PATCH - Windows XP SP2 Severity: Important Fixlet ID: 800504 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx *************************************************************** Title: MS08-005: Vulnerability in Internet Information Services Could Allow Elevation of Privilege - Windows XP (x64) Severity: Important Fixlet ID: 800505 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-005: CORRUPT PATCH - Windows XP (x64) Severity: Important Fixlet ID: 800506 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx *************************************************************** Title: MS08-005: Vulnerability in Internet Information Services Could Allow Elevation of Privilege - Windows Server 2003 SP1/SP2 Severity: Important Fixlet ID: 800507 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-005: CORRUPT PATCH - Windows Server 2003 SP1/SP2 Severity: Important Fixlet ID: 800508 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx *************************************************************** Title: MS08-005: Vulnerability in Internet Information Services Could Allow Elevation of Privilege - Windows Server 2003 (x64) Severity: Important Fixlet ID: 800509 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-005: CORRUPT PATCH - Windows Server 2003 (x64) Severity: Important Fixlet ID: 800510 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx *************************************************************** Title: MS08-005: Vulnerability in Internet Information Services Could Allow Elevation of Privilege - Windows Vista Severity: Important Fixlet ID: 800511 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-005: Vulnerability in Internet Information Services Could Allow Elevation of Privilege - Windows Vista (x64) Severity: Important Fixlet ID: 800513 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-005.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-006: Vulnerability in Internet Information Services Could Allow Remote Code Execution - Windows XP SP2 Severity: Important Fixlet ID: 800601 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-006.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A remote code execution vulnerability exists in the way that IIS handles input to ASP Web pages. An attacker who successfully exploited this vulnerability could then perform actions on the IIS server with the same rights as the Worker Process Identity (WPI). The WPI is configured with Network Service account privileges by default. IIS servers with ASP pages whose application pools are configured with a WPI that uses an account with administrative privileges could be more seriously impacted than IIS servers whose application pool is configured with the default WPI settings. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-006: CORRUPT PATCH - Windows XP SP2 Severity: Important Fixlet ID: 800602 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-006.mspx *************************************************************** Title: MS08-006: Vulnerability in Internet Information Services Could Allow Remote Code Execution - Windows XP (x64) Severity: Important Fixlet ID: 800603 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-006.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A remote code execution vulnerability exists in the way that IIS handles input to ASP Web pages. An attacker who successfully exploited this vulnerability could then perform actions on the IIS server with the same rights as the Worker Process Identity (WPI). The WPI is configured with Network Service account privileges by default. IIS servers with ASP pages whose application pools are configured with a WPI that uses an account with administrative privileges could be more seriously impacted than IIS servers whose application pool is configured with the default WPI settings. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-006: CORRUPT PATCH - Windows XP (x64) Severity: Important Fixlet ID: 800604 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-006.mspx *************************************************************** Title: MS08-006: Vulnerability in Internet Information Services Could Allow Remote Code Execution - Windows Server 2003 SP1/SP2 Severity: Important Fixlet ID: 800605 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-006.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A remote code execution vulnerability exists in the way that IIS handles input to ASP Web pages. An attacker who successfully exploited this vulnerability could then perform actions on the IIS server with the same rights as the Worker Process Identity (WPI). The WPI is configured with Network Service account privileges by default. IIS servers with ASP pages whose application pools are configured with a WPI that uses an account with administrative privileges could be more seriously impacted than IIS servers whose application pool is configured with the default WPI settings. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-006: CORRUPT PATCH - Windows Server 2003 SP1/SP2 Severity: Important Fixlet ID: 800606 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-006.mspx *************************************************************** Title: MS08-006: Vulnerability in Internet Information Services Could Allow Remote Code Execution - Windows Server 2003 (x64) Severity: Important Fixlet ID: 800607 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-006.mspx Fixlet Description: Microsoft has released an important update that resolves a privately reported vulnerability in Internet Information Services (IIS). A remote code execution vulnerability exists in the way that IIS handles input to ASP Web pages. An attacker who successfully exploited this vulnerability could then perform actions on the IIS server with the same rights as the Worker Process Identity (WPI). The WPI is configured with Network Service account privileges by default. IIS servers with ASP pages whose application pools are configured with a WPI that uses an account with administrative privileges could be more seriously impacted than IIS servers whose application pool is configured with the default WPI settings. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-006: CORRUPT PATCH - Windows Server 2003 (x64) Severity: Important Fixlet ID: 800608 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-006.mspx *************************************************************** Title: MS08-007: Vulnerability in WebDAV Mini-Redirector Could Allow Remote Code Execution - Windows XP SP2 Severity: Critical Fixlet ID: 800701 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx Fixlet Description: Microsoft has released a critical security update that resolves one privately reported vulnerability in the WebDAV Mini-Redirector. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-007: CORRUPT PATCH - Windows XP SP2 Severity: Critical Fixlet ID: 800702 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx *************************************************************** Title: MS08-007: Vulnerability in WebDAV Mini-Redirector Could Allow Remote Code Execution - Windows XP (x64) Severity: Critical Fixlet ID: 800703 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx Fixlet Description: Microsoft has released a critical security update that resolves one privately reported vulnerability in the WebDAV Mini-Redirector. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-007: CORRUPT PATCH - Windows XP (x64) Severity: Critical Fixlet ID: 800704 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx *************************************************************** Title: MS08-007: Vulnerability in WebDAV Mini-Redirector Could Allow Remote Code Execution - Windows Server 2003 SP1/SP2 Severity: Important Fixlet ID: 800705 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx Fixlet Description: Microsoft has released a critical security update that resolves one privately reported vulnerability in the WebDAV Mini-Redirector. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-007: CORRUPT PATCH - Windows Server 2003 SP1/SP2 Severity: Important Fixlet ID: 800706 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx *************************************************************** Title: MS08-007: Vulnerability in WebDAV Mini-Redirector Could Allow Remote Code Execution - Windows Server 2003 (x64) Severity: Important Fixlet ID: 800707 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx Fixlet Description: Microsoft has released a critical security update that resolves one privately reported vulnerability in the WebDAV Mini-Redirector. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-007: CORRUPT PATCH - Windows Server 2003 (x64) Severity: Important Fixlet ID: 800708 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx *************************************************************** Title: MS08-007: Vulnerability in WebDAV Mini-Redirector Could Allow Remote Code Execution - Windows Vista Severity: Critical Fixlet ID: 800709 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx Fixlet Description: Microsoft has released a critical security update that resolves one privately reported vulnerability in the WebDAV Mini-Redirector. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-007: Vulnerability in WebDAV Mini-Redirector Could Allow Remote Code Execution - Windows Vista (x64) Severity: Critical Fixlet ID: 800711 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-007.mspx Fixlet Description: Microsoft has released a critical security update that resolves one privately reported vulnerability in the WebDAV Mini-Redirector. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Windows 2000 SP4 Severity: Critical Fixlet ID: 800801 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: CORRUPT PATCH - Windows 2000 SP4 Severity: Critical Fixlet ID: 800802 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Windows XP SP2 Severity: Critical Fixlet ID: 800803 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: CORRUPT PATCH - Windows XP SP2 Severity: Critical Fixlet ID: 800804 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Windows XP (x64) Severity: Critical Fixlet ID: 800805 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: CORRUPT PATCH - Windows XP (x64) Severity: Critical Fixlet ID: 800806 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Windows Server 2003 SP1/SP2 Severity: Moderate Fixlet ID: 800807 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: CORRUPT PATCH - Windows Server 2003 SP1/SP2 Severity: Moderate Fixlet ID: 800808 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Windows Server 2003 (x64) Severity: Moderate Fixlet ID: 800809 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: CORRUPT PATCH - Windows Server 2003 (x64) Severity: Moderate Fixlet ID: 800810 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Windows Vista Severity: Critical Fixlet ID: 800811 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Windows Vista (x64) Severity: Critical Fixlet ID: 800813 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Visual Basic 6.0 SP6 Severity: Critical Fixlet ID: 800815 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-008: Vulnerability in OLE Automation Could Allow Remote Code Execution - Visual Basic 6.0 SP6 (x64) Severity: Critical Fixlet ID: 800817 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-008.mspx Fixlet Description: Microsoft has released a critical security update that resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2000 (Local Install) Severity: Critical Fixlet ID: 800901 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security update which resolves a privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to the vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2000 - Windows NT/2000/XP/2003 (Network Install) Severity: Critical Fixlet ID: 800902 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security update which resolves a privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to the vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2000 - Windows NT/2000/XP/2003 (Administrative Install) Severity: Critical Fixlet ID: 800903 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security update which resolves a privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to the vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2000 - Windows 9x/ME (Network Install) Severity: Critical Fixlet ID: 800904 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security update which resolves a privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to the vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2000 - Windows 9X/ME (Administrative Install) Severity: Critical Fixlet ID: 800905 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security update which resolves a privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to the vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2002 (Network/Local Install) Severity: Important Fixlet ID: 800911 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security update which resolves a privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2002 - Windows NT/2000/XP/2003 (Administrative Install) Severity: Important Fixlet ID: 800912 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security update which resolves a privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2002 - Windows 9x/ME (Administrative Install) Severity: Important Fixlet ID: 800913 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security update which resolves a privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to this vulnerability. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2003 (Network/Local Install) Severity: Critical Fixlet ID: 800921 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2003. It resolves one privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word 2003 (Administrative Install) Severity: Important Fixlet ID: 800922 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word 2003. It resolves one privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-009: Vulnerability in Microsoft Word Could Allow Remote Code Execution - Word Viewer 2003 Severity: Critical Fixlet ID: 800923 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/ms08-009.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Word Viewer 2003. It resolves one privately reported vulnerability in Microsoft Word that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 5.01 SP4 - Windows 2000 SP4 Severity: Critical Fixlet ID: 801001 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows 2000 SP4 Severity: Critical Fixlet ID: 801002 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 6 SP1 - Windows 2000 SP4 Severity: Critical Fixlet ID: 801003 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows 2000 SP4 Severity: Critical Fixlet ID: 801004 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 6 - Windows XP SP2 Severity: Critical Fixlet ID: 801005 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows XP SP2 Severity: Critical Fixlet ID: 801006 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 6 - Windows XP (x64) Severity: Critical Fixlet ID: 801007 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows XP (x64) Severity: Critical Fixlet ID: 801008 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 6 - Windows Server 2003 SP1/SP2 Severity: Critical Fixlet ID: 801009 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows Server 2003 SP1/SP2 Severity: Critical Fixlet ID: 801010 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 6 - Windows Server 2003 (x64) Severity: Critical Fixlet ID: 801011 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows Server 2003 (x64) Severity: Critical Fixlet ID: 801012 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 7 - Windows XP SP2 Severity: Critical Fixlet ID: 801013 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows XP SP2 Severity: Critical Fixlet ID: 801014 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 7 - Windows XP (x64) Severity: Critical Fixlet ID: 801015 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows XP (x64) Severity: Critical Fixlet ID: 801016 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 7 - Windows Server 2003 SP1/SP2 Severity: Critical Fixlet ID: 801017 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows Server 2003 SP1/SP2 Severity: Critical Fixlet ID: 801018 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 7 - Windows Server 2003 (x64) Severity: Critical Fixlet ID: 801019 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: CORRUPT PATCH - Windows Server 2003 (x64) Severity: Critical Fixlet ID: 801020 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 7 - Windows Vista Severity: Critical Fixlet ID: 801021 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-010: Cumulative Security Update for Internet Explorer - IE 7 - Windows Vista (x64) Severity: Critical Fixlet ID: 801023 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-010.mspx Fixlet Description: Microsoft has released a critical security update that resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. After downloading and installing this update, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-011: Vulnerabilities in Microsoft Works File Converter Could Allow Remote Code Execution - Office 2003 SP2/SP3 Severity: Moderate Fixlet ID: 801101 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-011.mspx Fixlet Description: Microsoft has released a security update for Microsoft Works File Converter. It resolves three privately reported vulnerabilities in the Microsoft Works File Converter. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-012: Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution - Office 2000 (Local Install) Severity: Critical Fixlet ID: 801201 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS08-012.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office Publisher. This update resolves two privately reported vulnerabilities that could allow remote code execution. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are known issues associated with the installation of this patch. See the Known Issues section of the security bulletin for more information. *************************************************************** Title: MS08-012: Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution - Office 2000 (Network Install) Severity: Critical Fixlet ID: 801203 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS08-012.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office Publisher. This update resolves two privately reported vulnerabilities that could allow remote code execution. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS08-012: Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution - Office 2000 (Administrative Install) Severity: Critical Fixlet ID: 801205 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS08-012.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office Publisher. This update resolves two privately reported vulnerabilities that could allow remote code execution. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS08-012: Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution - Office XP (Network/Local Install) Severity: Important Fixlet ID: 801207 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS08-012.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office Publisher. This update resolves two privately reported vulnerabilities that could allow remote code execution. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are known issues associated with the installation of this patch. See the Known Issues section of the security bulletin for more information. *************************************************************** Title: MS08-012: Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution - Office XP (Administrative Install) Severity: Important Fixlet ID: 801211 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS08-012.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office Publisher. This update resolves two privately reported vulnerabilities that could allow remote code execution. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are known issues associated with the installation of this patch. See the Known Issues section of the security bulletin for more information. *************************************************************** Title: MS08-012: Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution - Office 2003 (Network/Local Install) Severity: Important Fixlet ID: 801213 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS08-012.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office Publisher. This update resolves two privately reported vulnerabilities that could allow remote code execution. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are known issues associated with the installation of this patch. See the Caveats section of the security bulletin for more information. *************************************************************** Title: MS08-012: Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution - Office 2003 (Administrative Install) Severity: Important Fixlet ID: 801215 Fixlet Link: http://www.microsoft.com/technet/security/bulletin/MS08-012.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office Publisher. This update resolves two privately reported vulnerabilities that could allow remote code execution. An attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user rights. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. Important Note: There are known issues associated with the installation of this patch. See the Known Issues section of the security bulletin for more information. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office 2000 (Local Install) Severity: Critical Fixlet ID: 801301 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office 2000 - Windows 9x/ME (Network Install) Severity: Critical Fixlet ID: 801302 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office 2000 - Windows NT/2000/XP/2003 (Network Install) Severity: Critical Fixlet ID: 801303 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office 2000 - Windows 9x/ME (Administrative Install) Severity: Critical Fixlet ID: 801304 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office 2000 - Windows NT/2000/XP/2003 (Administrative Install) Severity: Critical Fixlet ID: 801305 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2000. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office XP (Network/Local Install) Severity: Important Fixlet ID: 801307 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office XP. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office XP - Windows 9x/ME (Administrative Install) Severity: Important Fixlet ID: 801308 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office XP. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office XP - Windows NT/2000/XP/2003 (Administrative Install) Severity: Important Fixlet ID: 801309 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office XP. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office 2003 (Network/Local Install) Severity: Important Fixlet ID: 801311 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2003. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities. *************************************************************** Title: MS08-013: Vulnerability in Microsoft Office Could Allow Remote Code Execution - Office 2003 (Administrative Install) Severity: Important Fixlet ID: 801313 Fixlet Link: http://www.microsoft.com/technet/security/Bulletin/MS08-013.mspx Fixlet Link: http://support.bigfix.com/cgi-bin/kbdirect.pl?id=129 Fixlet Description: Microsoft has released a security patch for Office 2003. This critical security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file with a malformed object inserted into the document. An attacker who successfully exploited this vulnerability could take complete control of an affected system. After downloading and installing this patch, affected computers will no longer be susceptible to these vulnerabilities.