Microsoft
Microsoft has issued its July security update
R E L A T E D   C O N T E N T

Free email newsletters




ADVERTISEMENT

Microsoft issues monthly security pack

Nothing 'critical' about July update

Shaun Nichols in San Francisco, vnunet.com 09 Jul 2008
ADVERTISEMENT

Microsoft has issued the July edition of its monthly Patch Tuesday security update.

Four bulletins address nine software vulnerabilities in various components of Windows, Outlook and Exchange Server.

Each bulletin carries a maximum security rating of 'important', marking the first time since March 2007 that Microsoft has not issued a 'critical' security fix in its monthly update.

The first bulletin addresses a pair of flaws in Windows DNS which could allow an attacker to reroute web traffic.

Another update addresses a flaw in Windows Explorer which could allow an attacker to remotely take control of a targeted system.

Microsoft also fixed two vulnerabilities in Exchange Server 2003 and 2007 which could be exploited by an attacker to gain elevated privileges on a server.

The fourth bulletin addresses four vulnerabilities in SQL components for Windows 2000, Server 2003, 2007 and 2008. The most severe could allow an attacker to remotely execute code on a targeted system.

A flaw in an ActiveX control for Office was not patched in the update. Microsoft is still investigating the attacks and has not yet said when a fix will be released.

Dave Marcus, director of security research and communications at McAfee, insisted that, despite the low risk of the patched flaws, administrators should still install the update as normal.

"July offers a summer break for patching and, although this is a minor patch, McAfee encourages all customers to update according to their risk management strategy and protect the integrity of their systems and data," he said.

See also:

Second LifeKey-loggers and rootkits spoiling the fun  03 Jul 2008
MicrosoftNo 'critical' fixes for July  04 Jul 2008
MicrosoftRedmond takes second crack at Bluetooth flaw  21 Jun 2008
MicrosoftAdministrators unable to install update on some systems  17 Jun 2008

All Bugs & Fixes
Tags: Microsoft, Security, Security, Software

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Greythorn IT
Leading Mobile Network vendore is currently seeking a Process consultant for a positions based either in the Middle east or Africa. We are looking for around 10 years experience with at least 5 years business ... more >
| Greythorn IT
Tier 1 Network solutions provider is currently seeking an experienced Telecommunications sales manager to work in their Abu Dhabi office. There is a brilliant benefits package as well as an attractive salary available for the ... more >
| Greythorn IT
Leading network solutions provider in Egypt is currently seeking and experienced Egyptian Network Operation /Supervision Engineer. There are competitive packages and attractive benefits package on offer for the right candidate. You will be responsible to ... more >
| Greythorn IT
A leading network Solutions vendor is currently seeking an Egyptian national to act as a Service Assurance manager out of their Egyptian office. Ideally we are looking for someone with Vendor based experience however other ... more >
More job opportunities