Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

MajorGeeks.com - Don't ya wish your boyfriend was a geek like me?.

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews




spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. GS Auto Clicker
2. Macrium Reflect FREE Edition
3. Smart Defrag
4. Visual C++ Redistributable Runtimes AIO Repack
5. Visual C++ Runtime Installer (All-In-One)
6. McAfee Removal Tool (MCPR)
7. MusicBee
8. Rufus
9. K-Lite Mega Codec Pack
10. Sergei Strelec's WinPE
More >>

top reads

Star How to Disable 1-Click Ordering on Amazon (and Avoid Surprise Charges)

Star How to Fix Shallow Paint Layer Depth in Bambu Studio

Star Aviator Betting Game Secrets: Unlock 97% RTP & Triple Your Wins

Star Windows Recall: What It Is, Why Hackers Will Love It, and How to Stay Safe

Star Star Trek Fleet Command Promo Codes: Redeem Codes for Free Shards, Blueprints And Resources

Star How To Use VLC Media Player to Trim Video Clips

Star What Is the $WinREAgent Folder and Can I Delete It?

Star Swear Your Way to Better Search Results

Star How to Get a Dark Start Menu and Taskbar in Windows 10 & 11

Star Enable, Disable, Manage, Delete or Create a System Restore Point


MajorGeeks.Com » News » February 2013 » February patches from Microsoft and Adobe

February patches from Microsoft and Adobe


Contributed by: Email on 02/13/2013 04:12 PM [ comments Comments ]


On its February Patch Tuesday, Microsoft has released 12 bulletins to close a total of 57 holes. Five bulletins have been rated critical by the company. Adobe has also had its monthly patch day, releasing patches to fix vulnerabilities in Flash, AIR and Shockwave.

One of the components responsible for the high number of holes in Microsoft products is Internet Explorer: one critical bulletin is a combined update that fixes 13 vulnerabilities in all currently supported versions of IE, among them numerous use-after-free holes that gave access to freshly deallocated memory areas. At worst, these vulnerabilities can cause a system to become infected with malicious code when a specially crafted web page is visited. Another bulletin fixes a critical hole in Internet Explorer's code for processing VML files. Vector Markup Language (VML) is a language for formatting vector graphics.

Windows has also been patched: a critical bulletin fixes a hole in the Quartz.dll DirectShow library that is included in Windows up to Vista (and in all server editions up to 2008). The hole can be exploited to infect systems with malicious code when a specially crafted media file is opened. Such files can, for example, lurk in Office documents such as PowerPoint presentations. Microsoft has also closed a critical hole in the OLE (Object Linking and Embedding) automation of XP that allowed attackers to execute code at the user's privilege level. The fifth critical bulletin fixes two further holes in Exchange Server 2003 and 2007 that were caused by Oracle's Outside In file converter.

The remaining "important" bulletins also have an impact: most of them fix holes in Windows and affect all versions. One bulletin alone fixes 30 confidentially reported race conditions that allowed attackers who were already signed into a system using a valid Windows account to escalate their privileges. Other holes in Windows could be exploited to paralyse a computer or trigger a reboot (denial of service); for instance, attackers were able to achieve this using specially crafted TCP packets. Microsoft has also patched .NET Framework and FAST Search Server 2010 for SharePoint SP1.

Adobe's February Patch Tuesday has provided new Flash versions for all supported operating systems: Windows, Mac OS X, Linux and Android. The updates fix numerous critical vulnerabilities that can, for example, be exploited to inject malicious code; among them buffer overflows and use-after-free bugs. The multitude of new version numbers can be found in Adobe's advisory. Google's Chrome browser automatically updates its Flash plugin, and Windows 8 handles any Flash updates for Internet Explorer 10. The vulnerabilities were also closed in AIR and in the AIR SDK. In addition, Adobe has closed two critical holes in Shockwave; the version number of the update is 12.0.0.112.






« Zero-day vulnerability in Adobe Reader · February patches from Microsoft and Adobe · Kissing Booth Brings Love to 3D Printing Geeks »




Comments
comments powered by Disqus

MajorGeeks.Com » News » February 2013 » February patches from Microsoft and Adobe

© 2000-2025 MajorGeeks.com
Powered by Contentteller® Business Edition