None of the vulnerabilities addressed today are currently being exploited but a couple are publicly disclosed. Also don’t miss the out-of-band bulletin MS10-046 from August 2. Notes on some of the more interesting ones and then the full chart of Fast Facts.
| Bulletin | Exploit Types /Technologies Affected | System Types Affected | Exploit details public? / Being exploited? | Comprehensive, practical workaround available? | MS severity rating | Products Affected | Notes | Randy's recommendation |
MS10-051
2079403 | Arbitrary code
/ Windows | Workstations Terminal Servers
| No/No | No | Critical | XP Win2003 Vista Win2008 XML Core Services Windows 7 Win2008 R2
| XML Core Services 4.0, 5.0 and 6.0 not affected. Restart Req'd | Patch after testing |
MS10-052
2115168 | Arbitrary code
/ MPEG Layer-3 codecs | Workstations Terminal Servers
| No/No | Yes | Critical | XP Win2003
| Restart may be req'd | Patch after testing |
MS10-048
2160329 | Privilege elevation Denial of service
/ Windows kernal mode drivers | Workstations Terminal Servers
| Yes/No | No | Important | XP Win2003 Vista Win2008 Windows 7 Win2008 R2
| Restart Req'd | Patch after testing |
MS10-053
2183461 | Arbitrary code
/ Internet Explorer | Workstations Terminal Servers
| No/No | No | Critical | XP Win2003 Vista Win2008 Windows 7 Win2008 R2
| Cumulative Update; Restart Req'd | Patch after testing |
MS10-060
2265906 | Arbitrary code
/ .Net Framework | Workstations Terminal Servers Web Servers
| No/No | Yes | Critical | XP Win2003 Vista Win2008 Windows 7 Win2008 R2 Silverlight 2 Silverlight 3
| Restart may be req'd | Patch after testing |
MS10-056
2269638 | Arbitrary code
/ Office Word | Workstations Terminal Servers
| No/No | No | Critical | Office XP Office 2003 Office 2007 Word Viewer Office 2004 for Mac Office 2008 for Mac Open XML Format Converter Mac Office Converter Pack Works 9
| | Patch after testing |
MS10-057
2269707 | Arbitrary code
/ Office Excel | Workstations Terminal Servers
| No/No | No | Important | Office 2003 Office 2004 for Mac Office 2008 for Mac Open XML Format Converter Mac
| | Patch after testing |
MS10-046
2286198 | Arbitrary code
/ Windows Shell | Workstations Terminal Servers
| Yes/Yes | Yes | Critical | XP Win2003 Vista Win2008 Windows 7 Win2008 R2
| Restart Req'd | Patch after minimal testing |
MS10-058
978886 | Privilege elevation
/ Windows | Workstations Terminal Servers Servers
| No/No | No | Important | Vista Win2008 Windows 7 Win2008 R2
| Restart Req'd | Patch after testing |
MS10-049
980436 | Arbitrary code Spoofing
/ Windows | Workstations Terminal Servers Web Servers
| Yes/No | No | Critical | XP Win2003 Vista Win2008 Windows 7 Win2008 R2
| Restart Req'd | Patch after testing |
MS10-047
981852 | Privilege elevation Denial of service
/ Windows | Workstations Terminal Servers
| No/No | No | Important | XP Vista Win2008 Windows 7 Win2008 R2
| Restart Req'd | Patch after testing |
MS10-050
981997 | Arbitrary code
/ Movie Maker | Workstations
| No/No | Yes | Important | XP Vista
| Restart may be req'd | Patch after testing |
MS10-054
982214 | Arbitrary code
/ SMB Server | Servers Domain Controllers
| No/No | No | Critical | XP Win2003 Vista Win2008 Windows 7 Win2008 R2
| Restart Req'd | Patch after testing |
MS10-055
982665 | Arbitrary code
/ Windows Media Player | Workstations
| No/No | Yes | Critical | XP Vista Windows 7
| | Patch after testing |
MS10-059
982799 | Privilege elevation
/ Windows | Workstations Terminal Servers
| Yes/No | No | Important | Vista Win2008 Windows 7 Win2008 R2
| Restart Req'd | Patch after testing |