<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>UKFast Blog &#187; Microsoft</title>
	<atom:link href="http://blog.ukfast.co.uk/category/microsoft/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.ukfast.co.uk</link>
	<description>News and views from the UK&#039;s best hosting provider</description>
	<lastBuildDate>Fri, 10 Feb 2012 13:14:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>January 2012 Microsoft Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2012/01/11/january-2012-microsoft-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2012/01/11/january-2012-microsoft-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 11 Jan 2012 17:31:50 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security bulletin release]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=9436</guid>
		<description><![CDATA[As mentioned in January’s advance notification post this month’s security bulletin releases are now confirmed to contain 7 bulletins addressing 8 vulnerabilities. The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and the services this may affect: Bulletin ID Bulletin Title and Executive Summary Maximum Severity Rating and Vulnerability [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a title="January 2012 Security Bulletin Release Advance Notification" href="../2012/01/04/January-2012-security-bulletin-release-advance-notification/"><strong>January’s advance notification</strong></a> post this month’s security bulletin releases are now confirmed to contain<strong> 7 bulletins addressing 8 vulnerabilities</strong>.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and the services this may affect:</p>
<table class="default_table" width="100%" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top"><strong>Bulletin ID</strong></td>
<td valign="top"><strong>Bulletin Title and Executive Summary</strong></td>
<td valign="bottom"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="bottom"><strong>Restart Requirement</strong></td>
<td valign="bottom"><strong>Affected Software</strong></td>
</tr>
<tr>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=227487">MS12-004</a></td>
<td valign="bottom"><strong>Vulnerabilities in Windows Media Could Allow Remote Code Execution (2636391)</strong>This security update resolves two privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow remote code execution if a user opens a specially crafted media file. An attacker who successfully exploited the vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a><br />
Remote Code Execution</td>
<td valign="bottom">Requires restart</td>
<td valign="bottom">Microsoft Windows</td>
</tr>
<tr>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkID=235999">MS12-001</a></td>
<td valign="bottom"><strong>Vulnerability in Windows Kernel Could Allow Security Feature Bypass (2644615)</strong>This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow an attacker to bypass the SafeSEH security feature in a software application. An attacker could then use other vulnerabilities to leverage the structured exception handler to run arbitrary code. Only software applications that were compiled using Microsoft Visual C++ .NET 2003 can be used to exploit this vulnerability.</td>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Security Feature Bypass</td>
<td valign="bottom">Requires restart</td>
<td valign="bottom">Microsoft Windows</td>
</tr>
<tr>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=229637">MS12-002</a></td>
<td valign="bottom"><strong>Vulnerability in Windows Object Packager Could Allow Remote Code Execution (2603381)</strong>This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a legitimate file with an embedded packaged object that is located in the same network directory as a specially crafted executable file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="bottom">May require restart</td>
<td valign="bottom">Microsoft Windows</td>
</tr>
<tr>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=235400">MS12-003</a></td>
<td valign="bottom"><strong>Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (2646524)</strong>This security update resolves one privately reported vulnerability in Microsoft Windows. This security update is rated Important for all supported editions of Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008. All supported editions of Windows 7 and Windows Server 2008 R2 are not affected by this vulnerability.</p>
<p>The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application. The attacker could then take complete control of the affected system and install programs; view, change, or delete data; or create new accounts with full user rights. This vulnerability can only be exploited on systems configured with a Chinese, Japanese, or Korean system locale.</td>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="bottom">Requires restart</td>
<td valign="bottom">Microsoft Windows</td>
</tr>
<tr>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=230777">MS12-005</a></td>
<td valign="bottom"><strong>Vulnerability in Microsoft Windows Could Allow Remote Code Execution (2584146)</strong>This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Office file containing a malicious embedded ClickOnce application. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="bottom">May require restart</td>
<td valign="bottom">Microsoft Windows</td>
</tr>
<tr>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkID=232510">MS12-006</a></td>
<td valign="bottom"><strong>Vulnerability in SSL/TLS Could Allow Information Disclosure (2643584)</strong>This security update resolves a publicly disclosed vulnerability in SSL 3.0 and TLS 1.0. This vulnerability affects the protocol itself and is not specific to the Windows operating system. The vulnerability could allow information disclosure if an attacker intercepts encrypted web traffic served from an affected system. TLS 1.1, TLS 1.2, and all cipher suites that do not use CBC mode are not affected.</td>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Information Disclosure</td>
<td valign="bottom">Requires restart</td>
<td valign="bottom">Microsoft Windows</td>
</tr>
<tr>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=227561">MS12-007</a></td>
<td valign="bottom"><strong>Vulnerability in</strong><strong> </strong><strong>AntiXSS</strong><strong> </strong><strong>Library Could Allow Information Disclosure (2607664)</strong>This security update resolves one privately reported vulnerability in the Microsoft Anti-Cross Site Scripting (AntiXSS) Library. The vulnerability could allow information disclosure if a an attacker passes a malicious script to a website using the sanitization function of the AntiXSS Library. The consequences of the disclosure of that information depend on the nature of the information itself. Note that this vulnerability would not allow an attacker to execute code or to elevate the attacker&#8217;s user rights directly, but it could be used to produce information that could be used to try to further compromise the affected system. Only sites that use the sanitization module of the AntiXSS Library are affected by this vulnerability.</td>
<td valign="bottom"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Information Disclosure</td>
<td valign="bottom">May require restart</td>
<td valign="bottom">Microsoft Developer Tools and Software</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>In summary, we are likely to see updates requiring reboots of servers this month. As usual, as a UKFast customer, you will benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html"><strong>updates being applied automatically</strong></a> unless you have opted out of this service.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2012/01/11/january-2012-microsoft-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>January 2012 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2012/01/04/january-2012-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2012/01/04/january-2012-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Wed, 04 Jan 2012 16:26:59 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security bulletin release]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=9428</guid>
		<description><![CDATA[Advanced notification blog Microsoft is starting off 2012 with 7 bulletins addressing 8 vulnerabilities. Bulletin breakdown: 1 bulletin is rated as critical 6 bulletins are rated as important 1 vulnerability could lead to a security feature bypass 2 vulnerabilities could lead to information disclosure 1 vulnerability could lead to elevation of privileges These updates will [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Advanced notification blog</strong></p>
<p>Microsoft is starting off 2012 with <strong>7 bulletins </strong>addressing<strong> 8 vulnerabilities.</strong></p>
<p>Bulletin breakdown:</p>
<ul>
<li>1 bulletin is rated as critical</li>
<li>6 bulletins are rated as important</li>
<li>1 vulnerability could lead to a security feature bypass</li>
<li>2 vulnerabilities could lead to information disclosure</li>
<li>1 vulnerability could lead to elevation of privileges</li>
</ul>
<p>These updates will be applied to all Microsoft Operating Systems, Microsoft Developer tools and software.<br />
The following table summarises the security bulletins for this month in order of severity.</p>
<table class="default_table" width="100%" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top" width="25%"><strong>Bulletin ID</strong></td>
<td valign="top" width="25%">
<p align="center"><strong>Maximum Severity Rating and Vulnerability Impact</strong></p>
</td>
<td valign="top" width="25%">
<p align="center"><strong>Restart Requirement</strong></p>
</td>
<td valign="top" width="25%">
<p align="center"><strong>Affected Software</strong></p>
</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="25%">Bulletin 1</td>
<td valign="top" width="25%">
<p align="center"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank"><strong>Critical</strong></a></p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Requires restart</p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Microsoft Windows</p>
</td>
</tr>
<tr>
<td valign="top" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="25%">Bulletin 2</td>
<td valign="top" width="25%">
<p align="center"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank"><strong>Important</strong></a></p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Requires restart</p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Microsoft Windows</p>
</td>
</tr>
<tr>
<td valign="top" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="25%">Bulletin 3</td>
<td valign="top" width="25%">
<p align="center"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank"><strong>Important</strong></a></p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">May require restart</p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Microsoft Windows</p>
</td>
</tr>
<tr>
<td valign="top" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="25%">Bulletin 4</td>
<td valign="top" width="25%">
<p align="center"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx"><strong>Important</strong></a></p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Requires restart</p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Microsoft Windows</p>
</td>
</tr>
<tr>
<td valign="top" width="25%">Information Disclosure</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="25%">Bulletin 5</td>
<td valign="top" width="25%">
<p align="center"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx"><strong>Important</strong></a></p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">May Require restart</p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Microsoft Windows</p>
</td>
</tr>
<tr>
<td valign="top" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="25%">Bulletin 6</td>
<td valign="top" width="25%">
<p align="center"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx"><strong>Important</strong></a></p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Requires restart</p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Microsoft Windows</p>
</td>
</tr>
<tr>
<td valign="top" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="25%">Bulletin 7</td>
<td valign="top" width="25%">
<p align="center"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx"><strong>Important</strong></a></p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">May require restart</p>
</td>
<td rowspan="2" valign="top" width="25%">
<p align="center">Microsoft Developer Tools and Software</p>
</td>
</tr>
<tr>
<td style="text-align: left;">Information Disclosure</td>
</tr>
</tbody>
</table>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing from the 10<sup>th</sup> of January 2012</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2012/01/04/january-2012-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>December 2011 Microsoft Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/12/15/december-2011-microsoft-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/12/15/december-2011-microsoft-security-bulletin-release/#comments</comments>
		<pubDate>Thu, 15 Dec 2011 10:20:47 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security bulletin release]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=9328</guid>
		<description><![CDATA[As mentioned in December&#8217;s advance notification post this month&#8217;s security bulletin releases are now confirmed to contain 14 bulletins addressing 20 vulnerabilities. The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided: Bulletin ID Bulletin Title and Executive Summary Maximum Severity Rating and Vulnerability [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a title="December 2011 Security Bulletin Release Advance Notification" href="http://blog.ukfast.co.uk/2011/12/12/december-2011-security-bulletin-release-advance-notification/">December&#8217;s advance notification</a> post this month&#8217;s security bulletin releases are now confirmed to contain <strong>14 bulletins addressing 20 vulnerabilities</strong>.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided:</p>
<table cellspacing="0" cellpadding="0" width="100%" class="default_table">
<tbody>
<tr>
<td valign="top" width="20%"><strong>Bulletin ID</strong></td>
<td valign="top" width="20%"><strong>Bulletin Title and Executive Summary</strong></td>
<td valign="top" width="20%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="20%"><strong>Restart Requirement</strong></td>
<td valign="top" width="20%"><strong>Affected Software</strong></td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-087.mspx" target="_blank">MS11-087</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in Windows Kernel-Mode Drivers Could Allow Remote Code Execution (2639417)</strong><br />
This security update resolves a publicly disclosed vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a specially crafted document or visits a malicious Web page that embeds TrueType font files.</td>
<td style="text-align: left;" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx" target="_blank">Critical</a><br />
Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-090.mspx" target="_blank">MS11-090</a></td>
<td style="text-align: left;" valign="top"><strong>Cumulative Security Update of ActiveX Kill Bits (2618451)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft software. The vulnerability could allow remote code execution if a user views a specially crafted Web page that uses a specific binary behavior in Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. This update also includes kill bits for four third-party ActiveX controls.</td>
<td style="text-align: left;" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx" target="_blank">Critical</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-092.mspx" target="_blank">MS11-092</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in Windows Media Could Allow Remote Code Execution (2648048)</strong><br />
This security update resolves a privately reported vulnerability in Windows Media Player and Windows Media Center. The vulnerability could allow remote code execution if a user opens a specially crafted Microsoft Digital Video Recording (.dvr-ms) file. In all cases, a user cannot be forced to open the file; for an attack to be successful, a user must be convinced to do so.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-088.mspx" target="_blank">MS11-088</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in Microsoft Office IME (Chinese) Could Allow Elevation of Privilege (2652016)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft Office IME (Chinese). The vulnerability could allow elevation of privilege if a logged-on user performed specific actions on a system where an affected version of the Microsoft Pinyin (MSPY) Input Method Editor (IME) for Simplified Chinese is installed. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full administrative rights. Only implementations of Microsoft Pinyin IME 2010 are affected by this vulnerability. Other versions of Simplified Chinese IME and other implementations of IME are not affected.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-089.mspx" target="_blank">MS11-089</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in Microsoft Office Could Allow Remote Code Execution (2590602)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-091.mspx" target="_blank">MS11-091</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerabilities in Microsoft Publisher Could Allow Remote Code Execution (2607702)</strong><br />
This security update resolves one publicly disclosed vulnerability and three privately reported vulnerabilities in Microsoft Office. The most severe vulnerabilities could allow remote code execution if a user opens a specially crafted Publisher file. An attacker who successfully exploited any of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-093.mspx" target="_blank">MS11-093</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in OLE Could Allow Remote Code Execution (2624667)</strong><br />
This security update resolves a privately reported vulnerability in all supported editions of Windows XP and Windows Server 2003. This security update is rated Important for all supported editions of Windows XP and Windows Server 2003. Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 are not affected by the vulnerability.The vulnerability could allow remote code execution if a user opens a file that contains a specially crafted OLE object. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-094.mspx" target="_blank">MS11-094</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution (2639142)</strong><br />
This security update resolves two privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted PowerPoint file. An attacker who successfully exploited either of the vulnerabilities could take complete control of an affected system. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-095.mspx" target="_blank">MS11-095</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in Active Directory Could Allow Remote Code Execution (2640045)</strong><br />
This security update resolves a privately reported vulnerability in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS). The vulnerability could allow remote code execution if an attacker logs on to an Active Directory domain and runs a specially crafted application. To exploit this vulnerability, an attacker would first need to acquire credentials to log on to an Active Directory domain.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-096.mspx" target="_blank">MS11-096</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in Microsoft Excel Could Allow Remote Code Execution (2640241)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. Installing and configuring Office File Validation (OFV) to prevent the opening of suspicious files blocks the attack vectors for exploiting the vulnerabilities described in CVE-2011-3403.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-097.mspx" target="_blank">MS11-097</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (2620712)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application designed to send a device event message to a higher-integrity process. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-098.mspx" target="_blank">MS11-098</a></td>
<td style="text-align: left;" valign="top"><strong>Vulnerability in Windows Kernel Could Allow Elevation of Privilege (2633171)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application designed to exploit the vulnerability. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability. The vulnerability could not be exploited remotely or by anonymous users.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-099.mspx" target="_blank">MS11-099</a></td>
<td style="text-align: left;" valign="top"><strong>Cumulative Security Update for Internet Explorer (2618444)</strong><br />
This security update resolves three privately reported vulnerabilities in Internet Explorer. The most severe vulnerability could allow remote code execution if a user opens a legitimate HyperText Markup Language (HTML) file that is located in the same directory as a specially crafted dynamic link library (DLL) file.</td>
<td style="text-align: left;" valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows, Internet Explorer</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>So in summary, we are likely to see updates requiring reboots of servers this month. (As usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</p>
<p>&nbsp;</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/12/15/december-2011-microsoft-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>December 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/12/12/december-2011-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2011/12/12/december-2011-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Mon, 12 Dec 2011 09:45:33 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security bulletin release]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=9308</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for December 2011, sees the release of 14 bulletins addressing 20 vulnerabilities. Bulletin Breakdown: 3 bulletins are rated Critical, 11 are Important 10 vulnerabilities can lead to Remote Code Execution 3 vulnerability can lead to Elevation of Privilege 1 vulnerability can lead to Information Disclosure &#160; The following table summarises the security [...]]]></description>
			<content:encoded><![CDATA[<p>This <strong>&#8216;Patch Tuesday&#8217; for December 2011, </strong>sees the release of<strong> 14 bulletins addressing 20 vulnerabilities.</strong></p>
<p>Bulletin Breakdown:</p>
<ul>
<li>3 bulletins are rated Critical, 11 are Important</li>
<li>10 vulnerabilities can lead to Remote Code Execution</li>
<li>3 vulnerability can lead to Elevation of Privilege</li>
<li>1 vulnerability can lead to Information Disclosure</li>
</ul>
<p>&nbsp;<br />
The following table summarises the security bulletins for this month in order of severity.</p>
<table class="default_table" width="100%" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="middle" width="25%"><strong>Bulletin ID</strong></td>
<td valign="middle" width="25%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="middle" width="25%"><strong>Restart Requirement</strong></td>
<td valign="middle" width="25%"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 1</td>
<td valign="middle" width="25%"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank">Critical</a></td>
<td rowspan="2" valign="middle" width="25%">Requires restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 2</td>
<td valign="middle" width="25%"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank">Critical</a></td>
<td rowspan="2" valign="middle" width="25%">May require restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 3</td>
<td valign="top" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" valign="middle" width="25%">May require restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 4</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">Requires restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows</td>
</tr>
<tr>
<td valign="middle" width="25%">Information Disclosure</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 5</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">May Require restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Office</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 6</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">May require restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Office</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 7</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">May require restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 8</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">May require restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Office</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 9</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">Requires restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 10</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">May require restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Office</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 11</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">Requires restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows</td>
</tr>
<tr>
<td valign="middle" width="25%">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 12</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">Requires restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows</td>
</tr>
<tr>
<td valign="middle" width="25%">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 13</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">Requires restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Windows, Internet Explorer</td>
</tr>
<tr>
<td valign="middle" width="25%">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="middle" width="25%">Bulletin 14</td>
<td valign="middle" width="25%"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="middle" width="25%">May require restart</td>
<td rowspan="2" valign="middle" width="25%">Microsoft Office</td>
</tr>
<tr>
<td valign="middle" width="25%">Elevation of Privilege</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing from the 13<sup>th</sup> of December.</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/12/12/december-2011-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Sneak Preview of Windows 8 Apps Store</title>
		<link>http://blog.ukfast.co.uk/2011/12/08/sneak-preview-of-windows-8-apps-store/</link>
		<comments>http://blog.ukfast.co.uk/2011/12/08/sneak-preview-of-windows-8-apps-store/#comments</comments>
		<pubDate>Thu, 08 Dec 2011 17:00:31 +0000</pubDate>
		<dc:creator>Alice Cullen</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=9271</guid>
		<description><![CDATA[Microsoft has confirmed that Windows 8 will feature an &#8216;apps store&#8217; and has offered a sneak peek into the new development. The news of the Windows store comes just over a year after Apple announced the launch of an App Store for their desktop computers, which was launched this January. In a post on the [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has confirmed that Windows 8 will feature an &#8216;apps store&#8217; and has offered a sneak peek into the new development.</p>
<div id="attachment_9272" class="wp-caption alignright" style="width: 310px"><a href="http://blog.ukfast.co.uk/wp-content/uploads/2011/12/Windows-Store-2.png"><img class="size-medium wp-image-9272 " title="Windows Store Preview 3" src="http://blog.ukfast.co.uk/wp-content/uploads/2011/12/Windows-Store-2-300x168.png" alt="Windows store" width="300" height="168" /></a><p class="wp-caption-text">Image from Windows Store Blog</p></div>
<p>The news of the Windows store comes just over a year after Apple announced the launch of an App Store for their desktop computers, which was launched this January.</p>
<p>In a post on the newly launched Windows Store blog, Ted Dworkin, Partner Program Manager for the Store, described the design ideas behind the new store. He said: “Ensuring the visibility of apps and the efficiency and fluidity of app discovery became the fundamental building block of our Store design.</p>
<p>“We use minimal chrome so apps shine through, and complement the apps with a series of way-finding and promotion mechanisms—search, category browse, ranking lists, editorial curation — to help people find great apps.”</p>
<p>The software giant will initially give developers the ‘industry-standard’ 70% share of any revenues, keeping 30% &#8211; which is the same as Apple initially instituted on the iPhone App Store. However, Microsoft has pledged that once revenues pass $25,000, the split will shift to an 80-20 split for the lifetime of the app on the store.</p>
<p>In the blog post, Dworkin continued to explain that four guiding principles have been developed to maintain the best partnerships between Microsoft and app developers.</p>
<p>These principles describe how apps should be designed for discovery, have flexible business models and transparent terms and offer the best economics.</p>
<p>Pricing of apps on the store will begin at $1.49 as opposed to Apple’s $0.99.</p>
<p>The Windows Store will be available on PCs, laptops and tablets running the Windows 8 operating system. They did not disclose plans for mobile devices; however the Windows Phone platform already has its own app store called Marketplace.</p>
<p>&nbsp;</p>
<div class="mceTemp mceIEcenter" style="text-align: left;">
<dl id="attachment_9276" class="wp-caption aligncenter" style="width: 624px;">
<dt class="wp-caption-dt"><a href="http://blog.ukfast.co.uk/wp-content/uploads/2011/12/Windows-Store-31.png"><img class="size-large wp-image-9276 " title="Windows Store" src="http://blog.ukfast.co.uk/wp-content/uploads/2011/12/Windows-Store-31-1024x285.png" alt="" width="614" height="171" /></a></dt>
<dd class="wp-caption-dd"><strong>Images taken from the Windows Store blog</strong></dd>
</dl>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/12/08/sneak-preview-of-windows-8-apps-store/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Joins Battle for Child Friendly Internet</title>
		<link>http://blog.ukfast.co.uk/2011/12/08/microsoft-joins-battle-for-child-friendly-internet/</link>
		<comments>http://blog.ukfast.co.uk/2011/12/08/microsoft-joins-battle-for-child-friendly-internet/#comments</comments>
		<pubDate>Thu, 08 Dec 2011 08:41:05 +0000</pubDate>
		<dc:creator>Alice Cullen</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=9263</guid>
		<description><![CDATA[Microsoft has joined The European Commission&#8217;s CEO Coalition on Child Online Safety, bringing its extensive experience and technical knowledge into the fight to make the internet a safer place for children. The coalition brings together government and industry leaders to discuss the best practices and build effective solutions to the challenges that young people face [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has joined The European Commission&#8217;s CEO Coalition on Child Online Safety, bringing its extensive experience and technical knowledge into the fight to make the internet a safer place for children.</p>
<p>The coalition brings together government and industry leaders to discuss the best practices and build effective solutions to the challenges that young people face on the internet. Within this effort there are five working groups each tackling a different area of online safety. </p>
<p>One of the key areas that the coalition will focus on is the effective take down of child abuse content.  Peter Cullen, General Manager, Trustworthy Computing at Microsoft discussed how Microsoft has been working towards this before joining the coalition, and how their pioneering technology will help, in a post on the company’s blog.</p>
<p>He said:  “Microsoft is working with thought leaders around the world on advancing effective mechanisms to find, remove and report child-exploitive content online, including technologies like PhotoDNA. Microsoft, in partnership with Dartmouth College and the National Centre for Missing and Exploited Children (NCMEC), developed PhotoDNA, an image-matching technology that helps find and remove some of the worst-known child pornography images from the internet.</p>
<p>“Internally, Microsoft has implemented PhotoDNA on Hotmail, SkyDrive and Bing to help stop the spread of these images through these platforms. The company has also made PhotoDNA available for others to use at no charge. As a result, Facebook also uses PhotoDNA globally, and we continue to work with others in industry, government and law enforcement on new ways PhotoDNA technology and other efforts can help combat child sexual exploitation in Europe and worldwide.”</p>
<p>Microsoft is involved in ratings and classification schemes such as Pan European Game Information (PEGI) and The Entertainment Software Rating Board (ESRB) for games, and more recently has supported efforts to extend these regimes to mobile applications and another one of the working groups of this coalition will work towards developing a comprehensive content classification of all content directed at children.</p>
<p>In line with this the collective also aim to develop defined criteria for age-appropriate privacy settings and increase the availability and uptake of essential parental controls. </p>
<p>The final group will work towards establishing the feasibility of implementing a consistent abuse mechanism for easy reporting of issues across online experiences in Europe.</p>
<p>Cullen continued in his blog post: “Microsoft has observed that governments that bring together multi-stakeholder groups to tackle these issues through a shared responsibility model have yielded the most balanced approaches to online safety, as there is no “one size fits all” solution, and online safety considerations may differ based on a particular service, product or technology.</p>
<p>“Indeed, the governments that take a balanced and holistic approach to online safety through cooperative partnerships, sound public policies, robust education and awareness programs, and sensible use of technology tools, have demonstrated the greatest success. This is why Microsoft is pleased to continue working to advance improvements in this area as a company, and to be part of the CEO Coalition process, as more can be done when we partner together to achieve real, sustainable impact in the area of child online safety.”</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/12/08/microsoft-joins-battle-for-child-friendly-internet/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>November 2011 Microsoft Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/11/09/november-2011-microsoft-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/11/09/november-2011-microsoft-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 09 Nov 2011 12:19:18 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security bulletin release]]></category>
		<category><![CDATA[security updates]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8882</guid>
		<description><![CDATA[As mentioned in Novembers advance notification post this month&#8217;s security bulletin releases are now confirmed to contain 4 bulletins addressing 4 vulnerabilities. The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided: Bulletin ID Bulletin Title and Executive Summary Maximum Severity Rating and Vulnerability [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a title="November 2011 Security Bulletin Release Advance Notification" href="http://blog.ukfast.co.uk/2011/11/07/november-2011-security-bulletin-release-advance-notification/">Novembers advance notification</a> post this month&#8217;s security bulletin releases are now confirmed to contain <strong>4 bulletins addressing 4 vulnerabilities</strong>.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided:</p>
<table class="default_table" width="100%" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top" width="15%"><strong>Bulletin ID</strong></td>
<td valign="top" width="41%"><strong>Bulletin Title and Executive Summary</strong></td>
<td valign="top" width="18%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="18%"><strong>Restart Requirement</strong></td>
<td valign="top" width="18%"><strong>Affected Software</strong></td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-083.mspx" target="_blank">MS11-083</a></td>
<td valign="top"><strong>Vulnerability in TCP/IP Could Allow Remote Code Execution (2588516)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker sends a continuous flow of specially crafted UDP packets to a closed port on a target system.</td>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx" target="_blank">Critical</a><br />
Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-085.mspx" target="_blank">MS11-085</a></td>
<td valign="top"><strong>Vulnerability in Windows Mail and Windows Meeting Space Could Allow Remote Code Execution (2620704) </strong><br />
This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a legitimate file (such as an .eml or .wcinv file) that is located in the same network directory as a specially crafted dynamic link library (DLL) file. Then, while opening the legitimate file, Windows Mail or Windows Meeting Space could attempt to load the DLL file and execute any code it contained. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open a legitimate file (such as an .eml or .wcinv file) from this location that is then loaded by a vulnerable application.</td>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx" target="_blank">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-086.mspx" target="_blank">MS11-086</a></td>
<td valign="top"><strong>Vulnerability in Active Directory Could Allow Elevation of Privilege (2630837)</strong><br />
This security update resolves a privately reported vulnerability in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS). The vulnerability could allow elevation of privilege if Active Directory is configured to use LDAP over SSL (LDAPS) and an attacker acquires a revoked certificate that is associated with a valid domain account and then uses that revoked certificate to authenticate to the Active Directory domain. By default, Active Directory is not configured to use LDAP over SSL.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-084.mspx" target="_blank">MS11-084</a></td>
<td valign="top"><strong>Vulnerability in Windows Kernel-Mode Drivers Could Allow Denial of Service (2617657) </strong><br />
This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if a user opens a specially crafted TrueType font file as an e-mail attachment or navigates to a network share or WebDAV location containing a specially crafted TrueType font file. For an attack to be successful, a user must visit the untrusted remote file system location or WebDAV share containing the specially crafted TrueType font file, or open the file as an e-mail attachment. In all cases, however, an attacker would have no way to force users to perform these actions. Instead, an attacker would have to persuade users to do so, typically by getting them to click a link in an e-mail message or Instant Messenger message.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Moderate</a><br />
Denial of Service</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
</tbody>
</table>
<p>While this is the lightest patch Tuesday of the year, MS11-083 affects all Windows based devices and is patching what looks to be the worst vulnerability of the year.</p>
<p>So in summary, we are likely to see updates requiring reboots of servers this month. (As usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</p>
<p>&nbsp;</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/11/09/november-2011-microsoft-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>November 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/11/07/november-2011-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2011/11/07/november-2011-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Mon, 07 Nov 2011 14:25:27 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security updates]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8875</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for November 2011, sees the release of 4 bulletins addressing 4 vulnerabilities. Bulletin Breakdown: 1 bulletin is rated Critical, 2 are Important and 1 Moderate 2 vulnerabilities can lead to Remote Code Execution 1 vulnerability can lead to Elevation of Privilege 1 vulnerability can lead to Denial of Service &#160; The following [...]]]></description>
			<content:encoded><![CDATA[<p>This <strong>&#8216;Patch Tuesday&#8217; for November 2011, </strong>sees the release of<strong> 4 bulletins addressing 4 vulnerabilities.</strong></p>
<p>Bulletin Breakdown:</p>
<ul>
<li>1 bulletin is rated Critical, 2 are Important and 1 Moderate</li>
<li>2 vulnerabilities can lead to Remote Code Execution</li>
<li>1 vulnerability can lead to Elevation of Privilege</li>
<li>1 vulnerability can lead to Denial of Service</li>
</ul>
<p>&nbsp;</p>
<p>The following table summarises the security bulletins for this month in order of severity.</p>
<table class="default_table" width="100%" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top" width="25%"><strong>Bulletin ID</strong></td>
<td valign="top" width="25%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="25%"><strong>Restart Requirement</strong></td>
<td valign="top" width="25%"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 1</td>
<td valign="top" width="92"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank">Critical</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 2</td>
<td valign="top" width="92"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 3</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 4</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Moderate</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Denial of service</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing from the 8<sup>th</sup> of November.</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/11/07/november-2011-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Microsoft Reveals Windows 8 Details</title>
		<link>http://blog.ukfast.co.uk/2011/10/14/microsoft-reveals-windows-8-details/</link>
		<comments>http://blog.ukfast.co.uk/2011/10/14/microsoft-reveals-windows-8-details/#comments</comments>
		<pubDate>Fri, 14 Oct 2011 08:50:44 +0000</pubDate>
		<dc:creator>Alice Cullen</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8770</guid>
		<description><![CDATA[Microsoft has given us a sneak peek into a few details about its Windows 8 developments and revealed some improvements it has made to the new Task Manager. In the Building Windows 8 blog the week, group program manager Ryan Haveson explained that the team redesigned the Task Manager after assessing how people use the [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has given us a sneak peek into a few details about its Windows 8 developments and revealed some improvements it has made to the new Task Manager.</p>
<p>In the Building Windows 8 blog the week, group program manager Ryan Haveson explained that the team redesigned the Task Manager after assessing how people use the function. The main focus of the redevelopment is to optimise the areas that people use the most without compromising thier functionality.</p>
<p>The team&#8217;s research showed that most people are using only the first two tabs of the current Windows Task Manager for simply ending an application or process. Taking this into consideration, the revamped Task Manager for Windows 8 has a simplified version of the interface and the extra tabs have been removed. This has left the utility looking cleaner and simpler but still able to fulfill its purpose.</p>
<p>The new Task Manager makes it easier to identify each application in use on your system by grouping applications, background processes, and Windows processes. For processes that you’re unsure of, Windows 8 includes a menu optionwhere you can right click on the process to do a search on the web to learn more about it.</p>
<p>Another notable feature of the Windows 8 Task Manager is the addition of a heat map view making it easy to locate the apps that are misbehaving and taking up too much system resources. Apps or processes that are using resources above a certain threshold are also highlighted in this view.</p>
<div id="attachment_8773" class="wp-caption aligncenter" style="width: 310px"><a href="http://blog.ukfast.co.uk/wp-content/uploads/2011/10/7178.Processes_2D00_tab_2D00_of_2D00_Windows_2D00_8_2D00_Task_2D00_Manager_5F00_thumb_5F00_39244053.png"><img class="size-medium wp-image-8773" title="Windows 8 task manager" src="http://blog.ukfast.co.uk/wp-content/uploads/2011/10/7178.Processes_2D00_tab_2D00_of_2D00_Windows_2D00_8_2D00_Task_2D00_Manager_5F00_thumb_5F00_39244053-300x272.png" alt="" width="300" height="272" /></a><p class="wp-caption-text">Screenshot of the Windows 8 redeveloped task manager</p></div>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/10/14/microsoft-reveals-windows-8-details/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Zero-Day Security Intelligence Report</title>
		<link>http://blog.ukfast.co.uk/2011/10/13/8764/</link>
		<comments>http://blog.ukfast.co.uk/2011/10/13/8764/#comments</comments>
		<pubDate>Thu, 13 Oct 2011 18:16:18 +0000</pubDate>
		<dc:creator>Liz Walker</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8764</guid>
		<description><![CDATA[Microsoft has released its latest Security Intelligence Report. It focuses on zero-day exploitation and the risks Microsoft customers face from it. The analysis looked at threats detected by the Malicious Software Removal Tool (MSRT) during the first half of 2011. The key findings revealed that: Over one third of malware detections analysed were attributed to [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released its latest Security Intelligence Report. It focuses on zero-day exploitation and the risks Microsoft customers face from it.</p>
<p>The analysis looked at threats detected by the Malicious Software Removal Tool (MSRT) during the first half of 2011.</p>
<p>The key findings revealed that:</p>
<ul>
<li>Over one third of malware detections analysed were attributed to malicious software that misused the AutoRun feature in Windows</li>
<ul>
<li>These AutoRun threats were divided between those that spread via removable volumes (26 percent) and those that spread via network volumes (17 percent)</li>
<li>Microsoft took several steps to help protect customers; releasing an automatic update for XP and Vista in February to make the AutoRun feature more secure.</li>
</ul>
<li>Approximately six percent of the MSRT detections analyzed were attributed to exploits.</li>
<li>None of the top families in the MSRT were documented as using zero-day exploits in the period analysed.</li>
<li>Out of all the culnerability exploitation detected my the MMPC, less than one percent was zero-day exploit activity.</li>
</ul>
<div>Overall the vulnerability severity has gone down. Medium and high severity vulnerabilities were down 6.8 percent and low complexity vulnerabilities were down 41.2 percent from the previous 12 month period.</div>
<div>The most common types of exploits found were those targeting vulnerabilities in Oracle Java Runtime Environment, Java Virtual machine and Java SE. Java exploits were responsible for between one third and one half of all exploits observed in each of the four most recent quarters.</div>
<div>On an enterprise level, worm families accounted for the three most common malware families detected on domain-joined computers. Win32/Conficker and Win32/RealVNC were significantly more prevalent on domain-joined computers.</div>
<div>The volume of spam being blocked decreased dramatically over the past 12 months, mostly because 2 major botnets were taken down. Image only spam messages dropped to 3.1 percent of the total, down from 8.7 percent in 2010.</div>
<div>While financial sites have typically been the preferred target for phishers, the report found that it was social networks that had become the primary target &#8211; 83.8 percent of impressions in April. Financial institutions were the second most targeted.</div>
<div>In the report Microsoft makes strong recommendations on how organisations can protect themselves. Points include:</div>
<div>
<ul>
<li>minimise and monitor your attack surface</li>
<li>create a social engineering incident response plan</li>
<li>create a plan for addressing social engineering in your organisation</li>
<li>keep software up to date</li>
<li>drive awareness and train your organisation</li>
<li>encourage behaviour you want and enforce where necessary</li>
</ul>
<div>At a time when there is a lot of press on high profile hacks, this report shows how much progress is being made in reducing vulnerabilities and the success this is having. However it is clear that business owners still need to take a lot of the responsibility for protecting themselves.</div>
<div>If you would like to read the full report you can download it <a href="http://www.microsoft.com/security/sir/default.aspx">here</a>.</div>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/10/13/8764/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>October 2011 Microsoft Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/10/13/october-2011-microsoft-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/10/13/october-2011-microsoft-security-bulletin-release/#comments</comments>
		<pubDate>Thu, 13 Oct 2011 08:22:49 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8758</guid>
		<description><![CDATA[As mentioned in Octobers Advance notification post this month&#8217;s security bulletin releases are now confirmed to contain 8 bulletins addressing 23 vulnerabilities. The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided: Bulletin ID Bulletin Title and Executive Summary Maximum Severity [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a title="October 2011 Security Bulletin Release Advance Notification" href="http://blog.ukfast.co.uk/2011/10/07/october-2011-security-bulletin-release-advance-notification/">Octobers Advance notification</a> post this month&#8217;s security bulletin releases are now confirmed to contain <strong>8 bulletins addressing 23 vulnerabilities</strong>.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided:</p>
<table width="86%" border="1" cellspacing="0" cellpadding="0">
<thead>
<tr>
<td valign="top" width="9%"><strong>Bulletin ID</strong></td>
<td valign="top" width="43%"><strong>Bulletin Title and Executive Summary</strong></td>
<td valign="top" width="16%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="16%"><strong>Restart Requirement</strong></td>
<td valign="top" width="14%"><strong>Affected Software</strong></td>
</tr>
</thead>
<tbody>
<tr>
<td valign="top"><a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-078" target="_blank">MS11-078</a></td>
<td valign="top"><strong>Vulnerability in .NET Framework and Microsoft Silverlight Could Allow Remote Code Execution (2604930)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft .NET Framework and Microsoft Silverlight. The vulnerability could allow remote code execution on a client system if a user views a specially crafted Web page using a Web browser that can run XAML Browser Applications (XBAPs) or Silverlight applications. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. The vulnerability could also allow remote code execution on a server system running IIS, if that server allows processing ASP.NET pages and an attacker succeeds in uploading a specially crafted ASP.NET page to that server and then executes the page, as could be the case in a Web hosting scenario. This vulnerability could also be used by Windows .NET applications to bypass Code Access Security (CAS) restrictions.</td>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx" target="_blank">Critical</a></p>
<p>Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft .NET Framework, Microsoft Silverlight</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-081.mspx" target="_blank">MS11-081</a></td>
<td valign="top"><strong>Cumulative Security Update for Internet Explorer (2586448) </strong><br />
This security update resolves eight privately reported vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx" target="_blank">Critical</a></p>
<p>Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows, Internet Explorer</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-075.mspx" target="_blank">MS11-075</a></td>
<td valign="top"><strong>Vulnerability in Microsoft Active Accessibility Could Allow Remote Code Execution (2623699)</strong><br />
This security update resolves a privately reported vulnerability in the Microsoft Active Accessibility component. The vulnerability could allow remote code execution if an attacker convinces a user to open a legitimate file that is located in the same network directory as a specially crafted dynamic link library (DLL) file. Then, while opening the legitimate file, the Microsoft Active Accessibility component could attempt to load the DLL file and execute any code it contained. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open a document from this location that is then loaded by a vulnerable application.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></p>
<p>Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-076.mspx" target="_blank">MS11-076</a></td>
<td valign="top"><strong>Vulnerability in Windows Media Center Could Allow Remote Code Execution (2604926) </strong><br />
This security update resolves a publicly disclosed vulnerability in Windows Media Center. The vulnerability could allow remote code execution if an attacker convinces a user to open a legitimate file that is located in the same network directory as a specially crafted dynamic link library (DLL) file. Then, while opening the legitimate file, Windows Media Center could attempt to load the DLL file and execute any code it contained. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open a legitimate file.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></p>
<p>Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-077.mspx" target="_blank">MS11-077</a></td>
<td valign="top"><strong>Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Remote Code Execution (2567053)</strong><br />
This security update resolves four privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow remote code execution if a user opens a specially crafted font file (such as a .fon file) in a network share, a UNC or WebDAV location, or an e-mail attachment. For a remote attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open the specially crafted font file, or open the file as an e-mail attachment.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></p>
<p>Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-079.mspx" target="_blank">MS11-079</a></td>
<td valign="top"><strong>Vulnerabilities in Microsoft Forefront Unified Access Gateway Could Cause Remote Code Execution (2544641) </strong><br />
This security update resolves five privately reported vulnerabilities in Forefront Unified Access Gateway (UAG). The most severe of these vulnerabilities could allow remote code execution if a user visits an affected Web site using a specially crafted URL. However, an attacker would have no way to force users to visit such a Web site. Instead, an attacker would have to persuade users to visit the Web site, typically by getting them to click a link in an e-mail message or Instant Messenger message that takes users to the attacker&#8217;s Web site.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></p>
<p>Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Forefront United Access Gateway</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-080.mspx" target="_blank">MS11-080</a></td>
<td valign="top"><strong>Vulnerability in Ancillary Function Driver Could Allow Elevation of Privilege (2592799) </strong><br />
This security update resolves a privately reported vulnerability in the Microsoft Windows Ancillary Function Driver (AFD). The vulnerability could allow elevation of privilege if an attacker logs on to a user&#8217;s system and runs a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit the vulnerability.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></p>
<p>Elevation of Privilege</td>
<td valign="top">Requires Restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-082.mspx" target="_blank">MS11-082</a></td>
<td valign="top"><strong>VVulnerabilities in Host Integration Server Could Allow Denial of Service (2607670) </strong><br />
This security update resolves two publicly disclosed vulnerabilities in Host Integration Server. The vulnerabilities could allow denial of service if a remote attacker sends specially crafted network packets to a Host Integration Server listening on UDP port 1478 or TCP ports 1477 and 1478. Firewall best practices and standard default firewall configurations can help protect networks from attacks that originate outside the enterprise perimeter. Best practices recommend that systems that are connected to the Internet have a minimal number of ports exposed. In this case, the Host Integration Server ports should be blocked from the Internet.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></p>
<p>Denial of Service</td>
<td valign="top">May Require Restart</td>
<td valign="top">Microsoft Host Integration Server</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>So in summary, we are likely to see updates requiring reboots of servers this month. (As usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</p>
<p>MC.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/10/13/october-2011-microsoft-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>October 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/10/07/october-2011-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2011/10/07/october-2011-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Fri, 07 Oct 2011 14:03:37 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security bulletin release]]></category>
		<category><![CDATA[security updates]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8749</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for October 2011, sees the release of 8 bulletins addressing 23 vulnerabilities. Bulletin Breakdown: 2 bulletins are rated Critical, 6 are Important 6 vulnerabilities can lead to Remote Code Execution 1 vulnerability can lead to Elevation of Privilege 1 vulnerability can lead to Denial of Service The following table summarises the security [...]]]></description>
			<content:encoded><![CDATA[<p>This &#8216;<strong>Patch Tuesday&#8217; for October 2011, </strong>sees the release of<strong> 8 bulletins addressing 23 vulnerabilities.</strong></p>
<p><strong></strong><br />
Bulletin Breakdown:</p>
<ul>
<li>2 bulletins are rated Critical, 6 are Important</li>
<li>6 vulnerabilities can lead to Remote Code Execution</li>
<li>1 vulnerability can lead to Elevation of Privilege</li>
<li>1 vulnerability can lead to Denial of Service</li>
</ul>
<p>The following table summarises the security bulletins for this month in order of severity.</p>
<table width="533" border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top" width="81"><strong>Bulletin ID</strong></td>
<td valign="top" width="92"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="85"><strong>Restart Requirement</strong></td>
<td valign="top" width="80"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 1</td>
<td valign="top" width="92"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank">Critical</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft .NET Framework,<br />
Microsoft Silverlight</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 2</td>
<td valign="top" width="92"><a href="http://technet.microsoft.com/en-us/security/bulletin/rating" target="_blank">Critical</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows,<br />
Internet Explorer</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 3</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 4</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 5</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 6</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Forefront Unified Access Gateway</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 7</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 8</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Host Integration Server</td>
</tr>
<tr>
<td valign="top" width="92">Denial of Service</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing from the 11<sup>th</sup> of October.</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/10/07/october-2011-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>September 2011 Microsoft Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/09/14/september-2011-microsoft-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/09/14/september-2011-microsoft-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 14 Sep 2011 13:20:06 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8627</guid>
		<description><![CDATA[As mentioned in September&#8217;s Advance notification post this month&#8217;s security bulletin releases are now confirmed to contain 5 bulletins addressing 15 vulnerabilities, all of which have an important rating. Microsoft has recommended for all security updates to be installed asap. The following table shows affected software by bulletin and the likelihood of an Operating System [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a title="September 2011 Security Bulletin Release Advance Notification" href="http://blog.ukfast.co.uk/2011/09/09/8607/">September&#8217;s Advance notification</a> post this month&#8217;s security bulletin releases are now confirmed to contain <strong>5 bulletins addressing 15 vulnerabilities</strong>, all of which have an important rating. Microsoft has recommended for all security updates to be installed asap.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided:</p>
<table width="86%" border="1" cellspacing="0" cellpadding="0">
<thead>
<tr>
<td valign="top" width="9%"><strong>Bulletin ID</strong></td>
<td valign="top" width="43%"><strong>Bulletin Title and Executive Summary</strong></td>
<td valign="top" width="16%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="16%"><strong>Restart Requirement</strong></td>
<td valign="top" width="14%"><strong>Affected Software</strong></td>
</tr>
</thead>
<tbody>
<tr>
<td valign="top"><a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-070" target="_blank">MS11-070</a></td>
<td valign="top"><strong><strong>Vulnerability in WINS Could Allow Elevation of Privilege (2571621)</strong> </strong>This security update resolves a privately reported vulnerability in the Windows Internet Name Service (WINS). The vulnerability could allow elevation of privilege if a user received a specially crafted WINS replication packet on an affected system running the WINS service. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.</td>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx" target="_blank">Important<br />
</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-071.mspx" target="_blank">MS11-071</a></td>
<td valign="top"><strong><strong>Vulnerability in Windows Components Could Allow Remote Code Execution (2570947)</strong> </strong>This security update resolves a publicly disclosed vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a legitimate rich text format file (.rtf), text file (.txt), or Word document (.doc) that is located in the same network directory as a specially crafted dynamic link library (DLL) file. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx" target="_blank">Important</a>Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-072.mspx" target="_blank">MS11-072</a></td>
<td valign="top"><strong><strong>Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2587505)</strong> </strong>This security update resolves five privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. Installing and configuring Office File Validation (OFV) to prevent the opening of suspicious files blocks the attack vectors for exploiting the vulnerabilities described in CVE-2011-1986 and CVE-2011-1987.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a>Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office,<br />
Microsoft Server Software</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-073.mspx" target="_blank">MS11-073</a></td>
<td valign="top"><strong><strong>Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (2587634)</strong>  </strong>This security update resolves two privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Office file or if a user opens a legitimate Office file that is located in the same network directory as a specially crafted library file. An attacker who successfully exploited either of the vulnerabilities could gain the same user rights as the logged on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a>Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-074.mspx" target="_blank">MS11-074</a></td>
<td valign="top"><strong><strong>Vulnerabilities in Microsoft SharePoint Could Allow Elevation of Privilege (2451858)</strong> </strong>This security update resolves five privately reported vulnerabilities and one publicly disclosed vulnerability in Microsoft SharePoint and Windows SharePoint Services. The most severe vulnerabilities could allow elevation of privilege if a user clicked on a specially crafted URL or visited a specially crafted Web site. For the most severe vulnerabilities, Internet Explorer 8 and Internet Explorer 9 users browsing to a SharePoint site in the Internet Zone are at a reduced risk because, by default, the XSS Filter in Internet Explorer 8 and Internet Explorer 9 helps to block the attacks in the Internet Zone. The XSS Filter in Internet Explorer 8 and Internet Explorer 9, however, is not enabled by default in the Intranet Zone.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a>Elevation of Privilege</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office,<br />
Microsoft Server Software</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>So in summary, we are likely to see updates requiring reboots of servers this month. (As usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</p>
<p>MC.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/09/14/september-2011-microsoft-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>September 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/09/09/8607/</link>
		<comments>http://blog.ukfast.co.uk/2011/09/09/8607/#comments</comments>
		<pubDate>Fri, 09 Sep 2011 08:44:33 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security bulletin release]]></category>
		<category><![CDATA[security updates]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8607</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for September 2011, sees the release of 5 bulletins addressing 15 vulnerabilities: Bulletin Breakdown: All 5 bulletins are rated Important 3 vulnerabilities can lead to Remote Code Execution 2 vulnerabilities can lead to Elevation of Privilege The following table summarises the security bulletins for this month in order of severity. Bulletin ID [...]]]></description>
			<content:encoded><![CDATA[<p>This &#8216;<strong>Patch Tuesday&#8217; for September 2011, </strong>sees the release of<strong> 5 bulletins addressing 15 vulnerabilities:</strong><br />
Bulletin Breakdown:</p>
<ul>
<li>All 5 bulletins are rated Important</li>
<li>3 vulnerabilities can lead to Remote Code Execution</li>
<li>2 vulnerabilities can lead to Elevation of Privilege</li>
</ul>
<p>The following table summarises the security bulletins for this month in order of severity.</p>
<table width="533" border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top" width="81"><strong>Bulletin ID</strong></td>
<td valign="top" width="92"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="85"><strong>Restart Requirement</strong></td>
<td valign="top" width="80"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 1</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 2</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 3</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Office, Microsoft Server Software</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 4</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Office</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 5</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Office, Microsoft Server Software</td>
</tr>
<tr>
<td valign="top" width="92">Elevation of Privilege</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing from the 13<sup>th</sup> of September.</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/09/09/8607/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Kills DigiNotar</title>
		<link>http://blog.ukfast.co.uk/2011/09/07/microsoft-kills-diginotar/</link>
		<comments>http://blog.ukfast.co.uk/2011/09/07/microsoft-kills-diginotar/#comments</comments>
		<pubDate>Wed, 07 Sep 2011 14:16:13 +0000</pubDate>
		<dc:creator>Liz Walker</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8598</guid>
		<description><![CDATA[In July, DigiNotar, a Dutch company that supplies security certificates, had their servers hacked. As a result more than 500 SSL certificates were stolen and fake ones put in their place. Among the certificates stolen were ones belonging to intelligence services and to Google. DigiNotar was not aware of the hack for a month and [...]]]></description>
			<content:encoded><![CDATA[<p id="first_paragraph">In July, DigiNotar, a Dutch company that supplies security certificates, had their servers hacked. As a result more than 500 SSL certificates were stolen and fake ones put in their place.</p>
<p>Among the certificates stolen were ones belonging to intelligence services and to Google.</p>
<p>DigiNotar was not aware of the hack for a month and during this time the hackers used the fabricated SSL&#8217;s to spy on the Gmail accounts of 300,000 Iranians.</p>
<p>Although the identity of the hackers is unknown, security researchers believe the Iranian Government to be behind it as part of their attempts to listen in to the communications of activists and protesters.</p>
<p>As a result of this severe security breach, Microsoft yestrday updated Windows to block all SSL certificates issued by DigiNotar.</p>
<p>This update for Vista, Windows 7 and the much older XP means that anyone using Internet Explorer will be barred from reaching sites with SSL certificates issued by DigiNotar.</p>
<p>On Microsoft&#8217;s <a href="http://www.microsoft.com/technet/security/advisory/2607712.mspx">security advisory</a> they say &#8220;Microsoft is continuing to investigate this issue. Based on preliminary investigation, Microsoft is providing an update for all supported releases of Microsoft Windows that revokes the trust of the following DigiNotar root certificates by placing them into the Microsoft Untrusted Certificate Store&#8221;</p>
<p>Those in the Netherlands though will not see this update for another week</p>
<p>&#8220;At the explicit request of the Dutch government, Microsoft will delay deployment of this update in the Netherlands for one week to give the government time to replace certificates,&#8221; Dave Forstrom, a director in Microsoft&#8217;s Trustworthy Computing group, said in a blog post today. &#8220;Dutch customers who wish to install the update can do so by manually visiting Windows Update or following the instructions available at <a href="http://blogs.microsoft.nl/blogs/windows/archive/2011/09/06/software-update-vanwege-onbetrouwbare-certificaten-diginotar.aspx" target="new">www.microsoft.nl</a> once the security update is released worldwide.&#8221;</p>
<p>Google Chrome and Mozilla Firefox have already been updated to block all DigiNotar certificates. Google shipped a new version on Saturday while Mozilla pushed out the update today.</p>
<p>DigiNotar have enticed the wrath of Mozilla with this security breach. Johnathan Nightingale, director of Firefox engineering said in a blog post last Friday &#8221;This is not a temporary suspension, it is a complete removal from our trusted root program. Complete revocation of trust is a decision we treat with careful consideration, and employ as a last resort.&#8221;</p>
<p>Apple is the only large browser yet to mention blocking DigiNotar SSL&#8217;s and like Microsoft they have to update its operating system. When Comodo suffered a similar attack last March, Apple again were the slowest to block.</p>
<p>&nbsp;</p>
<p>It does seem like the writing is on the wall for DigiNotar though. The bad press received was one thing; the blocking by major browsers makes their future untenable.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/09/07/microsoft-kills-diginotar/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft to Power iCloud?</title>
		<link>http://blog.ukfast.co.uk/2011/09/07/microsoft-to-power-icloud/</link>
		<comments>http://blog.ukfast.co.uk/2011/09/07/microsoft-to-power-icloud/#comments</comments>
		<pubDate>Wed, 07 Sep 2011 09:51:05 +0000</pubDate>
		<dc:creator>Alice Cullen</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8590</guid>
		<description><![CDATA[Apple&#8217;s new cloud storage and service platform iCloud will be powered by Microsoft Azure and Amazon&#8217;s AWS according to Microsoft sources. The source, who is apparently &#8216;close to Microsoft&#8217;, told the Register that neither Microsoft nor Amazon can confirm the deal because both parties have signed a non-disclosure agreement. If the rumours prove to be [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.ukfast.co.uk/wp-content/uploads/2011/09/Microsoft-iCloud.jpg"><img class="size-medium wp-image-8591 aligncenter" title="Microsoft iCloud" src="http://blog.ukfast.co.uk/wp-content/uploads/2011/09/Microsoft-iCloud-300x300.jpg" alt="Microsoft are said to be powering the Apple iCloud along with Amazon" width="300" height="300" /></a></p>
<p>Apple&#8217;s new cloud storage and service platform iCloud will be powered by Microsoft Azure and Amazon&#8217;s AWS according to Microsoft sources.</p>
<p>The source, who is apparently &#8216;close to Microsoft&#8217;, told the Register that neither Microsoft nor Amazon can confirm the deal because both parties have signed a non-disclosure agreement.</p>
<p>If the rumours prove to be true, the deal with iCloud comes as a big win for Microsoft. Many would class it as the validation of Microsoft&#8217;s fledgling cloud service.</p>
<p>There have been many questions raised about how the iCloud will be able to run through Azure (which is run on Windows) and AWS (of which users are predominately Linux). There Register suggests that one way to manage this without having to manage different code bases would be to run iCloud on Windows on AWS.</p>
<p>This would then be an even bigger win for Microsoft as it would mean iCloud is not only running on Windows from Azure but also running on Windows while on Amazon.</p>
<p>The supposed deal does draw into question why Apple would build a $1bn data centre in Norht Carolina if it they are going to use another provider to power their cloud services?</p>
<p>The many Apple conspiracy theorists say that it is a (very expensive) scare-tactic to make us all think that Apple is plotting something huge and industry changing.</p>
<p>A plausible explanation is that Apple &#8211; having openly admitted that they &#8220;have a lot to learn about internet services” after the &#8216;stumbles&#8217; of iCloud predecessor MobileMe &#8211; are relying on more experienced companies to launch the service until they can get the hang of it.</p>
<p>Should such staunch rivals collaborate like this? Is iCloud now a bigger win for Microsoft than Apple? What do you think?</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/09/07/microsoft-to-power-icloud/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Looks to Crack Cloud Security</title>
		<link>http://blog.ukfast.co.uk/2011/08/11/microsoft-look-to-crack-cloud-security/</link>
		<comments>http://blog.ukfast.co.uk/2011/08/11/microsoft-look-to-crack-cloud-security/#comments</comments>
		<pubDate>Thu, 11 Aug 2011 16:16:28 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8481</guid>
		<description><![CDATA[Microsoft is looking to crack one of the key problems in cloud hosting; keeping data secure. Even though the technology offers many advantages, data security is one issue that is putting some companies off switching to the cloud. The team at Microsoft, however, has developed a technique that enables organisations to perform analysis on encrypted data without having [...]]]></description>
			<content:encoded><![CDATA[<h2><span class="Apple-style-span" style="font-size: 13px; font-weight: normal;">Microsoft is looking to crack one of the key problems in <a href="http://www.ukfast.co.uk/cloud-hosting.html">cloud hosting</a>; keeping data secure.</span></h2>
<p>Even though the technology offers many advantages, data security is one issue that is putting some companies off switching to the cloud.</p>
<p>The team at Microsoft, however, has developed a technique that enables organisations to perform analysis on encrypted data without having to decrypt – a move that will greatly improve the security of any data held in the cloud.</p>
<p>The technique, called homomorphic encryption, also ensures that the data emerges from the analysis fully decrypted.</p>
<p>In a paper written by Microsoft researchers Kristin Lauter,Vinod Vaikutanathan and Michael Naehrig, the research team point out that although there’s a need for encryption to meet the security concerns of customers it was hard to “ignore the elephant in the room, namely efficiency.” The researchers go on to point out that “all known fully homomorphic encryption schemes have a long way to go before they can be used in practice.”</p>
<p>The Microsoft team claims that it has solved some of the efficiency issues by using what they call a “somewhat” form of homomorphic encryption, which does not have the full capabilities of the technology but offers enough to be practical.</p>
<p>The researchers also state that they have demonstrated how the technology can be used in practical situations, for example, medical records &#8211; a clear example of where the Microsoft technology would have real practical use.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/08/11/microsoft-look-to-crack-cloud-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>August 2011 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/08/10/august-2011-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/08/10/august-2011-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 10 Aug 2011 13:53:22 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security bulletin release]]></category>
		<category><![CDATA[security updates]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8476</guid>
		<description><![CDATA[As mentioned in August&#8217;s  Advance notification post this month&#8217;s security bulletin releases are now confirmed to contain 13 bulletins addressing 22 vulnerabilities, two of which have a critical rating. Microsoft has recommended for all security updates to be installed asap. The following table shows affected software by bulletin and the likelihood of an Operating System [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a title="August 2011 Security Bulletin Release Advance Notification" href="http://blog.ukfast.co.uk/2011/08/05/august-2011-security-bulletin-release-advance-notification/">August&#8217;s  Advance notification</a> post this month&#8217;s security bulletin releases are now confirmed to contain <strong>13 bulletins addressing 22 vulnerabilities</strong>, two of which have a critical rating. Microsoft has recommended for all security updates to be installed asap.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided:</p>
<table width="86%" border="1" cellspacing="0" cellpadding="0">
<thead>
<tr>
<td valign="top" width="9%"><strong>Bulletin ID</strong></td>
<td valign="top" width="43%"><strong>Bulletin Title and Executive Summary</strong></td>
<td valign="top" width="16%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="16%"><strong>Restart Requirement</strong></td>
<td valign="top" width="14%"><strong>Affected Software</strong></td>
</tr>
</thead>
<tbody>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-057.mspx">MS11-057</a></td>
<td valign="top"><strong>Cumulative Security Update for Internet Explorer (2559049)</strong><br />
This security update resolves five privately reported vulnerabilities and two publicly disclosed vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a><br />
Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows, Internet Explorer</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-058.mspx">MS11-058</a></td>
<td valign="top"><strong>Vulnerabilities in DNS Server Could Allow Remote Code Execution (2562485) </strong><br />
This security update resolves two privately reported vulnerabilities in Windows DNS server. The more severe of these vulnerabilities could allow remote code execution if an attacker registers a domain, creates an NAPTR DNS resource record, and then sends a specially crafted NAPTR query to the target DNS server. Servers that do not have the DNS role enabled are not at risk.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a><br />
Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-059.mspx">MS11-059</a></td>
<td valign="top"><strong>Vulnerability in Data Access Components Could Allow Remote Code Execution (2560656)</strong><br />
This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a legitimate Excel file (such as a .xlsx file) that is located in the same network directory as a specially crafted library file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-060.mspx">MS11-060</a></td>
<td valign="top"><strong>Vulnerabilities in Microsoft Visio Could Allow Remote Code Execution (2560978) </strong><br />
This security update resolves two privately reported vulnerabilities in Microsoft Visio. The vulnerabilities could allow remote code execution if a user opens a specially crafted Visio file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-061.mspx">MS11-061</a></td>
<td valign="top"><strong>Vulnerability in Remote Desktop Web Access Could Allow Elevation of Privilege (2546250)</strong><br />
This security update resolves a privately reported vulnerability in Remote Desktop Web Access. The vulnerability is a cross-site scripting (XSS) vulnerability that could allow elevation of privilege, enabling an attacker to execute arbitrary commands on the site in the context of the target user. The XSS Filter in Internet Explorer 8 and Internet Explorer 9 prevents this attack for its users when browsing to a Remote Desktop Web Access server in the Internet Zone. The XSS Filter in Internet Explorer 8 and Internet Explorer 9 is not enabled by default in the Intranet Zone.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-062.mspx">MS11-062</a></td>
<td valign="top"><strong>Vulnerability in Remote Access Service NDISTAPI Driver Could Allow Elevation of Privilege (2566454)</strong><br />
This security update resolves a privately reported vulnerability in all supported editions of Windows XP and Windows Server 2003. This security update is rated Important for all supported editions of Windows XP and Windows Server 2003. Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 are not affected by the vulnerability.<br />
The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application designed to exploit the vulnerability and take complete control over the affected system. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-063.mspx">MS11-063</a></td>
<td valign="top"><strong>Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (2567680) </strong><br />
This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application designed to send a device event message to a higher-integrity process. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-064.mspx">MS11-064</a></td>
<td valign="top"><strong>Vulnerabilities in TCP/IP Stack Could Allow Denial of Service (2563894) </strong><br />
This security update resolves two privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow denial of service if an attacker sends a sequence of specially crafted Internet Control Message Protocol (ICMP) messages to a target system or sends a specially crafted URL request to a server that is serving Web content and has the URL-based Quality of Service (QoS) feature enabled.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Denial of Service</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-065.mspx">MS11-065</a></td>
<td valign="top"><strong>Vulnerability in Remote Desktop Protocol Could Allow Denial of Service (2570222) </strong><br />
This security update resolves a privately reported vulnerability in the Remote Desktop Protocol. The vulnerability could allow denial of service if an affected system received a sequence of specially crafted RDP packets. Microsoft has also received reports of limited, targeted attacks attempting to exploit this vulnerability. By default, the Remote Desktop Protocol (RDP) is not enabled on any Windows operating system.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Denial of Service</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-066.mspx">MS11-066</a></td>
<td valign="top"><strong>Vulnerability in Microsoft Chart Control Could Allow Information Disclosure (2567943) </strong><br />
This security update resolves a privately reported vulnerability in ASP.NET Chart controls. The vulnerability could allow information disclosure if an attacker sent a specially crafted GET request to an affected server hosting the Chart controls. Note that this vulnerability would not allow an attacker to execute code or to elevate the attacker&#8217;s user rights directly, but it could be used to retrieve information that could be used to further compromise the affected system. Only web applications using Microsoft Chart Control are affected by this issue. Default installations of the .NET Framework are not affected.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Information Disclosure</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft .NET Framework, Microsoft Developer Tools</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-067.mspx">MS11-067</a></td>
<td valign="top"><strong>Vulnerability in Microsoft Report Viewer Could Allow Information Disclosure (2578230) </strong><br />
This security update resolves a privately reported vulnerability in Microsoft Report Viewer. The vulnerability could allow information disclosure if a user views a specially crafted Web page. In all cases, however, an attacker would have no way to force a user to visit the Web site. Instead, an attacker would have to persuade a user to visit the Web site, typically by getting them to click a link in an e-mail message or Instant Messenger message that takes the user to the vulnerable Web site.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Information Disclosure</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Developer Tools</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-068.mspx">MS11-068</a></td>
<td valign="top"><strong>Vulnerability in Windows Kernel Could Allow Denial of Service (2556532) </strong><br />
This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if a user visits a network share (or visits a Web site that points to a network share) containing a specially crafted file. In all cases, however, an attacker would have no way to force a user to visit such a network share or Web site. Instead, an attacker would have to convince a user to do so, typically by getting the user to click a link in an e-mail message or Instant Messenger message.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Moderate</a><br />
Denial of Service</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-069.mspx">MS11-069</a></td>
<td valign="top"><strong>Vulnerability in .NET Framework Could Allow Information Disclosure (2567951) </strong><br />
This security update resolves a privately reported vulnerability in Microsoft .NET Framework. The vulnerability could allow information disclosure if a user views a specially crafted Web page using a Web browser that can run XAML Browser Applications (XBAPs). In a Web-based attack scenario, an attacker could host a Web site that contains a Web page that is used to exploit this vulnerability. In addition, compromised Web sites and Web sites that accept or host user-provided content or advertisements could contain specially crafted content that could exploit this vulnerability. In all cases, however, an attacker would have no way to force users to visit these Web sites. Instead, an attacker would have to convince users to visit the Web site, typically by getting them to click a link in an e-mail message or Instant Messenger message that takes users to the attacker&#8217;s Web site. This vulnerability could also be used by Windows .NET applications to bypass Code Access Security (CAS) restrictions.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Moderate</a><br />
Information Disclosure</td>
<td valign="top">May Require restart</td>
<td valign="top">Microsoft .NET Framework</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>So in summary, we are likely to see updates requiring reboots of servers this month. (As usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)<br />
MC.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/08/10/august-2011-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>August 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/08/05/august-2011-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2011/08/05/august-2011-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Fri, 05 Aug 2011 08:14:59 +0000</pubDate>
		<dc:creator>Liz Walker</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security bulletin release]]></category>
		<category><![CDATA[security updates]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8413</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for August 2011, sees the release of 13 bulletins addressing 22 vulnerabilities: Bulletin Breakdown: 2 bulletins are rated Critical 9 bulletins are rated Important 2 bulletins are rated Moderate 4 vulnerabilities can lead to Remote Code Execution 3 vulnerabilities can lead to Elevation of Privilege 3 vulnerabilities can lead to Denial of [...]]]></description>
			<content:encoded><![CDATA[<p>This &#8216;<strong>Patch Tuesday&#8217; for August 2011, </strong>sees the release of<strong> 13 bulletins addressing 22 vulnerabilities:</strong><br />
Bulletin Breakdown:</p>
<ul>
<li>2 bulletins are rated Critical</li>
<li>9 bulletins are rated Important</li>
<li>2 bulletins are rated Moderate</li>
<li>4 vulnerabilities can lead to Remote Code Execution</li>
<li>3 vulnerabilities can lead to Elevation of Privilege</li>
<li>3 vulnerabilities can lead to Denial of Service</li>
<li>3 vulnerabilities can lead to Information Disclosure</li>
</ul>
<p>The following table summarises the security bulletins for this month in order of severity.</p>
<table width="533" border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top" width="81"><strong>Bulletin ID</strong></td>
<td valign="top" width="92"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="85"><strong>Restart Requirement</strong></td>
<td valign="top" width="80"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 1</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows, Internet Explorer</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 2</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 3</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">*Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 4</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Office</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 5</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 6</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 7</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 8</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Denial of Service</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 9</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Denial of Service</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 10</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft .Net Framework, Microsoft Developer Tools</td>
</tr>
<tr>
<td valign="top" width="92">Information Disclosure</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 11</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Developer Tools</td>
</tr>
<tr>
<td valign="top" width="92">Information Disclosure</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 12</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Moderate</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="80">Microsoft .Net Framework</td>
</tr>
<tr>
<td valign="top" width="92">Information Disclosure</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 13</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Moderate</a></td>
<td rowspan="2" valign="top" width="85">Requires restart</td>
<td rowspan="2" valign="top" width="80">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Denial of Service</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing from the 9<sup>th</sup> of August.</p>
<p>The &#8216;<a href="http://www.microsoft.com/technet/security/bulletin/ms11-aug.mspx">Microsoft Security Bulletin Notification for August 2011</a>&#8216; page should be referenced for detailed information on how these updates are to affect your servers or solutions when released on 9th August (as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/server-maintenance.html">updates being applied automatically </a>unless you have opted out of this service.)</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/08/05/august-2011-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Microsoft &#8216;All In&#8217; Cloud at WPC</title>
		<link>http://blog.ukfast.co.uk/2011/07/13/microsoft-all-in-cloud-at-wpc/</link>
		<comments>http://blog.ukfast.co.uk/2011/07/13/microsoft-all-in-cloud-at-wpc/#comments</comments>
		<pubDate>Wed, 13 Jul 2011 16:45:44 +0000</pubDate>
		<dc:creator>Alice Cullen</dc:creator>
				<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[UKFast]]></category>
		<category><![CDATA[Video]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8337</guid>
		<description><![CDATA[At the Worldwide Partner Conference (WPC) in LA this week, Microsoft revealed that its strategy for the next year is focused around cloud computing. The announcement will come as little surprise to many as Microsoft has been moving further into cloud technologies more and more over the past five years and few could forget last [...]]]></description>
			<content:encoded><![CDATA[<p>At the Worldwide Partner Conference (WPC) in LA this week, Microsoft revealed that its strategy for the next year is focused around cloud computing.</p>
<p>The announcement will come as little surprise to many as Microsoft has been moving further into cloud technologies more and more over the past five years and few could forget last year&#8217;s &#8220;all-in&#8221; cloud speech.</p>
<p>At this year&#8217;s WPC, senior leaders from the company discussed how Microsoft&#8217;s partners can benefit from the transition to cloud computing by helping customers to improve agility, focus on business goals and reduce costs.</p>
<p>Satya Nadella, president of the Server and Tools Business at Microsoft, said: “Cloud computing is as big a transformation as we have ever seen.</p>
<p>&#8220;By betting on Microsoft&#8217;s comprehensive approach to cloud computing, partners can embrace this transformation and build strong and vibrant practices that will advance how business gets done.&#8221;</p>
<p>Microsoft CEO Steve Ballmer confessed that the company declaring itself &#8220;all in&#8221; on the cloud at last year’s WPC was scary stuff.</p>
<p>He said: &#8220;Well why was last year scary? Last year I basically said at this meeting, &#8216;We&#8217;re all-in on the cloud, 100 percent, and we need partners who want to come with us.&#8217;</p>
<p>&#8220;It doesn&#8217;t mean that the business has all transitioned in the last 12-month period of time, but we&#8217;re all in. It is where things are going and we need you to decide whether you&#8217;re coming with us. So, to see 15,000 people here at the STAPLES Centre coming with us, pushing to the cloud, pushing Windows Azure, pushing Office 365, that to me is exciting after me being a little nervous last year that some of you might say, hey, we can&#8217;t quite be all in the cloud.&#8221;</p>
<p>At UKFast we&#8217;ve felt the full force of Microsoft&#8217;s push into the cloud for the last few years. Back in 2009 we developed the first large scale cloud based on Hyper-V technologies. Our team also worked with Microsoft on the development of their own cloud in the UK.</p>
<p>We were also recently chosen by the Microsoft cloud team as one of two partners to make video promotions around the cloud. You can see the results on <a title="Microsoft and UKFast Cloud video" href="http://www.microsoft.com/showcase/en/gb/details/047f20cc-7d19-480d-a7c7-d98ea649f672">Microsoft’s site</a> or right here on our <a title="UKFast and Microsoft Cloud Video" href="http://ukfast.tv/watch/microsoft-cloud.html" target="_blank">own</a>.</p>
<p>Back at the conference Microsoft also hinted at the new, much-anticipated, Windows 8. Tami Reller, leader of business and marketing for Microsoft Windows revealed: “We designed Windows 8 from the ground up to be excellent for touch-only tablets – and to work with the keyboard and mouse.”</p>
<p>The release date for Windows 8 is scheduled in for Autumn next year but whispers on the grapevine have suggested the launch may come as early as July 2012.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/07/13/microsoft-all-in-cloud-at-wpc/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>July 2011 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/07/13/july-2011-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/07/13/july-2011-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 13 Jul 2011 12:41:27 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8351</guid>
		<description><![CDATA[As mentioned in July&#8217;s Advance notification post this month&#8217;s security bulletin releases, are now confirmed to contain 4 bulletins addressing 22 vulnerabilities, one of which has a critical rating, Microsoft has recommended for all security updates to be installed asap. The remaining three all have been rated as important bulletins. This month sees a light [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a title="July 2011 Security Bulletin Release Advance Notification" href="../2011/07/06/july-2011-security-bulletin-release-advance-notification/">July&#8217;s Advance notification </a> post this month&#8217;s security bulletin releases, are now confirmed to contain <strong>4 bulletins addressing 22 vulnerabilities</strong>, one of which has a critical rating, Microsoft has recommended for all security updates to be installed asap. The remaining three all have been rated as important bulletins.</p>
<p>This month sees a light bulletin release from Microsoft covering a small range of affected products including</p>
<ul>
<li>All supported Microsoft operating systems</li>
<li>Microsoft Visio 2003</li>
</ul>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided:</p>
<table width="86%" border="1" cellspacing="0" cellpadding="0">
<thead>
<tr>
<td valign="top" width="9%"><strong>Bulletin ID</strong></td>
<td valign="top" width="43%"><strong>Bulletin Title and Executive Summary</strong></td>
<td valign="top" width="16%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="16%"><strong>Restart Requirement</strong></td>
<td valign="top" width="14%"><strong>Affected Software</strong></td>
</tr>
</thead>
<tbody>
<tr>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=217102">MS11-053</a></td>
<td valign="top"><strong>Vulnerability in Bluetooth Stack Could Allow Remote Code Execution (2566220)</strong>This security update resolves a privately reported vulnerability in the Windows Bluetooth Stack. The vulnerability could allow remote code execution if an attacker sent a series of specially crafted Bluetooth packets to an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. This vulnerability only affects systems with Bluetooth capability.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a><br />
Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=220172">MS11-054</a></td>
<td valign="top"><strong>Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege (2555917)</strong>This security update resolves 15 privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow elevation of privilege if an attacker logged on locally and ran a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit these vulnerabilities.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=217465">MS11-056</a></td>
<td valign="top"><strong>Vulnerabilities in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (2507938) </strong>This security update resolves five privately reported vulnerabilities in the Microsoft Windows Client/Server Run-time Subsystem (CSRSS). The vulnerabilities could allow elevation of privilege if an attacker logs on to a user&#8217;s system and runs a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit the vulnerabilities.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=220276">MS11-055</a></td>
<td valign="top"><strong>Vulnerability in Microsoft Visio Could Allow Remote Code Execution (2560847) </strong>This security update resolves a publicly disclosed vulnerability in Microsoft Visio. The vulnerability could allow remote code execution if a user opens a legitimate Visio file that is located in the same network directory as a specially crafted library file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>MS11-053 &#8211; Critical</p>
<p>This new security bulletin addresses one vulnerability in the Bluetooth stack for Windows Vista and Windows 7 and does not apply to Server editions (2003 or 2008). An attacker in the same vicinity of a vulnerable machine with Bluetooth enabled could result in an attacker sending malicious Bluetooth packets.  This could result in remote code execution.</p>
<p>If you have mobile users working outside of your office environment using Windows Vista or Windows 7, you will want to look at patching these machines as soon as possible.</p>
<p>Something of note with regards to this security update. Microsoft has reported and are releasing a non-security patch this month to coincide with this security bulletin. From testing occasionally on Windows 7 systems the update fails to install the windows drivers if you are using windows update. Microsoft are fixing issues with the User-mode Plug-and-Play (UMPnP) manager stack and as a result Microsoft will be offering a child-update within MS11-053. If the security update noticed the non-security update is not installed on the system, the non-security update will be deployed to the system first. This will prompt a reboot of the system, after the reboot the security update will then be offered and installed. This scenario will result in a longer patch deployment and as previously mentioned only effects desktop based operating systems and not Server editions.</p>
<p>&nbsp;</p>
<p>MS11-055 &#8211; Important</p>
<p>The DLL preloading issue that Microsoft has been addressing over the past year appears to be back again and this important security update resolves 15 privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow elevation of privilege if an attacker logged on locally and ran a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit these vulnerabilities.</p>
<p>&nbsp;</p>
<p>This update applies to all supported desktops and server editions including Windows XP SP3, Windows Vista, Windows 7 and Server 2003 and Server 2008</p>
<p>&nbsp;</p>
<p>MS11-054 &#8211; Important</p>
<p>This security update addresses 15 vulnerabilities in the Windows Kernel-Mode Drivers.  Which at first glance, the number of vulnerabilities addressed in this single bulletin naturally raises concerns.  All of the vulnerabilities addressed in this bulletin are however related and  an attacker must first have access to a system before they can actually exploit the vulnerability.</p>
<p>&nbsp;</p>
<p>This update applies to all supported desktops and server editions including Windows XP SP3, Windows Vista, Windows 7 and Server 2003 and Server 2008</p>
<p>&nbsp;</p>
<p>MS11-056 &#8211; Important</p>
<p>This security update addresses 5 vulnerabilities in the Windows Client/Server Run-time Subsystem on all supported Microsoft operating systems.  Like MS11-054, all of the vulnerabilities are related and again This bulletin also requires for an attacker to first have access to a system before they can exploit the vulnerability.</p>
<p>Please click the following link to view <a href="http://blogs.technet.com/cfs-filesystemfile.ashx/__key/communityserver-blogs-components-weblogfiles/00-00-00-45-71/7418.201107_2D00_deployment.png">Microsoft’s deployment priority guidance</a> which assists in deployment planning. You can also follow this link to view the <a href="http://blogs.technet.com/cfs-filesystemfile.ashx/__key/communityserver-blogs-components-weblogfiles/00-00-00-45-71/7367.201107_2D00_severity_2D00_xi.png">risk and impact graph</a> to visually see an aggregate view of this month’s severity and exploitability index.).</p>
<p>So in summary, we are likely to see updates requiring reboots of servers this month. (as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)<br />
MC.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/07/13/july-2011-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>July 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/07/06/july-2011-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2011/07/06/july-2011-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Wed, 06 Jul 2011 12:36:44 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[patch tuesday]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8341</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for July 2011, sees the release of 4 bulletins addressing 22 vulnerabilities: Bulletin Breakdown: 1 bulletin is rated Critical 3 bulletins are rated Important 2 vulnerabilities can lead to Remote Code Execution 2 vulnerabilities can lead to Elevation of Privilege The following table summarizes the security bulletins for this month in order [...]]]></description>
			<content:encoded><![CDATA[<p>This &#8216;<strong>Patch Tuesday&#8217; for July 2011, </strong>sees the release of<strong> 4 bulletins addressing 22 vulnerabilities:</strong><br />
Bulletin Breakdown:</p>
<ul>
<li>1 bulletin is rated Critical</li>
<li>3 bulletins are rated Important</li>
<li>2 vulnerabilities can lead to Remote Code Execution</li>
<li>2 vulnerabilities can lead to Elevation of Privilege</li>
</ul>
<p>The following table summarizes the security bulletins for this month in order of severity.</p>
<table width="86%" border="1" cellspacing="0" cellpadding="0">
<thead>
<tr>
<td valign="top" width="9%"><strong>Bulletin ID</strong></td>
<td valign="top" width="43%"><strong>Bulletin Title and Executive Summary</strong></td>
<td valign="top" width="16%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="16%"><strong>Restart Requirement</strong></td>
<td valign="top" width="14%"><strong>Affected Software</strong></td>
</tr>
</thead>
<tbody>
<tr>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=217102">MS11-053</a></td>
<td valign="top"><strong>Vulnerability in Bluetooth Stack Could Allow Remote Code Execution (2566220)</strong>This security update resolves a privately reported vulnerability in the Windows Bluetooth Stack. The vulnerability could allow remote code execution if an attacker sent a series of specially crafted Bluetooth packets to an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. This vulnerability only affects systems with Bluetooth capability.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a><br />
Remote Code Execution</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=220172">MS11-054</a></td>
<td valign="top"><strong>Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege (2555917)</strong>This security update resolves 15 privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow elevation of privilege if an attacker logged on locally and ran a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit these vulnerabilities.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=217465">MS11-056</a></td>
<td valign="top"><strong>Vulnerabilities in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (2507938) </strong>This security update resolves five privately reported vulnerabilities in the Microsoft Windows Client/Server Run-time Subsystem (CSRSS). The vulnerabilities could allow elevation of privilege if an attacker logs on to a user&#8217;s system and runs a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit the vulnerabilities.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td valign="top">Requires restart</td>
<td valign="top">Microsoft Windows</td>
</tr>
<tr>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=220276">MS11-055</a></td>
<td valign="top"><strong>Vulnerability in Microsoft Visio Could Allow Remote Code Execution (2560847) </strong>This security update resolves a publicly disclosed vulnerability in Microsoft Visio. The vulnerability could allow remote code execution if a user opens a legitimate Visio file that is located in the same network directory as a specially crafted library file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td valign="top"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td valign="top">May require restart</td>
<td valign="top">Microsoft Office</td>
</tr>
</tbody>
</table>
<p>&nbsp;</p>
<p>This month sees a relatively light patch Tuesday in comparison to recent months from Microsoft</p>
<p>&nbsp;</p>
<p>The full list of software affected by these updates is:</p>
<p>&nbsp;</p>
<ul>
<li>All supported Microsoft operating systems</li>
<li>Microsoft Visio 2003</li>
</ul>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing from the 13<sup>th</sup> of July.</p>
<p>The ‘<a href="http://www.microsoft.com/technet/security/bulletin/ms11-jul.mspx">Microsoft Security Bulletin Notification for July 2011</a>‘ page should be referenced for detailed information on how these updates are to affect your servers or solutions when released on 15th June (as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/server-maintenance.html">updates being applied automatically </a>unless you have opted out of this service.)<br />
MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/07/06/july-2011-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>June 2011 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/06/15/june-2011-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/06/15/june-2011-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 15 Jun 2011 14:11:09 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security updates]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8235</guid>
		<description><![CDATA[As mentioned in June’s Advance notification post this month’s security bulletin releases, are now confirmed to be 16 security bulletins, addressing 34 vulnerabilities, nine of which have a critical rating with four of these critical bulletins listed as Top Priorities. The remaining seven all have been rated as important bulletins. This month again sees a [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a title="June 2011 Security Bulletin Release Advance Notification" href="http://blog.ukfast.co.uk/2011/06/10/june-2011-security-bulletin-release-advance-notification/">June’s Advance notification</a> post this month’s security bulletin releases, are now confirmed to be <strong>16 security bulletins</strong>,<strong> addressing 34 vulnerabilities</strong>, nine of which have a critical rating with four of these critical bulletins listed as Top Priorities. The remaining seven all have been rated as important bulletins.</p>
<p>This month again sees a very large bulletin release from Microsoft covering a large range of affected products including</p>
<p>Windows (XP, Vista, Windows 7, Server 2003 and Server 2008 (including R2))<br />
Office<br />
Internet Explorer (6, 7, 8 and 9)<br />
.NET<br />
SQL (2005 and 2008)<br />
Visual Studios<br />
ISA Server<br />
and Silverlight.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided:</p>
<table border="1" cellspacing="0" cellpadding="0" width="600" height="110">
<tbody>
<tr>
<td width="75" valign="top"><strong>Bulletin ID</strong></td>
<td width="200" valign="top"><strong>Bulletin Title and Executive Summary</strong></td>
<td width="92" valign="top"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td width="85" valign="top"><strong>Restart Requirement</strong></td>
<td width="64" valign="top"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-038.mspx" target="_blank">MS11-038</a></td>
<td width="200" valign="top"><strong>Vulnerability in OLE Automation Could Allow Remote Code Execution (2476490) </strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in Microsoft Windows Object Linking and Embedding (OLE) Automation. The vulnerability could allow remote code execution if a user visits a Web site containing a specially crafted Windows Metafile (WMF) image. In all cases, however, an attacker would have no way to force users to visit such a Web site. Instead, an attacker would have to convince users to visit a malicious Web site, typically by getting them to click a link in an e-mail message or Instant Messenger request.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-039.mspx" target="_blank">MS11-039</a></td>
<td width="200" valign="top"><strong>Vulnerability in .NET Framework and Microsoft Silverlight Could Allow Remote Code Execution (2514842)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">May Require Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows, Microsoft .NET Framework, Microsoft Silverlight</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in Microsoft .NET Framework and Microsoft Silverlight. The vulnerability could allow remote code execution on a client system if a user views a specially crafted Web page using a Web browser that can run XAML Browser Applications (XBAPs) or Silverlight applications. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. The vulnerability could also allow remote code execution on a server system running IIS, if that server allows processing ASP.NET pages and an attacker succeeds in uploading a specially crafted ASP.NET page to that server and then executes the page, as could be the case in a Web hosting scenario. This vulnerability could also be used by Windows .NET applications to bypass Code Access Security (CAS) restrictions.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-040.mspx" target="_blank">MS11-040</a></td>
<td width="200" valign="top"><strong>Vulnerability in Threat Management Gateway Firewall Client Could Allow Remote Code Execution (2520426)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Forefront Threat Management Gateway</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in the Microsoft Forefront Threat Management Gateway (TMG) 2010 Client, formerly named the Microsoft Forefront Threat Management Gateway Firewall Client. The vulnerability could allow remote code execution if an attacker leveraged a client computer to make specific requests on a system where the TMG firewall client is used.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-041.mspx" target="_blank">MS11-041</a></td>
<td width="200" valign="top"><strong>Vulnerability in Windows Kernel-Mode Drivers Could Allow Remote Code Execution (2525694)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user visits a network share (or visits a web site that points to a network share) containing a specially crafted OpenType font (OTF). In all cases, however, an attacker would have no way to force a user to visit such a web site or network share. Instead, an attacker would have to convince a user to visit the web site or network share, typically by getting them to click a link in an e-mail message or Instant Messenger message.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-042.mspx" target="_blank">MS11-042</a></td>
<td width="200" valign="top"><strong>Vulnerabilities in Distributed File System Could Allow Remote Code Execution (2535512)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves two privately reported vulnerabilities in the Microsoft Distributed File System (DFS). The more severe of these vulnerabilities could allow remote code execution when an attacker sends a specially crafted DFS response to a client-initiated DFS request. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control of an affected system. Firewall best practices and standard default firewall configurations can help protect networks from attacks that originate outside the enterprise perimeter. Best practices recommend that systems that are connected to the Internet have a minimal number of ports exposed.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-043.mspx" target="_blank">MS11-043</a></td>
<td width="200" valign="top"><strong>Vulnerability in SMB Client Could Allow Remote Code Execution (2536276)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker sent a specially crafted SMB response to a client-initiated SMB request. To exploit the vulnerability, an attacker must convince the user to initiate an SMB connection to a specially crafted SMB server.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-044.mspx" target="_blank">MS11-044</a></td>
<td width="200" valign="top"><strong>Vulnerability in .NET Framework Could Allow Remote Code Execution (2538814)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">May Require Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows, Microsoft .NET Framework</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a publicly disclosed vulnerability in Microsoft .NET Framework. The vulnerability could allow remote code execution on a client system if a user views a specially crafted Web page using a Web browser that can run XAML Browser Applications (XBAPs). Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. The vulnerability could also allow remote code execution on a server system running IIS, if that server allows processing ASP.NET pages and an attacker succeeds in uploading a specially crafted ASP.NET page to that server and then executes the page, as could be the case in a Web hosting scenario. This vulnerability could also be used by Windows .NET applications to bypass Code Access Security (CAS) restrictions.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-050.mspx" target="_blank">MS11-050</a></td>
<td width="200" valign="top"><strong>Cumulative Security Update for Internet Explorer (2530548)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows, Internet Explorer</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves eleven privately reported vulnerabilities in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-052.mspx" target="_blank">MS11-052</a></td>
<td width="200" valign="top"><strong>Vulnerability in Vector Markup Language Could Allow Remote Code Execution (2544521)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="top">May Require Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows, Internet Explorer</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in the Microsoft implementation of Vector Markup Language (VML). This security update is rated Critical for Internet Explorer 6, Internet Explorer 7, and Internet Explorer 8 on Windows clients; and Moderate for Internet Explorer 6, Internet Explorer 7, and Internet Explorer 8 on Windows servers. Internet Explorer 9 is not affected by the vulnerability.<br />
The vulnerability could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-037.mspx" target="_blank">MS11-037</a></td>
<td width="200" valign="top"><strong>Vulnerability in MHTML Could Allow Information Disclosure (2544893)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="top">May Require Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a publicly disclosed vulnerability in the MHTML protocol handler in Microsoft Windows. The vulnerability could allow information disclosure if a user opens a specially crafted URL from an attacker&#8217;s Web site. An attacker would have to convince the user to visit the Web site, typically by getting them to follow a link in an e-mail message or Instant Messenger message.</td>
<td width="92" valign="top">Information Disclosure</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-045.mspx" target="_blank">MS11-045</a></td>
<td width="200" valign="top"><strong>Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2537146)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="top">May Require Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Office</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves eight privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. Installing and configuring Office File Validation (OFV) to prevent the opening of suspicious files blocks the attack vectors for exploiting the vulnerabilities described in CVE-2011-1272, CVE-2011-1273, and CVE-2011-1279. Microsoft Excel 2010 is only affected by CVE-2011-1273 described in this bulletin. The automated Microsoft Fix it solution, &#8220;Disable Edit in Protected View for Excel 2010,&#8221; available in Microsoft Knowledge Base Article 2501584, blocks the attack vectors for exploiting CVE-2011-1273.</td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-046.mspx" target="_blank">MS11-046</a></td>
<td width="200" valign="top"><strong>Vulnerability in Ancillary Function Driver Could Allow Elevation of Privilege (2503665)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a publicly disclosed vulnerability in the Microsoft Windows Ancillary Function Driver (AFD). The vulnerability could allow elevation of privilege if an attacker logs on to a user&#8217;s system and runs a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit the vulnerability.</td>
<td width="92" valign="top">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-047.mspx" target="_blank">MS11-047</a></td>
<td width="200" valign="top"><strong>Vulnerability in Hyper-V Could Allow Denial of Service (2525835)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in Windows Server 2008 Hyper-V and Windows Server 2008 R2 Hyper-V. The vulnerability could allow denial of service if a specially crafted packet is sent to the VMBus by an authenticated user in one of the guest virtual machines hosted by the Hyper-V server. An attacker must have valid logon credentials and be able to send specially crafted content from a guest virtual machine to exploit this vulnerability. The vulnerability could not be exploited remotely or by anonymous users.</td>
<td width="92" valign="top">Denial of Service</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-048.mspx" target="_blank">MS11-048</a></td>
<td width="200" valign="top"><strong>Vulnerability in SMB Server Could Allow Denial of Service (2536275)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if an attacker created a specially crafted SMB packet and sent the packet to an affected system. Firewall best practices and standard default firewall configurations can help protect networks from attacks originating outside the enterprise perimeter that would attempt to exploit this vulnerability.</td>
<td width="92" valign="top">Denial of Service</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-049.mspx" target="_blank">MS11-049</a></td>
<td width="200" valign="top"><strong>Vulnerability in the Microsoft XML Editor Could Allow Information Disclosure (2543893)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="top">Requires Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Office,<br />
Microsoft SQL Server,<br />
Microsoft Visual Studio</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in Microsoft XML Editor. The vulnerability could allow information disclosure if a user opened a specially crafted Web Service Discovery (.disco) file with one of the affected software listed in this bulletin. Note that this vulnerability would not allow an attacker to execute code or to elevate their user rights directly, but it could be used to produce information that could be used to try to further compromise the affected system.</td>
<td width="92" valign="top">Information Disclosure</td>
</tr>
<tr>
<td rowspan="2" width="75" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-051.mspx" target="_blank">MS11-051</a></td>
<td width="200" valign="top"><strong>Vulnerability in Active Directory Certificate Services Web Enrolment Could Allow Elevation of Privilege (2518295)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="top">May Require Restart</td>
<td rowspan="2" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="200" valign="top">This security update resolves a privately reported vulnerability in Active Directory Certificate Services Web Enrolment. The vulnerability is a cross-site scripting (XSS) vulnerability that could allow elevation of privilege, enabling an attacker to execute arbitrary commands on the site in the context of the target user. An attacker who successfully exploited this vulnerability would need to send a specially crafted link and convince a user to click the link. In all cases, however, an attacker would have no way to force a user to visit the Web site. Instead, an attacker would have to persuade a user to visit the Web site, typically by getting them to click a link in an e-mail message or Instant Messenger message that takes the user to the vulnerable Web site.</td>
<td width="92" valign="top">Elevation of Privilege</td>
</tr>
</tbody>
</table>
<p>This month as mentioned Microsoft has highlighted 4 of the critical updates in particular as a top priority these are:</p>
<ul>
<li>MS11-042 (DFS). This bulletin resolves two privately reported issues affecting all versions of Windows with the critical rating applying to Windows XP and Server 2003 systems that utilize DFS (Distributed File Servers) for later editions of windows (vista, windows7 and Server 2008) the severity is listed as Important.</li>
<li>MS11-043 (SMB Client). This bulletin resolves one privately reported issue affecting all versions of SMB Client on All versions of Windows.</li>
<li>MS11-050 (Internet Explorer). This security bulletin resolves 11 privately reported issues in Internet Explorer (Internet Explorer 9 is only affected by 4 of these issues).</li>
<li>MS11-052 (Windows). This bulletin resolves one privately reported issue in Windows and is also Critical – This update does not affect users who use Internet Explorer 9.</li>
</ul>
<p>Please click the following link to view <a href="http://blogs.technet.com/cfs-filesystemfile.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/2654.deployment_2D00_201106.png">Microsoft’s deployment priority guidance</a> which assists in deployment planning. You can also follow this link to view the <a href="http://blogs.technet.com/cfs-filesystemfile.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/7220.severity_2D00_xi_2D00_201106.png">risk and impact graph</a> to visually see an aggregate view of this month’s severity and exploitability index.).</p>
<p>So in summary, we are likely to see updates requiring reboots of servers this month. (as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)<br />
MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/06/15/june-2011-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>June 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/06/10/june-2011-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2011/06/10/june-2011-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Fri, 10 Jun 2011 13:48:45 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8229</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for June 2011, sees the release of 16 bulletins addressing 34 vulnerabilities: Bulletin Breakdown: 9 bulletins are rated Critical 7 bulletins are rated Important 10 vulnerabilities can lead to Remote Code Execution 2 vulnerabilities can lead to Information Disclosure 2 vulnerabilities can lead to Denial of Service 2 vulnerabilities can lead to [...]]]></description>
			<content:encoded><![CDATA[<p>This &#8216;<strong>Patch Tuesday&#8217; for June 2011,</strong> sees the release of <strong>16 bulletins addressing 34 vulnerabilities:</strong><br />
Bulletin Breakdown:</p>
<ul>
<li>9 bulletins are rated Critical</li>
<li>7 bulletins are rated Important</li>
<li>10 vulnerabilities can lead to Remote Code Execution</li>
<li>2 vulnerabilities can lead to Information Disclosure</li>
<li>2 vulnerabilities can lead to Denial of Service</li>
<li>2 vulnerabilities can lead to Elevation of Privilege</li>
</ul>
<p>The following table summarizes the security bulletins for this month in order of severity.</p>
<table border="1" cellspacing="0" cellpadding="0" width="533" height="110">
<tbody>
<tr>
<td width="81" valign="middle"><strong>Bulletin ID</strong></td>
<td width="92" valign="middle"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td width="85" valign="middle"><strong>Restart Requirement</strong></td>
<td width="64" valign="middle"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 1</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="middle">Requires Restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="3" width="81" valign="middle">Bulletin 2</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="3" width="85" valign="middle">May require restart</td>
<td width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td rowspan="2" width="92" valign="middle">Remote Code Execution</td>
<td width="64" valign="middle">Microsoft .NET Framework,</td>
</tr>
<tr>
<td width="64" valign="middle">Microsoft Silverlight</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 3</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="middle">Requires restart</td>
<td width="64" valign="middle">Microsoft Forefront Threat</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
<td width="64" valign="middle">Management Gateway</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 4</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="middle">Requires restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 5</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="middle">Requires restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 6</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="middle">Requires restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 7</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="middle">May require restart</td>
<td width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
<td width="64" valign="middle">Microsoft .NET Framework</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 8</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="middle">Requires restart</td>
<td width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
<td width="64" valign="middle">Internet Explorer</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 9</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" width="85" valign="middle">May require restart</td>
<td width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
<td width="64" valign="middle">Internet Explorer</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 10</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="middle">May require restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Information Disclosure</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 11</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="middle">May require restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Office</td>
</tr>
<tr>
<td width="92" valign="middle">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 12</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="middle">Requires restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Elevation of Privilege</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 13</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="middle">Requires restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Denial of Service</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 14</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="middle">Requires restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Denial of Service</td>
</tr>
<tr>
<td rowspan="3" width="81" valign="middle">Bulletin 15</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="3" width="85" valign="middle">May require restart</td>
<td width="64" valign="middle">Microsoft Office</td>
</tr>
<tr>
<td rowspan="2" width="92" valign="middle">Information Disclosure</td>
<td width="64" valign="middle">Microsoft SQL Server,</td>
</tr>
<tr>
<td width="64" valign="middle">Microsoft Visual Studio</td>
</tr>
<tr>
<td rowspan="2" width="81" valign="middle">Bulletin 16</td>
<td width="92" valign="middle"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" width="85" valign="middle">May require restart</td>
<td rowspan="2" width="64" valign="middle">Microsoft Windows</td>
</tr>
<tr>
<td width="92" valign="middle">Elevation of Privilege</td>
</tr>
</tbody>
</table>
<p>This is another heavy security patch Tuesday from Microsoft. With vulnerability patches being applied across a large range of Microsoft products including, noticeably Server 2003, 2008 R2 and Sql 2005, 2008, 2008 R2.<br />
The full list of software affected by these updates is:</p>
<ul>
<li>All supported Microsoft Operating systems (XP, 2003, Vista, 2008, 7, 2008 R2)</li>
<li>All supported versions of Internet Explorer (7, 8, 9)</li>
<li>All supported versions of Microsoft Office Excel (XP, 2003, 2007, 2010)</li>
<li>Microsoft InfoPath 2007, 2010</li>
<li>Microsoft Excel Viewer</li>
<li>Microsoft Office Compatibility Pack 2007</li>
<li>SQL Server 2005, 2008, 2008 R2</li>
<li>Microsoft Silverlight</li>
<li>Microsoft Visual Studio 2005, 2008, 2010</li>
<li>Microsoft Forefront Threat Management Gateway 2010 Client</li>
</ul>
<p>&nbsp;</p>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing in the next couple of days.<br />
The &#8216;<a href="http://www.microsoft.com/technet/security/bulletin/ms11-jun.mspx">Microsoft Security Bulletin Advance Notification for June 2011</a>&#8216; page should be referenced for detailed information on how these updates are to affect your servers or solutions when released on 15th June (as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/server-maintenance.html">updates being applied automatically </a>unless you have opted out of this service.)<br />
MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/06/10/june-2011-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft OSG Loves Linux Technologies</title>
		<link>http://blog.ukfast.co.uk/2011/05/23/microsoft-osg-loves-linux-technologies/</link>
		<comments>http://blog.ukfast.co.uk/2011/05/23/microsoft-osg-loves-linux-technologies/#comments</comments>
		<pubDate>Mon, 23 May 2011 16:18:23 +0000</pubDate>
		<dc:creator>Liz Walker</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[virtualisation]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8168</guid>
		<description><![CDATA[You don&#8217;t expect to hear about Microsoft dedicating an entire section of their company to Open Source projects, and the revelation that they do came as a big surprise to many members of our Linux team. The Open Solutions Group (OSG) is an organization at Microsoft responsible for making sure solutions are brought to market [...]]]></description>
			<content:encoded><![CDATA[<p>You don&#8217;t expect to hear about Microsoft dedicating an entire section of their company to Open Source projects, and the revelation that they do came as a big surprise to many members of our Linux team.</p>
<p>The Open Solutions Group (OSG) is an organization at Microsoft responsible for making sure solutions are brought to market that will function with a selection of open source vendors.</p>
<p>This work uses over a thousand servers, each dedicated to different open source software. The aim of all this is to make sure there is greater interoperability between Windows and Linux environments.</p>
<p>The focus of the OSG includes virtualisation, cross-platform management, service automation, and support. The collaboration between Microsoft and open source partners brings together technologies and resources to aid hosting companies, like us, to fully leverage the power of technologies like cloud computing and meet the changing demands of our clients.</p>
<p>Microsoft has been working with select open source partners since 2006 and the organisation has helped over 700 customers overcome critical interoperability challenges related to mixed-source virtualisation and cross-platform management.</p>
<p>As one of OSG&#8217;s open source partners, we met with representatives of the team when they came over from Washington to meet us last month.</p>
<p>The benefits of cross platform management are of interest to many of our Windows clients as it allows them to take advantage of innovative open source technologies that previously would not have worked with the Windows OS.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/05/23/microsoft-osg-loves-linux-technologies/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>May 2011 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/05/11/may-2011-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/05/11/may-2011-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 11 May 2011 11:21:03 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security updates]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8136</guid>
		<description><![CDATA[As mentioned in May&#8217;s Advance notification post this month&#8217;s security bulletin releases, are now confirmed to be 2 security bulletins, addressing 3 vulnerabilities, one of which has a critical rating and the other is rated as important. This month sees a significant drop in the number of updates released after the record breaking volume last [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in <a href="http://www.ukfastblog.co.uk/2011/05/011/may-security-bulletin-release-advance-notification/">May&#8217;s Advance notification</a> post this month&#8217;s security bulletin releases, are now confirmed to be<strong> 2 security bulletins, addressing 3 vulnerabilities</strong>, one of which has a critical rating and the other is rated as important.</p>
<p>This month sees a significant drop in the number of updates released after the record breaking volume last month.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided:</p>
<table border="1" cellspacing="0" cellpadding="0" width="600" height="110">
<tbody>
<tr>
<td width="81" valign="top"><strong>Bulletin ID</strong></td>
<td width="150" valign="top"><strong>Bulletin Title and Executive Summary</strong></td>
<td width="92" valign="top"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td width="85" valign="top"><strong>Restart Requirement</strong></td>
<td width="64" valign="top"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-035.mspx" target="_blank">MS11-035</a></td>
<td width="150" valign="top"><strong>Vulnerability in WINS Could Allow Remote Code Execution (2524426)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="150" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="150" valign="top">This security update resolves a privately reported vulnerability in the Windows Internet Name Service (WINS). The vulnerability could allow remote code execution if a user received a specially crafted WINS replication packet on an affected system running the WINS service. By default, WINS is not installed on any affected operating system. Only customers who manually installed this component are affected by this issue.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/MS11-036.mspx" target="_blank">MS11-036</a></td>
<td width="150" valign="top"><strong>Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution (2545814)</strong></td>
<td width="92" valign="top"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Office</td>
</tr>
<tr>
<td width="150" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="150" valign="top">This security update resolves two privately reported vulnerabilities in Microsoft PowerPoint. The vulnerabilities could allow remote code execution if a user opens a specially crafted PowerPoint file. An attacker who successfully exploited either of these vulnerabilities could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. Installing and configuring Office File Validation (OFV) to prevent the opening of suspicious files blocks the attack vectors for exploiting the vulnerabilities described in CVE-2011-1269 and CVE-2011-1270.</td>
<td width="92" valign="top"></td>
</tr>
</tbody>
</table>
<p>This month, we have a sole Critical bulletin <a href="http://www.microsoft.com/technet/security/bulletin/MS11-035.mspx" target="_blank">MS11-035</a>. This security bulletin affects all Server customers (Microsoft Server 2003 and Server 2008) who have installed and use “WINS Service”. Please note the Wins service is not installed on any UKFast servers as a default.</p>
<p>The second bulletin <a href="http://www.microsoft.com/technet/security/bulletin/MS11-036.mspx" target="_blank">MS11-036</a> affects older versions of the Microsoft PowerPoint product. The exploit requires for a user to open a malicious PowerPoint document which could then lead to remote code execution. For users who have installed and are using the Office suite (Office 2003 &amp; Office 2007) on their server(s) it is worth highlighting that Microsoft released the “<a href="http://www.microsoft.com/technet/security/advisory/2501584.mspx" target="_blank">Office File Validation</a>”, something available by default with Office 2010, mitigates risk of the addressed vulnerability MS11-036. The Office File validation has been made available to Office 2003 and Office 2007 users towards the middle of last month and the download can be obtained from the following Microsoft URL: <a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=6a4e39a4-4c3f-4cc7-98ec-1cb2d5cb5881&amp;displaylang=en" target="_blank">Office 2003 &amp; 2007 File Validation</a></p>
<p><a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=6a4e39a4-4c3f-4cc7-98ec-1cb2d5cb5881&amp;displaylang=en" target="_blank"></a><br />
Please click the following link to view <a href="http://blogs.technet.com/cfs-filesystemfile.ashx/__key/communityserver-blogs-components-weblogfiles/00-00-00-45-71/3731.DP.png" target="_blank">Microsoft’s deployment priority guidance</a> which assists in deployment planning. You can also follow this link to view the <a href="http://blogs.technet.com/cfs-filesystemfile.ashx/__key/communityserver-blogs-components-weblogfiles/00-00-00-45-71/2275.Severity-XI.png" target="_blank">risk and impact graph</a> to visually see an aggregate view of this month’s severity and exploitability index.<br />
We expect both updates will only affect a small number of systems, those who have specifically installed WINS and/or the Office suite on their server(s). So in summary, we are <strong>Unlikely to see</strong> updates requiring <strong>reboots of servers this month</strong>.<br />
MC.<br />
(as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/05/11/may-2011-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>May 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/05/06/may-2011-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2011/05/06/may-2011-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Fri, 06 May 2011 13:45:26 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security updates]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8131</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for May 2011, sees the release of 2 bulletins addressing 3 vulnerabilities: Bulletin Breakdown: 2 security Bulletins 1 security Bulletin has a critical rating 1 security Bulletin has an important rating Both Bulletins address vulnerabilities that could lead to Remote Code Execution. At present we know 1 Bulletin affects Windows Server Operating [...]]]></description>
			<content:encoded><![CDATA[<p>This &#8216;<strong>Patch Tuesday&#8217; for May 2011,</strong> sees the release of<strong> </strong><strong>2</strong> <strong>bulletins addressing 3 vulnerabilities:</strong></p>
<p>Bulletin Breakdown:</p>
<ul>
<li>2 security Bulletins</li>
<li>1 security Bulletin has a critical rating</li>
<li>1 security Bulletin has an important rating</li>
</ul>
<p>Both Bulletins address vulnerabilities that could lead to Remote Code Execution. At present we know 1 Bulletin affects Windows Server Operating systems (Server 2003, 2008 &amp; 2008 R2). The other Bulletin affects the Microsoft Office Product family (PowerPoint Xp, 2003, 2007 &amp; Office Compatibility Pack)</p>
<p>The following table summarizes the security bulletins for this month in order of severity.</p>
<p>For details on affected software, see the next section, <strong>Affected Software</strong>.<em></em><em><br />
</em></p>
<table width="533" border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top" width="81"><strong>Bulletin ID</strong></td>
<td valign="top" width="92"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td valign="top" width="85"><strong>Restart Requirement</strong></td>
<td valign="top" width="64"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 1</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Critical</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="64">Microsoft Windows</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
<tr>
<td rowspan="2" valign="top" width="81">Bulletin 2</td>
<td valign="top" width="92"><a href="http://www.microsoft.com/technet/security/bulletin/rating.mspx">Important</a></td>
<td rowspan="2" valign="top" width="85">May require restart</td>
<td rowspan="2" valign="top" width="64">Microsoft Office</td>
</tr>
<tr>
<td valign="top" width="92">Remote Code Execution</td>
</tr>
</tbody>
</table>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing in the next couple of days.</p>
<p>The ‘Microsoft Security Bulletin Advance Notification for May 2011′ page should be referenced for detailed information on how these updates are to affect your servers or solutions when released on 8th February (as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/05/06/may-2011-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Changes to Microsoft&#8217;s Exploitability Index</title>
		<link>http://blog.ukfast.co.uk/2011/05/06/changes-to-microsofts-exploitability-index/</link>
		<comments>http://blog.ukfast.co.uk/2011/05/06/changes-to-microsofts-exploitability-index/#comments</comments>
		<pubDate>Fri, 06 May 2011 11:30:38 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.ukfast.co.uk/?p=8121</guid>
		<description><![CDATA[Microsoft has released some information on improvements to their exploitability index and advance notification services. The exploitability index was created by Microsoft back in 2008 to assist Microsoft users in prioritising bulletin deployment. Since the original release Microsoft has received feedback from users requesting further information by platform. As a result, Microsoft has released improvements [...]]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released some information on improvements to their exploitability index and advance notification services.</p>
<p>The exploitability index was created by Microsoft back in 2008 to assist Microsoft users in prioritising bulletin deployment. Since the original release Microsoft has received feedback from users requesting further information by platform.</p>
<p>As a result, Microsoft has released improvements to their exploitability index as of Thursday the 5<sup>th</sup> of May. For those not familiar with it, the exploitability index is a release from Microsoft to advise users what is likely to occur within the first 30 days after releasing security updates. Changes include a new column which represents Microsoft’s assessment of their most current products. For example, Windows 7 has been broken out from Windows Xp and Vista.</p>
<p>&nbsp;</p>
<p>Their full release says:</p>
<p>Today we are announcing changes to Microsoft’s <a href="http://technet.microsoft.com/en-us/security/cc998259.aspx">Exploitability Index.</a></p>
<p>Since October 2008, we have used the Exploitability Index to provide customers with valuable exploitability analysis for our security bulletins, and starting Tuesday this information will become even more comprehensive for those who use Microsoft’s latest platforms.</p>
<p>The Exploitability Index assesses the likelihood of functional exploit code being developed for a particular vulnerability. By providing the index information month over month, we’re helping customers prioritize the security updates that matter to them. The Exploitability Index will continue to provide an aggregate exploitability rating across all affected products, and the improvements made to Exploitability Index will now offer additional information to help customers prioritize bulletins, specifically for the most recent platforms, e.g. Windows 7 Service Pack 1 and Office 2010.</p>
<p>For example, the Exploitability Index for CVE-2011-0097, a security issue addressed by <a href="http://www.microsoft.com/technet/security/bulletin/ms11-021.mspx">MS11-021</a> in the <a href="http://www.microsoft.com/technet/security/bulletin/ms11-apr.mspx">April 2011 release</a>, originally rated a “1 – Consistent Exploit Code Likely”. However, under the previous system, the Exploitability Index did not specifically illustrate that customers using Excel 2010 were at less risk; with Excel 2010, CVE-2010-0097 would rate a “2 – Inconsistent Exploit Code Likely”. In fact, our research has shown that 37 percent of the vulnerabilities addressed since July 2010 have had similar results; the latest platform was either entirely unaffected, or significantly more difficult to exploit.</p>
<p>Maarten Van Horenbeeck, senior security program manager, goes into more depth around the background of Exploitability Index and the value of these improvements in the MSRC blog post: <a href="http://blogs.technet.com/b/msrc/archive/2011/05/05/exploitability-index-improvements-amp-advance-notification-service-for-may-2011-bulletin-release.aspx">“Exploitability Index Improvements Now Offer Additional Guidance</a>”</p>
<p>Additionally, we&#8217;re providing <a href="http://www.microsoft.com/technet/security/bulletin/ms11-may.mspx">advanced notification</a> on the release of a Critical security bulletin addressing a vulnerability in Windows, and an Important bulletin addressing two vulnerabilities in Microsoft Office. As usual, the bulletin release is scheduled for the second Tuesday of the month, May 10, at approximately 10 a.m. PDT.</p>
<p>For all the latest information, you can also follow the MSRC team on Twitter at <a href="http://www.twitter.com/msftsecresponse">@MSFTSecResponse</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/05/06/changes-to-microsofts-exploitability-index/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>April 2011 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/04/13/april-2011-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/04/13/april-2011-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 13 Apr 2011 11:11:55 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[April 2011]]></category>
		<category><![CDATA[Important]]></category>
		<category><![CDATA[patches]]></category>
		<category><![CDATA[reboots]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security updates]]></category>
		<category><![CDATA[updates]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=8035</guid>
		<description><![CDATA[As mentioned in the April Advance notification post this month’s security bulletin releases, are now confirmed to be 17 security bulletins, addressing 64 unique vulnerabilities, nine of which are critical and eight rated Important. The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting [...]]]></description>
			<content:encoded><![CDATA[<p>As mentioned in the <a href="http://www.ukfastblog.co.uk/2011/04/08/april-security-bulletin-release-advance-notification/">April  Advance notification post</a> this month’s security bulletin releases,  are now confirmed to be<strong> 17 security bulletins, addressing 64  unique vulnerabilities</strong>, nine of which are critical and eight  rated Important.</p>
<p>The following table shows affected software by  bulletin and the likelihood of an Operating System restart being  required and hence impacting on services provided.</p>
<table border="1" cellspacing="0" cellpadding="0" width="533">
<tbody>
<tr>
<td width="81" valign="top"><strong>Bulletin ID</strong></td>
<td width="211" valign="top"><strong>Bulletin Title and Executive Summary</strong></td>
<td width="92" valign="top"><strong>Maximum Severity Rating and   Vulnerability Impact</strong></td>
<td width="85" valign="top"><strong>Restart Requirement</strong></td>
<td width="64" valign="top"><strong>Affected Software</strong></td>
</tr>
<tr>
<td rowspan="4" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkID=214126">MS11-018</a></span></td>
<td width="211" valign="top"><strong>Cumulative Security Update for   Internet Explorer (2497640)</strong> <strong> </strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="4" width="85" valign="top">Requires restart</td>
<td width="64" valign="top">Microsoft Windows,</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
<td width="64" valign="top">Internet Explorer</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves four   privately reported vulnerabilities and one publicly disclosed vulnerability   in Internet Explorer. This security update is rated Critical for Internet   Explorer 6, Internet Explorer 7, and Internet Explorer 8 on Windows clients;   and Moderate for Internet Explorer 6, Internet Explorer 7, and Internet   Explorer 8 on Windows servers. Internet Explorer 9 is not affected by the   vulnerabilities.</td>
<td width="92" valign="top"></td>
<td width="64" valign="top"></td>
</tr>
<tr>
<td width="211" valign="top">The most severe vulnerabilities could   allow remote code execution if a user views a specially crafted Web page   using Internet Explorer. An attacker who successfully exploited any of these   vulnerabilities could gain the same user rights as the local user. Users   whose accounts are configured to have fewer user rights on the system could   be less impacted than users who operate with administrative user rights.</td>
<td width="92" valign="top"></td>
<td width="64" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=212314">MS11-019</a></span></td>
<td width="211" valign="top"><strong>Vulnerabilities in SMB Client Could   Allow Remote Code Execution (2511455)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="3" width="85" valign="top">Requires restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves one   publicly disclosed vulnerability and one privately reported vulnerability in   Microsoft Windows. The vulnerabilities could allow remote code execution if   an attacker sent a specially crafted SMB response to a client-initiated SMB   request. To exploit these vulnerabilities, an attacker must convince the user   to initiate an SMB connection to a specially crafted SMB server.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=212236">MS11-020</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in SMB Server Could   Allow Remote Code Execution (2508429)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="3" width="85" valign="top">Requires restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   privately reported vulnerability in Microsoft Windows. The vulnerability   could allow remote code execution if an attacker created a specially crafted   SMB packet and sent the packet to an affected system. Firewall best practices   and standard default firewall configurations can help protect networks from   attacks originating outside the enterprise perimeter that would attempt to   exploit these vulnerabilities.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkID=214005">MS11-027</a></span></td>
<td width="211" valign="top"><strong>Cumulative Security Update of ActiveX   Kill Bits (2508272)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves two   privately reported vulnerabilities and one publicly disclosed vulnerability   in Microsoft software. The vulnerabilities could allow remote code execution   if a user views a specially crafted Web page that instantiates a specific   ActiveX control with Internet Explorer. Users whose accounts are configured   to have fewer user rights on the system could be less impacted than users who   operate with administrative user rights. This update also includes kill bits   for three third-party ActiveX controls.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=207931">MS11-028</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in .NET Framework Could   Allow Remote Code Execution (2484015)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   publicly disclosed vulnerability in Microsoft .NET Framework. The   vulnerability could allow remote code execution on a client system if a user   views a specially crafted Web page using a Web browser that can run XAML   Browser Applications (XBAPs). Users whose accounts are configured to have   fewer user rights on the system could be less impacted than users who operate   with administrative user rights. The vulnerability could also allow remote   code execution on a server system running IIS, if that server allows   processing ASP.NET pages and an attacker succeeds in uploading a specially   crafted ASP.NET page to that server and then executes the page, as could be   the case in a Web hosting scenario. This vulnerability could also be used by   Windows .NET applications to bypass Code Access Security (CAS) restrictions.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkID=208524">MS11-029</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in GDI+ Could Allow   Remote Code Execution (2489979)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td width="64" valign="top">Microsoft Windows,</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
<td width="64" valign="top">Microsoft Office</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   privately reported vulnerability in Microsoft Windows GDI+. The vulnerability   could allow remote code execution if a user viewed a specially crafted image   file using affected software or browsed a Web site that contains specially   crafted content. Users whose accounts are configured to have fewer user   rights on the system could be less impacted than users who operate with   administrative user rights.</td>
<td width="92" valign="top"></td>
<td width="64" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=212595">MS11-030</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in DNS Resolution Could   Allow Remote Code Execution (2509553)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="3" width="85" valign="top">Requires restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   privately reported vulnerability in Windows DNS resolution. The vulnerability   could allow remote code execution if an attacker gained access to the network   and then created a custom program to send specially crafted LLMNR broadcast   queries to the target systems. Firewall best practices and standard default   firewall configurations can help protect networks from attacks that originate   outside the enterprise perimeter. Best practices recommend that systems that   are connected to the Internet have a minimal number of ports exposed. In this   case, the LLMNR ports should be blocked from the Internet.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=212243">MS11-031</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in JScript and VBScript   Scripting Engines Could Allow Remote Code Execution (2514666)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   privately reported vulnerability in the JScript and VBScript scripting   engines. The vulnerability could allow remote code execution if a user   visited a specially crafted Web site. An attacker would have no way to force   users to visit the Web site. Instead, an attacker would have to convince   users to visit the Web site, typically by getting them to click a link in an   e-mail message or Instant Messenger message that takes users to the   attacker&#8217;s Web site.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=212224">MS11-032</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in the OpenType Compact   Font Format (CFF) Driver Could Allow Remote Code Execution (2507618)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></span></td>
<td rowspan="3" width="85" valign="top">Requires restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   privately reported vulnerability in the OpenType Compact Font Format (CFF)   driver. The vulnerability could allow remote code execution if a user views   content rendered in a specially crafted CFF font. In all cases, an attacker   would have no way to force users to view the specially crafted content.   Instead, an attacker would have to convince users to visit a Web site,   typically by getting them to click a link in an e-mail message or Instant   Messenger message that takes users to the attacker&#8217;s Web site.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=210121">MS11-021</a></span></td>
<td width="211" valign="top"><strong>Vulnerabilities in Microsoft Excel   Could Allow Remote Code Execution (2489279)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Office</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves nine   privately reported vulnerabilities in Microsoft Office. The vulnerabilities   could allow remote code execution if a user opens a specially crafted Excel   file. An attacker who successfully exploited any of these vulnerabilities   could gain the same user rights as the logged-on user. Users whose accounts   are configured to have fewer user rights on the system could be less impacted   than users who operate with administrative user rights.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkID=210727">MS11-022</a></span></td>
<td width="211" valign="top"><strong>Vulnerabilities in Microsoft   PowerPoint Could Allow Remote Code Execution (2489283)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td width="64" valign="top">Microsoft Office,</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
<td width="64" valign="top">Microsoft Server Software</td>
</tr>
<tr>
<td width="211" valign="bottom">This security update resolves three   privately reported vulnerabilities in Microsoft PowerPoint. The   vulnerabilities could allow remote code execution if a user opens a specially   crafted PowerPoint file. An attacker who successfully exploited any of these   vulnerabilities could gain the same user rights as the local user. Users   whose accounts are configured to have fewer user rights on the system could   be less impacted than users who operate with administrative user rights. The   automated Microsoft Fix it solution for PowerPoint 2010,   &#8220;Disable Edit in Protected View for PowerPoint 2010,&#8221; available   inMicrosoft Knowledge Base Article 2501584, blocks the attack vectors for   exploiting the vulnerabilities described in CVE-2011-0655 and CVE-2011-0656.</td>
<td width="92" valign="top"></td>
<td width="64" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=210206">MS11-023</a></span></td>
<td width="211" valign="top"><strong>Vulnerabilities in Microsoft Office   Could Allow Remote Code Execution (2489293)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Office</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves one   publicly disclosed vulnerability and one privately reported vulnerability in   Microsoft Office. The vulnerabilities could allow remote code execution if a   user opens a specially crafted Office file or if a user opens a legitimate   Office file that is located in the same network directory as a specially   crafted library file. An attacker who successfully exploited either of these   vulnerabilities could gain the same user rights as the logged on user. Users   whose accounts are configured to have fewer user rights on the system could   be less impacted than users who operate with administrative user rights.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=212226">MS11-024</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in Windows Fax Cover   Page Editor Could Allow Remote Code Execution (2527308)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves one   publicly disclosed vulnerability in Microsoft Windows. The vulnerability   could allow remote code execution if a user opened a specially crafted fax   cover page file (.cov) using the Windows Fax Cover Page Editor. An attacker   who successfully exploited this vulnerability could gain the same user rights   as the logged-on user. Users whose accounts are configured to have fewer user   rights on the system could be less impacted than users who operate with   administrative user rights.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=209720">MS11-025</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in Microsoft Foundation   Class (MFC) Library Could Allow Remote Code Execution (2500212)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></span></td>
<td rowspan="3" width="85" valign="top">May require restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Developer Tools and   Software</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   publicly disclosed vulnerability in certain applications built using the   Microsoft Foundation Class (MFC) Library. The vulnerability could allow   remote code execution if a user opens a legitimate file associated with such   an affected application, and the file is located in the same network folder   as a specially crafted library file. For an attack to be successful, a user   must visit an untrusted remote file system location or WebDAV share and open   a document from this location that is then loaded by the affected   application.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=212523">MS11-026</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in MHTML Could Allow   Information Disclosure (2503658)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></span></td>
<td rowspan="3" width="85" valign="top">Requires restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Information Disclosure</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   publicly disclosed vulnerability in the MHTML protocol handler in Microsoft   Windows. The vulnerability could allow information disclosure if a user   visited a specially crafted Web site. In a Web-based attack scenario, a Web site   could contain a specially crafted link that is used to exploit this   vulnerability. An attacker would have to convince users to visit the Web site   and open the specially crafted link.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="4" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=208110">MS11-033</a></span></td>
<td width="211" valign="top"><strong>Vulnerability in WordPad Text   Converters Could Allow Remote Code Execution (2485663)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></span></td>
<td rowspan="4" width="85" valign="top">May require restart</td>
<td rowspan="4" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Remote Code Execution</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves a   privately reported vulnerability in Microsoft Windows. This security update   is rated Important for all supported editions of Windows XP and Windows   Server 2003. All supported editions of Windows Vista, Windows Server 2008, Windows   7, and Windows Server 2008 R2 are not affected by the vulnerability.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td width="211" valign="top">The vulnerability could allow remote   code execution if a user opened a specially crafted file using WordPad. An   attacker who successfully exploited this vulnerability could gain the same   user rights as the local user. Users whose accounts are configured to have   fewer user rights on the system could be less impacted than users who operate   with administrative user rights.</td>
<td width="92" valign="top"></td>
</tr>
<tr>
<td rowspan="3" width="81" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=211826">MS11-034</a></span></td>
<td width="211" valign="top"><strong>Vulnerabilities in Windows   Kernel-Mode Drivers Could Allow Elevation of Privilege (2506223)</strong> <strong></strong></td>
<td width="92" valign="top"><span style="text-decoration: underline;"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></span></td>
<td rowspan="3" width="85" valign="top">Requires restart</td>
<td rowspan="3" width="64" valign="top">Microsoft Windows</td>
</tr>
<tr>
<td width="211" valign="top"></td>
<td width="92" valign="top">Elevation of Privilege</td>
</tr>
<tr>
<td width="211" valign="top">This security update resolves thirty   privately reported vulnerabilities in Microsoft Windows. The vulnerabilities   could allow elevation of privilege if an attacker logged on locally and ran a   specially crafted application. An attacker must have valid logon credentials   and be able to log on locally to exploit these vulnerabilities. The   vulnerabilities could not be exploited remotely or by anonymous users.</td>
<td width="92" valign="top"></td>
</tr>
</tbody>
</table>
<p>This month,  Microsoft’s Peter Voss has highlighted three top priority bulletins, all  with a Critical rating: MS11-020<strong> </strong>(SMB Server),  MS11-019 (SMB Client) and MS11-018 (Internet Explorer).</p>
<p><strong>MS11-018  (Internet Explorer).</strong> As you can see from the table above, This  security bulletin resolves four privately reported vulnerabilities and  one publicly disclosed vulnerability in Internet Explorer. This bulletin  is rated Critical for IE 6, IE 7 and IE 8 on Windows clients; and  Moderate for IE6, IE7, and IE8 on Windows servers. Please note clients  who have already upgraded their solutions to use Internet Explorer 9  will not be affected by the vulnerabilities. Microsoft is aware of  limited attacks leveraging vulnerabilities addressed by this bulletin,  including the vulnerability used at the CanSecWest 2011 Conference in  Vancouver, British Columbia (March 9-11) and is something Microsoft  Security Response tweeted about <a href="http://twitter.com/msftsecresponse/status/57499974124044289">recently</a>.</p>
<p><strong>MS11-019 (SMB Client)</strong>. This bulletin resolves one  publicly disclosed vulnerability and one privately reported  vulnerability in Microsoft Windows. The vulnerabilities could allow  remote code executions if an attacker sent a specially crafted SMB  response to a client-initiated SMB request. Microsoft publicly disclosed  this vulnerability to full disclosure on February 15th. Microsoft  performed a full investigation into the issue and found that remote-code  execution was extremely unlikely. As a result Microsoft had no evidence  of any active attacks and therefore opted not to disrupt Microsoft  users with an out-of-band security update.</p>
<p><strong>MS11-020 (SMB  Server)</strong>. This bulletin resolves an internally discovered  vulnerability in Microsoft Windows. The vulnerability could allow remote  code execution if an attacker created a specially crafted SMB packet  and sent the packet to an affected system.</p>
<p>Click the following  link to view <a href="http://blogs.technet.com/cfs-filesystemfile.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/0245.Bulletin-Deployment-Priority.png">Microsoft’s  deployment priority guidance</a> which assists in deployment planning.  You can also follow this link to view <a href="http://blogs.technet.com/cfs-filesystemfile.ashx/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-45-71/8510.Severity-and-Exploitability-Index.png">the  risk and impact graph</a> to visually see an aggregate view of this  month&#8217;s severity and exploitability index.</p>
<p>In summary,  we are <strong>likely to see</strong> updates requiring <strong>reboots</strong> of servers <strong>this month</strong>.</p>
<p>MC.</p>
<p><em>(as  usual, as a UKFast customer, you benefit from these updates being  applied automatically unless you have opted out of this service.)</em></p>
<p>&nbsp;</p>
<h2><strong><em>Update 14/4/11 </em></strong></h2>
<p>We have received word from Microsoft that the following bulletins have undergone a minor revision increment.</p>
<p>Please see the appropriate bulletin for more details.</p>
<p>* MS11-019 &#8211; Critical</p>
<p>* MS11-017 &#8211; Important</p>
<p>&nbsp;</p>
<p>Bulletin Information:</p>
<p>* <strong>MS11-019 &#8211; Critical</strong></p>
<p>- <a href="http://www.microsoft.com/technet/security/bulletin/ms11-019.mspx">http://www.microsoft.com/technet/security/bulletin/ms11-019.mspx</a></p>
<p>- Reason for Revision: V1.1 (April 13, 2011): Clarified the</p>
<p>vulnerability description in the Executive Summary.</p>
<p>- Originally posted: April 12, 2011</p>
<p>- Updated: April 13, 2011</p>
<p>- Bulletin Severity Rating: Critical</p>
<p>- Version: 1.1</p>
<p>&nbsp;</p>
<p>*<strong> MS11-017 &#8211; Important</strong></p>
<p>- <a href="http://www.microsoft.com/technet/security/bulletin/ms11-017.mspx">http://www.microsoft.com/technet/security/bulletin/ms11-017.mspx</a></p>
<p>- Reason for Revision: V1.3 (April 13, 2011): Corrected the</p>
<p>bulletin replacement information for Remote Desktop</p>
<p>Connection 6.0 Client on supported editions of Windows Server</p>
<p>2003 and Remote Desktop Connection 6.1 Client on supported</p>
<p>editions of Windows Vista. This is a bulletin change only.</p>
<p>There were no changes to the detection or security update files.</p>
<p>- Originally posted: March 8, 2011</p>
<p>- Updated: April 13, 2011</p>
<p>- Bulletin Severity Rating: Important</p>
<p>- Version: 1.3</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/04/13/april-2011-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>April 2011 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/04/08/april-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2011/04/08/april-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Fri, 08 Apr 2011 11:10:55 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[advance notification]]></category>
		<category><![CDATA[April 2011]]></category>
		<category><![CDATA[hosting]]></category>
		<category><![CDATA[internet explorer]]></category>
		<category><![CDATA[patches]]></category>
		<category><![CDATA[release]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security bulletin release]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=8017</guid>
		<description><![CDATA[This ‘Patch Tuesday’ for April 2011, sees the release of 17 bulletins addressing 64 vulnerabilities: &#160; The number of updates released this month will tie the record for the most security bulletins released by Microsoft within a single release.  It was December of last year that Microsoft also released 17 security bulletins.  On the vulnerability front, [...]]]></description>
			<content:encoded><![CDATA[<p>This <strong>‘Patch Tuesday’ for April 2011,</strong> sees the release of<strong> </strong><strong>17</strong> <strong>bulletins addressing 64 vulnerabilities:</strong></p>
<p>&nbsp;</p>
<p>The number of updates released this month will tie the record for the <a href="http://www.ukfast.co.uk/microsoft-news/record-64-bug-fixes-in-patch-tuesday.html" target="_blank">most security bulletins</a> released by Microsoft within a single release.  It was December of last year that Microsoft also released 17 security bulletins.  On the vulnerability front, yes, we have another Microsoft record.  With Microsoft fixing 64 vulnerabilities, they will surpass the previous Microsoft record of 49 vulnerabilities fixed in October of last year.</p>
<p>&nbsp;</p>
<p>Bulletin Breakdown:</p>
<ul>
<li>9 bulletins are rated as Critical</li>
<li>8 bulletins are rated as Important</li>
<li>16 bulletins address vulnerabilities that could lead to Remote Code Execution</li>
<li>1 bulletin addresses a vulnerability that could lead to Elevation of Privilege</li>
</ul>
<p>The following table summarizes the security bulletins for this month in order of severity.<a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/04/April-Advance-notification1.png"></a></p>
<p><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/04/April-Advance-notification1.png"><br />
</a><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/04/April-Advance-notification3.png"><img class="aligncenter size-full wp-image-8024" title="April Advance notification" src="http://www.ukfastblog.co.uk/wp-content/uploads/2011/04/April-Advance-notification3.png" alt="" width="601" height="678" /></a></p>
<p><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/04/April-Advance-notification.png"></a><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/04/April-Advance-notification2.png"><br />
</a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/04/08/april-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>March 2011 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/03/28/march-2011-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/03/28/march-2011-security-bulletin-release/#comments</comments>
		<pubDate>Mon, 28 Mar 2011 13:56:08 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Important]]></category>
		<category><![CDATA[march 2011]]></category>
		<category><![CDATA[patches]]></category>
		<category><![CDATA[reboots]]></category>
		<category><![CDATA[restart]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[UKFast]]></category>
		<category><![CDATA[UKFast customer]]></category>
		<category><![CDATA[updates]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=8005</guid>
		<description><![CDATA[This month Microsoft has released three new security bulletins, addressing four vulnerabilities. The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence the impact on services provided. &#160; &#160; In summary, we are unlikely to see updates requiring reboots of servers this month. MC. (as [...]]]></description>
			<content:encoded><![CDATA[<p>This month Microsoft has released three new security bulletins, addressing four vulnerabilities.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence the impact on services provided.</p>
<p>&nbsp;</p>
<p><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/03/March-Microsoft-bulletin.png"><img class="aligncenter size-full wp-image-8006" title="March Microsoft bulletin" src="http://www.ukfastblog.co.uk/wp-content/uploads/2011/03/March-Microsoft-bulletin.png" alt="" width="634" height="650" /></a></p>
<p>&nbsp;</p>
<p>In summary, we are<strong> un</strong><strong>likely to see</strong> updates requiring<strong> </strong><strong>reboots</strong> of servers<strong> </strong><strong>this month</strong>.</p>
<p>MC.<br />
<em>(as usual, as a UKFast customer, you benefit from these updates being applied automatically unless you have opted out of this service.)</em></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/03/28/march-2011-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>February 2011 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/02/10/february-2011-security-bulletin-release-2/</link>
		<comments>http://blog.ukfast.co.uk/2011/02/10/february-2011-security-bulletin-release-2/#comments</comments>
		<pubDate>Thu, 10 Feb 2011 09:27:07 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[UKFast]]></category>
		<category><![CDATA[february 2011]]></category>
		<category><![CDATA[Important]]></category>
		<category><![CDATA[patches]]></category>
		<category><![CDATA[reboots]]></category>
		<category><![CDATA[restart]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[UKFast customer]]></category>
		<category><![CDATA[updates]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7922</guid>
		<description><![CDATA[This month Microsoft has released twelve new security bulletins, addressing twenty-two vulnerabilities. The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided. In summary, we are likely to see updates requiring reboots of servers this month. MC. (as usual, as a [...]]]></description>
			<content:encoded><![CDATA[<p>This month Microsoft has released twelve new security bulletins, addressing twenty-two vulnerabilities.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided.</p>
<p><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/02/kelvyntable1.jpeg"><img class="aligncenter size-full wp-image-7923" title="Windows Update" src="http://www.ukfastblog.co.uk/wp-content/uploads/2011/02/kelvyntable1.jpeg" alt="" width="624" height="2205" /></a></p>
<p>In summary, we are<strong> likely to see</strong> updates requiring<strong> reboots</strong> of servers<strong> this month</strong>.</p>
<p>MC.</p>
<p><em>(as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/server-maintenance.html">updates being applied automatically</a> unless you have opted out of this service.)</em></p>
<p><em><br />
</em></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/02/10/february-2011-security-bulletin-release-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2011/02/07/february-2011-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/02/07/february-2011-security-bulletin-release/#comments</comments>
		<pubDate>Mon, 07 Feb 2011 10:16:40 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[february 2011]]></category>
		<category><![CDATA[hosting]]></category>
		<category><![CDATA[internet explorer]]></category>
		<category><![CDATA[micro clouseau]]></category>
		<category><![CDATA[patches]]></category>
		<category><![CDATA[release]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security bulletin release]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[UKFast]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7916</guid>
		<description><![CDATA[This &#8216;Patch Tuesday&#8217; for February 2011, sees the release of 12 bulletins addressing 22 vulnerabilities: 3 bulletins are rated Critical 9 bulletins are rated Important 5 bulletins address Remote Code Execution vulnerabilities 5 bulletins address Elevation of Privilege vulnerabilities 1 bulletin addresses a Denial of Service vulnerability 1 bulletin addresses an Information Disclosure vulnerability These [...]]]></description>
			<content:encoded><![CDATA[<p>This<a title="February 2011 Security Bulletin Release" href="http://blog.ukfast.co.uk/2011/02/10/february-2011-security-bulletin-release-2/"> </a><strong><a title="February 2011 Security Bulletin Release" href="http://blog.ukfast.co.uk/2011/02/10/february-2011-security-bulletin-release-2/">&#8216;Patch Tuesday&#8217; for February 2011</a>,</strong> sees the release of<strong> 12</strong> <strong>bulletins addressing 22 vulnerabilities:</strong></p>
<ul>
<li>3 bulletins are rated Critical</li>
<li>9 bulletins are rated Important</li>
<li>5 bulletins address Remote Code Execution vulnerabilities</li>
<li>5 bulletins address Elevation of Privilege vulnerabilities</li>
<li>1 bulletin addresses a Denial of Service vulnerability</li>
<li>1 bulletin addresses an Information Disclosure vulnerability</li>
</ul>
<p><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/02/Windows-Table.jpeg"><img class="aligncenter size-full wp-image-7917" title="Windows Updates" src="http://www.ukfastblog.co.uk/wp-content/uploads/2011/02/Windows-Table.jpeg" alt="" width="636" height="528" /></a></p>
<p>These updates will affect the following Software:</p>
<ul>
<li>All supported versions of Internet Explorer</li>
<li>All supported versions of the Microsoft Windows operating system</li>
<li>Microsoft Visual Studio</li>
<li>Microsoft IIS</li>
<li>Microsoft Visio XP, 2003 and 2007</li>
</ul>
<p>We will issue further information on the impact of this month’s updates once they have been released for testing in the next couple of days.</p>
<p>The ‘Microsoft Security Bulletin Advance Notification for February 2011′ page should be referenced for detailed information on how these updates are to affect your servers or solutions when <strong>released on 8th February</strong> <em>(as usual, as a UKFast customer, you benefit from these u<a href="http://www.ukfast.co.uk/server-maintenance.html">pdates being applied automatically</a> unless you have opted out of this service.)</em></p>
<p>MC.</p>
<p><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/02/Windows-Table.jpeg"><br />
</a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/02/07/february-2011-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>January 2011 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2011/01/13/january-2011-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2011/01/13/january-2011-security-bulletin-release/#comments</comments>
		<pubDate>Thu, 13 Jan 2011 12:22:09 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[2010]]></category>
		<category><![CDATA[January]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7869</guid>
		<description><![CDATA[This month Microsoft has released two new security bulletins, addressing three vulnerabilities. The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided.]]></description>
			<content:encoded><![CDATA[<p>This month <a href="http://www.microsoft.com/technet/security/bulletin/ms11-jan.mspx" target="_blank">Microsoft has released</a> two new security bulletins, addressing three vulnerabilities.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided.</p>
<div id="attachment_7873" class="wp-caption aligncenter" style="width: 635px"><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2011/01/Mic2.jpeg"><img class="size-full wp-image-7873" title="Microsoft Update" src="http://www.ukfastblog.co.uk/wp-content/uploads/2011/01/Mic2.jpeg" alt="Microsoft Update" width="625" height="634" /></a><p class="wp-caption-text">Microsoft Update</p></div>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2011/01/13/january-2011-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft&#8217;s locked horns with Google again &#8211; why this time?</title>
		<link>http://blog.ukfast.co.uk/2010/12/15/microsofts-locked-horns-with-google-again-why-this-time/</link>
		<comments>http://blog.ukfast.co.uk/2010/12/15/microsofts-locked-horns-with-google-again-why-this-time/#comments</comments>
		<pubDate>Wed, 15 Dec 2010 18:01:27 +0000</pubDate>
		<dc:creator>Lady Penelope</dc:creator>
				<category><![CDATA[Ecommerce]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[browsing]]></category>
		<category><![CDATA[e-commerce]]></category>
		<category><![CDATA[internet]]></category>
		<category><![CDATA[search]]></category>
		<category><![CDATA[search terms]]></category>
		<category><![CDATA[websites]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7838</guid>
		<description><![CDATA[FairSearch, the coalition fighting against Google's planned $700 million acquisition of travel software firm ITA Software, is growing continually and one of its latest recruits, Microsoft, is one of the biggest to have joined the campaign so far.]]></description>
			<content:encoded><![CDATA[<p>FairSearch, the coalition fighting against Google&#8217;s planned $700 million acquisition of travel software firm ITA Software, is growing continually and one of its latest recruits, Microsoft, is one of the biggest to have joined the campaign so far. What does the involvement of the software heavyweight mean?</p>
<p>FairSearch.org was launched in October in reaction to Google&#8217;s announcement that it planned to acquire ITA &#8211; a company that creates and maintains software for <a href="http://www.ukfast.co.uk/travel-tourism.html">online travel companies</a> &#8211; in July. ITA Software is used through almost every major online travel site on the internet.</p>
<p>Microsoft is interested in Google&#8217;s ITA proposal because its Bing Travel search site is powered by ITA. ITA powers 65 per cent of all online flight searches at U.S. airline sites, according to FairSearch.</p>
<p>Microsoft, and the FairSearch consortium, argues that Google could abuse its dominancy in the internet search by acquiring ITA and creating an unfair monopoly when it comes to online travel. Fairsearch claims that if the deal goes through, Google could put its own search results ahead of those that already exist on the internet. Google has already been accused of such unfair practices in standard search results, giving its own sites priority over others.</p>
<p>FairSearch&#8217;s membership had, until Microsoft joined, been made up primarily of travel sites including Expedia.com, Hotwire, TripAdvisor, Farelogix, Kayak and Sabre Holdings. Industry experts say Microsoft&#8217;s move is typical of a Google rival and that the ITA debate underlines growing tensions in the internet search market.</p>
<p>In response to the criticism, Google has said it believes the acquisition &#8220;will create a new, easier way for users to find better flight information online, which should encourage more users to make their flight purchases online&#8221; and will benefit passengers, airlines and online travel agencies. It claims there are no intentions to enter the online travel business and the ITA deal is being considered only to improve Google&#8217;s abilities to provide the best and most relevant searches for online travel seekers.</p>
<p>The regulatory commission is currently looking into the purchase. FairSearch.org has said it will file a federal lawsuit to block the purchase if it is allowed to go ahead.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/12/15/microsofts-locked-horns-with-google-again-why-this-time/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>December 2010 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2010/12/15/december-2010-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2010/12/15/december-2010-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 15 Dec 2010 11:19:30 +0000</pubDate>
		<dc:creator>Mother Superior</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[bulletins]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7823</guid>
		<description><![CDATA[As mentioned in the previous post on this month's security bulletin releases, there are now confirmed to be 17 security bulletins, addressing 40 vulnerabilities.

]]></description>
			<content:encoded><![CDATA[<p>As mentioned in the <a title="December 2010 Security Bulletin Release Advance Notification" href="http://blog.ukfast.co.uk/2010/12/14/december-2010-security-bulletin-release-advance-notification/"><span style="text-decoration: underline;">previous post</span> </a>on this month&#8217;s security bulletin releases, there are now confirmed to be<strong> 17 security bulletins, addressing 40 vulnerabilities</strong>.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided.</p>
<table border="1" cellspacing="0" cellpadding="0" width="611">
<colgroup span="1">
<col span="1" width="64"></col>
<col span="1" width="176"></col>
<col span="1" width="118"></col>
<col span="2" width="126"></col>
</colgroup>
<tbody>
<tr height="64">
<td width="64" height="64"><strong>Bulletin ID</strong></td>
<td width="176"><strong>Bulletin Title and Executive Summary</strong></td>
<td width="127"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td width="118"><strong>Restart Requirement</strong></td>
<td width="126"><strong>Affected Software</strong></td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="75"><a href="http://go.microsoft.com/fwlink/?LinkId=206495">MS10-090</a></td>
<td rowspan="2" width="176">Cumulative Security Update for Internet Explorer (2416400)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></td>
<td rowspan="2" width="126">Requires restart</td>
<td width="126">Microsoft Windows,</td>
</tr>
<tr height="55">
<td width="127" height="55">Remote Code Execution</td>
<td width="126">Internet Explorer</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="86"><a href="http://go.microsoft.com/fwlink/?LinkId=203895">MS10-091</a></td>
<td rowspan="2" width="176">Vulnerabilities in the OpenType Font (OTF) Driver Could Allow Remote Code Execution (2296199)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a></td>
<td rowspan="2" width="126">Requires restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="66">
<td width="127" height="66">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="74"><a href="http://go.microsoft.com/fwlink/?LinkId=203463">MS10-092</a></td>
<td rowspan="2" width="176">Vulnerability in Task Scheduler Could Allow Elevation of Privilege (2305420)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">Requires restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="54">
<td width="127" height="54">Elevation of Privilege</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="79"><a href="http://go.microsoft.com/fwlink/?LinkId=206698">MS10-093</a></td>
<td rowspan="2" width="176">Vulnerability in Windows Movie Maker Could Allow Remote Code Execution (2424434)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="59">
<td width="127" height="59">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="76"><a href="http://go.microsoft.com/fwlink/?LinkId=206699">MS10-094</a></td>
<td rowspan="2" width="176">Vulnerability in Windows Media Encoder Could Allow Remote Code Execution (2447961)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="56">
<td width="127" height="56">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="82"><a href="http://go.microsoft.com/fwlink/?LinkID=206683">MS10-095</a></td>
<td rowspan="2" width="176">Vulnerability in Microsoft Windows Could Allow Remote Code Execution (2385678)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">Requires restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="62">
<td width="127" height="62">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="77"><a href="http://go.microsoft.com/fwlink/?LinkId=206738">MS10-096</a></td>
<td rowspan="2" width="176">Vulnerability in Windows Address Book Could Allow Remote Code Execution (2423089)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="57">
<td width="127" height="57">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="77"><a href="http://go.microsoft.com/fwlink/?LinkId=206689">MS10-097</a></td>
<td rowspan="2" width="176">Insecure Library Loading in Internet Connection Signup Wizard Could Allow Remote Code Execution (2443105)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="57">
<td width="127" height="57">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="70"><a href="http://go.microsoft.com/fwlink/?LinkId=204869">MS10-098</a></td>
<td rowspan="2" width="176">Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege (2436673)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">Requires restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="50">
<td width="127" height="50">Elevation of Privilege</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="71"><a href="http://go.microsoft.com/fwlink/?LinkId=206365">MS10-099</a></td>
<td rowspan="2" width="176">Vulnerability in Routing and Remote Access Could Allow Elevation of Privilege (2440591)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">Requires restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="51">
<td width="127" height="51">Elevation of Privilege</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="76"><a href="http://go.microsoft.com/fwlink/?LinkId=204906">MS10-100</a></td>
<td rowspan="2" width="176">Vulnerability in Consent User Interface Could Allow Elevation of Privilege (2442962)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="56">
<td width="127" height="56">Elevation of Privilege</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="64"><a href="http://go.microsoft.com/fwlink/?LinkId=201319">MS10-101</a></td>
<td rowspan="2" width="176">Vulnerability in Windows Netlogon Service Could Allow Denial of Service (2207559)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">Requires restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="44">
<td width="127" height="44">Denial of Service</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="57"><a href="http://go.microsoft.com/fwlink/?LinkId=205309">MS10-102</a></td>
<td rowspan="2" width="176">Vulnerability in Hyper-V Could Allow Denial of Service (2345316)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">Requires restart</td>
<td rowspan="2" width="126">Microsoft Windows</td>
</tr>
<tr height="37">
<td width="127" height="37">Denial of Service</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="66"><a href="http://go.microsoft.com/fwlink/?LinkId=198156">MS10-103</a></td>
<td rowspan="2" width="176">Vulnerabilities in Microsoft Publisher Could Allow Remote Code Execution (2292970)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft Office</td>
</tr>
<tr height="46">
<td width="127" height="46">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="75"><a href="http://go.microsoft.com/fwlink/?LinkId=206469">MS10-104</a></td>
<td rowspan="2" width="176">Vulnerability in Microsoft SharePoint Could Allow Remote Code Execution (2455005)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft SharePoint</td>
</tr>
<tr height="55">
<td width="127" height="55">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="80"><a href="http://go.microsoft.com/fwlink/?LinkId=147425">MS10-105</a></td>
<td rowspan="2" width="176">Vulnerabilities in Microsoft Office Graphics Filters Could Allow for Remote Code Execution (968095)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft Office</td>
</tr>
<tr height="60">
<td width="127" height="60">Remote Code Execution</td>
</tr>
<tr height="20">
<td rowspan="2" width="56" height="73"><a href="http://go.microsoft.com/fwlink/?LinkID=204624">MS10-106</a></td>
<td rowspan="2" width="176">Vulnerability in Microsoft Exchange Server Could Allow Denial of Service (2407132)</td>
<td width="127"><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Moderate</a></td>
<td rowspan="2" width="126">May require restart</td>
<td rowspan="2" width="126">Microsoft Exchange</td>
</tr>
<tr height="53">
<td width="127" height="53">Denial of Service</td>
</tr>
</tbody>
</table>
<p>In summary, we are <strong>likely to see</strong> updates requiring <strong>reboots</strong> of servers <strong>this month</strong>.</p>
<p>MC.</p>
<p><em>(as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</em></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/12/15/december-2010-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>December 2010 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2010/12/14/december-2010-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2010/12/14/december-2010-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Tue, 14 Dec 2010 16:14:38 +0000</pubDate>
		<dc:creator>Mother Superior</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[bulletin]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7809</guid>
		<description><![CDATA[This 'Patch Tuesday' for December 2010, sees the release of 17 bulletins addressing 40 vulnerabilities.

13 bulletins directly affect Windows; only 2 bulletins are considered Critical severity rating.
]]></description>
			<content:encoded><![CDATA[<p>This <a title="December 2010 Security Bulletin Release" href="http://blog.ukfast.co.uk/2010/12/15/december-2010-security-bulletin-release/">&#8216;</a><strong><a title="December 2010 Security Bulletin Release" href="http://blog.ukfast.co.uk/2010/12/15/december-2010-security-bulletin-release/">Patch Tuesday&#8217; for December 2010</a>,</strong> sees the release of<strong> 17 </strong><strong>bulletins addressing 40 vulnerabilities.</strong></p>
<p><strong>13 bulletins directly affect</strong> <strong>Windows;</strong> only 2 bulletins are considered Critical severity rating.</p>
<table border="1" cellspacing="0" cellpadding="0" width="560">
<colgroup span="1">
<col span="1" width="73"></col>
<col span="1" width="270"></col>
<col span="1" width="120"></col>
<col span="1" width="120"></col>
</colgroup>
<tbody>
<tr height="21">
<td width="73" height="21"><strong>Bulletin ID</strong></td>
<td width="329"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td width="138"><strong>Restart Requirement</strong></td>
<td width="139"><strong>Affected Software</strong></td>
</tr>
<tr height="20">
<td height="20">Bulletin 1</td>
<td>Critical</td>
<td>Requires restart</td>
<td>Microsoft Windows,</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td>Internet Explorer</td>
</tr>
<tr height="20">
<td height="20">Bulletin 2</td>
<td>Critical</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 3</td>
<td>Important</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Elevation of Privilege</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 4</td>
<td>Important</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 5</td>
<td>Important</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 6</td>
<td>Important</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 7</td>
<td>Important</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 8</td>
<td>Important</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 9</td>
<td>Important</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Elevation of Privilege</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 10</td>
<td>Important</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Elevation of Privilege</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 11</td>
<td>Important</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Elevation of Privilege</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 12</td>
<td>Important</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Denial of Service</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 13</td>
<td>Important</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Denial of Service</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 14</td>
<td>Important</td>
<td>May require restart</td>
<td>Microsoft Office</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 15</td>
<td>Important</td>
<td>May require restart</td>
<td>Microsoft SharePoint</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 16</td>
<td>Important</td>
<td>May require restart</td>
<td>Microsoft Office</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Remote Code Execution</td>
<td></td>
<td></td>
</tr>
<tr height="20">
<td height="20">Bulletin 17</td>
<td>Moderate</td>
<td>May require restart</td>
<td>Microsoft Exchange</td>
</tr>
<tr height="21">
<td height="21"></td>
<td>Denial of Service</td>
<td></td>
<td></td>
</tr>
</tbody>
</table>
<p>We will issue further information on the impact of this months updates once they have been released for testing early next week.</p>
<p>The &#8216;Microsoft Security Bulletin Advance Notification for December 2010&#8242; page <a href="http://www.microsoft.com/technet/security/bulletin/ms10-dec.mspx" target="_blank">here</a> should be referenced for detailed information on how these updates are to affect your servers or solutions when <strong>released on 14th December </strong><em>(as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</em></p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/12/14/december-2010-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>November 2010 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2010/11/10/november-2010-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2010/11/10/november-2010-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 10 Nov 2010 12:27:57 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[bulletins]]></category>
		<category><![CDATA[patch tuesday]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7647</guid>
		<description><![CDATA[As mentioned in the previous post on this months security bulletin releases, there are now confirmed to be 3 security bulletins, addressing 11 vulnerabilities.]]></description>
			<content:encoded><![CDATA[<p>As mentioned in the <a href="http://www.ukfastblog.co.uk/2010/11/05/november-2010-security-bulletin-release-advance-notification/" target="_blank">previous post</a> on this months security bulletin releases, there are now confirmed to be<strong> 3 security bulletins, addressing 11 vulnerabilities</strong>.</p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-nov.mspx" target="_blank">This month</a> follows a month where Microsoft released their largest number of bulletins to date and as is typical following such, bulletins released today are minimal.</p>
<p>So much so that for Windows Server Operating systems, unless you have specific applications installed you&#8217;ll find yourself unaffected.</p>
<p>The following table shows affected software by bulletin and the likelihood of an Operating System restart being required and hence impacting on services provided.</p>
<table id="ERC" border="1" cellspacing="0" cellpadding="0" width="86%">
<thead>
<tr valign="top">
<td id="colEUC" width="10%"><strong>Bulletin ID</strong></td>
<td id="colEYC" width="39%"><strong>Bulletin Title and Executive Summary</strong></td>
<td id="colE3C" width="16%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td id="colEAD" width="16%"><strong>Restart Requirement</strong></td>
<td id="colEED" width="17%"><strong>Affected Software</strong></td>
</tr>
</thead>
<tbody>
<tr valign="top">
<td><a href="http://go.microsoft.com/fwlink/?LinkId=203241">MS10-087</a></td>
<td>Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (2423930)</td>
<td><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a><br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Office</td>
</tr>
<tr valign="top">
<td><a href="http://go.microsoft.com/fwlink/?LinkId=198186">MS10-088</a></td>
<td>Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution (2293386)</td>
<td><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Office</td>
</tr>
<tr valign="top">
<td><a href="http://go.microsoft.com/fwlink/?LinkId=199536">MS10-089</a></td>
<td>Vulnerabilities in Forefront Unified Access Gateway (UAG) Could Allow Elevation of Privilege (2316074)</td>
<td><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td>May require restart</td>
<td>Microsoft Forefront United Access Gateway</td>
</tr>
</tbody>
</table>
<p>In summary, we are <strong>will not </strong><strong>see</strong> updates requiring <strong>reboots</strong> of servers <strong>this month</strong> <strong><em>unless</em></strong> you have <strong>applicable</strong> <strong>software</strong> installed <strong>or missed updates</strong> from previous months.</p>
<p>Finally, the previously released <a href="http://www.microsoft.com/technet/security/advisory/2458511.mspx" target="_blank">Security Advisory</a> for Internet Explorer which should certainly concern those using the product or developing sites to be viewed by it, has had no update since our last posting on 5th of November.</p>
<p>MC.</p>
<p><em>(as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</em></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/11/10/november-2010-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Hyper-V Cloud Launch</title>
		<link>http://blog.ukfast.co.uk/2010/11/08/microsoft-hyper-v-cloud-launch/</link>
		<comments>http://blog.ukfast.co.uk/2010/11/08/microsoft-hyper-v-cloud-launch/#comments</comments>
		<pubDate>Mon, 08 Nov 2010 17:35:03 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[DDC]]></category>
		<category><![CDATA[hyper-v]]></category>
		<category><![CDATA[private cloud]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7624</guid>
		<description><![CDATA[The Buzz is all about Microsoft Hyper-V Cloud - as they announce it at their main customer event for 2010 - at TechEd Europe 2010 in Berlin today.]]></description>
			<content:encoded><![CDATA[<p>The Buzz is all about <a href="http://www.ukfast.co.uk/hyper-v-server.html" target="_blank">Microsoft Hyper-V Cloud</a>- as they announce it at their main customer event for 2010 &#8211; at <a href="http://www.microsoft.com/europe/teched/" target="_blank">TechEd Europe</a> 2010 in Berlin today.</p>
<p>Microsoft <a href="http://www.microsoft.com/Presspass/press/2010/nov10/11-08MSTEEPR.mspx" target="_blank">press statements </a>go into significant detail on the offerings and it is intended that the new offerings will take on the mantle from the previous &#8216;DDC&#8217; (Dynamic DataCenter) to help push the Hyper-V based cloud solutions to the next level.</p>
<p>UKFast are a founder member of the <a href="http://www.microsoft.com/hosting/dynamicdatacenter/cloudproviders.html" target="_blank">Microsoft Dynamic Datacenter alliance</a> and are an accredited Microsoft Hyper-V Cloud Service Provider having rolled out tens of Private Cloud solutions supporting hundreds of organisations.</p>
<p>Contact one of our solutions sales specialists for more information!</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/11/08/microsoft-hyper-v-cloud-launch/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>November 2010 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2010/11/05/november-2010-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2010/11/05/november-2010-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Fri, 05 Nov 2010 09:35:59 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[bulletin]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7599</guid>
		<description><![CDATA[This 'Patch Tuesday' for November 2010, sees the release of 3 bulletins addressing 11 vulnerabilities.

No bulletins directly affect Windows; only 1 bulletin is considered Critical severity rating.

]]></description>
			<content:encoded><![CDATA[<p>This <a title="November 2010 Security Bulletin Release" href="http://blog.ukfast.co.uk/2010/11/10/november-2010-security-bulletin-release/">&#8216;</a><strong><a title="November 2010 Security Bulletin Release" href="http://blog.ukfast.co.uk/2010/11/10/november-2010-security-bulletin-release/">Patch Tuesday&#8217; for November 2010</a>,</strong> sees the release of<strong> 3 </strong><strong>bulletins addressing 11 vulnerabilities.</strong></p>
<p><strong>No bulletins directly affect</strong> <strong>Windows;</strong> only 1 bulletin is considered Critical severity rating.</p>
<table id="E5C" border="1" cellspacing="0" cellpadding="0" width="86%">
<thead>
<tr valign="top">
<td id="colEBD" width="16%"><strong>Bulletin ID</strong></td>
<td id="colEFD" width="31%"><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td id="colEJD" width="23%"><strong>Restart Requirement</strong></td>
<td id="colEND" width="28%"><strong>Affected Software</strong></td>
</tr>
</thead>
<tbody>
<tr valign="top">
<td>Bulletin 1</td>
<td><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Critical</a><br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Office</td>
</tr>
<tr valign="top">
<td>Bulletin 2</td>
<td><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Office</td>
</tr>
<tr valign="top">
<td>Bulletin 3</td>
<td><a href="http://go.microsoft.com/fwlink/?LinkId=21140">Important</a><br />
Elevation of Privilege</td>
<td>May require restart</td>
<td>Microsoft Forefront Unified Access Gateway</td>
</tr>
</tbody>
</table>
<p>It should be noted that whilst these bulletins do not directly affect Windows, <strong>if you have Office</strong> components installed <strong>on your Operating System</strong>, you <strong>may</strong> <strong>be</strong> <strong>affected.</strong></p>
<p>In addition, November has also already seen announcement of a <a href="http://www.microsoft.com/technet/security/advisory/2458511.mspx" target="_blank">Security Advisory</a> for Internet Explorer which should certainly concern those using the product or developing sites to be viewed by it.</p>
<p>We will issue further information on the impact of this months updates once they have been released for testing early next week.</p>
<p>The &#8216;Microsoft Security Bulletin Advance Notification for November 2010&#8242; page <a href="http://www.microsoft.com/technet/security/bulletin/ms10-nov.mspx" target="_blank">here</a> should be referenced for detailed information on how these updates are to affect your servers or solutions when <strong>released on 9th November </strong><em>(as usual, as a UKFast customer, you benefit from these <a href="http://www.ukfast.co.uk/patch-updates-predeployment-testing.html">updates being applied automatically</a> unless you have opted out of this service.)</em></p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/11/05/november-2010-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Tech tip? Or Top Tech?</title>
		<link>http://blog.ukfast.co.uk/2010/10/26/tech-tip-or-top-tech/</link>
		<comments>http://blog.ukfast.co.uk/2010/10/26/tech-tip-or-top-tech/#comments</comments>
		<pubDate>Tue, 26 Oct 2010 11:55:03 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[ebook]]></category>
		<category><![CDATA[training]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7564</guid>
		<description><![CDATA[I've previously posted up links to free downloadable eBooks regarding techologies and thanks to the guys over at Microsoft Press - there are now a plethora of new ones available to help you.]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve previously posted up links to free downloadable eBooks regarding techologies and thanks to the guys over at Microsoft Press &#8211; there are now a plethora of new ones available to help you.</p>
<p>Take a look at the following top tech picks from the site below &#8211; there are plenty more on the site if you want to take a look <a href="http://blogs.msdn.com/b/microsoft_press/" target="_blank">here</a>.</p>
<p>MC.</p>
<p><a href="http://blogs.msdn.com/b/microsoft_press/archive/2010/09/13/free-ebook-moving-to-microsoft-visual-studio-2010.aspx" target="_blank">Free ebook: Moving to Microsoft Visual Studio 2010</a> (10 chapters by by Patrice Pelland, Pascal Paré, and Ken Haines)</p>
<p><a href="http://blogs.msdn.com/b/microsoft_press/archive/2009/10/20/free-ebook-introducing-windows-server-2008-r2.aspx" target="_blank">Free ebook: Introducing Windows Server 2008 R2</a> (9 chapters by Charlie Russel and Craig Zacker)</p>
<p><a href="http://blogs.msdn.com/b/microsoft_press/archive/2010/04/14/free-ebook-introducing-microsoft-sql-server-2008-r2.aspx" target="_blank">Free ebook: Introducing Microsoft SQL Server 2008 R2</a> (10 chapters by Ross Mistry and Stacia Misner)</p>
<p><a href="http://blogs.msdn.com/b/microsoft_press/archive/2010/02/16/free-ebook-understanding-microsoft-virtualization-r2-solutions.aspx" target="_blank">Free ebook: Understanding Microsoft Virtualization Solutions (Second Edition)</a> (6 chapters by Mitch Tulloch)</p>
<p><a href="http://blogs.msdn.com/b/microsoft_press/archive/2010/01/20/free-ebook-first-look-microsoft-office-2010.aspx" target="_blank">Free ebook: First Look Microsoft Office 2010</a> (14 chapters by Katherine Murray)</p>
<p><a href="http://blogs.msdn.com/b/microsoft_press/archive/2009/10/26/free-e-book-windows-7-troubleshooting-tips.aspx" target="_blank">Free ebook: Windows 7 troubleshooting tips</a> (short ebook by Mitch Tulloch)</p>
<p><a href="http://blogs.msdn.com/b/microsoft_press/archive/2009/10/16/free-e-book-deploying-windows-7-essential-guidance.aspx" target="_blank">Free ebook: Deploying Windows 7, Essential Guidance</a> (10 chapters from the <em><a href="http://blogs.msdn.com/b/microsoft_press/archive/2009/10/07/new-book-windows-7-resource-kit.aspx" target="_blank">Windows 7 Resource Kit</a></em> and 6 TechNet articles)</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/10/26/tech-tip-or-top-tech/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft to ban sick PCs?</title>
		<link>http://blog.ukfast.co.uk/2010/10/18/microsoft-to-ban-sick-pcs/</link>
		<comments>http://blog.ukfast.co.uk/2010/10/18/microsoft-to-ban-sick-pcs/#comments</comments>
		<pubDate>Mon, 18 Oct 2010 15:00:36 +0000</pubDate>
		<dc:creator>Lady Penelope</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[banned]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[hardware]]></category>
		<category><![CDATA[pcs]]></category>
		<category><![CDATA[resilience]]></category>
		<category><![CDATA[Scott Charney]]></category>
		<category><![CDATA[trustworthy computing]]></category>
		<category><![CDATA[victim]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7533</guid>
		<description><![CDATA[A senior Microsoft researcher has this week been arguing that PCs infected with a virus should be blocked from the internet. Scott Charney, the corporate vice president for Microsoft&#8217;s Trustworthy Computing, wrote in a blog post that infected computers should be temporarily banned from the internet until they have been cleaned. The proposal is intended [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: left;">A senior Microsoft researcher has this week been arguing that PCs infected with a virus should be blocked from the internet.</p>
<p style="text-align: left;">Scott Charney, the corporate vice president for Microsoft&#8217;s Trustworthy Computing, wrote in a blog post that infected computers should be temporarily banned from the internet until they have been cleaned.</p>
<p style="text-align: left;">The proposal is intended to tackle botnets and prevent malware from spreading across the internet.</p>
<p style="text-align: left;">Charney writes: &#8220;Just as when an individual who is not vaccinated puts others&#8217; health at risk, computers that are not protected or have been compromised with a botnet put others at risk and pose a greater threat to society.&#8221;</p>
<p style="text-align: left;">At UKFast we are more than a little familiar with the importance of security, as is no doubt clear from our numerous blogs on the subject.</p>
<p style="text-align: left;">However, the question has to be asked, why don’t Microsoft aim to ensure the resilience of PCs rather than simply banning those that fall victim to malware?</p>
<p style="text-align: left;">As the leading software giant for PCs globally, Microsoft are in an incredibly valuable position to increase security across their wide-reaching market.</p>
<p style="text-align: left;">Many have fallen victim to a computer virus at one time or another and therefore the focus that Microsoft is placing upon banishing those infected rather than assisting them, is leaving a bitter taste in the mouth of many critics.</p>
<p style="text-align: left;">Surely, the principles behind tracking, isolating and quarantining contaminated computers could be applied to locating and fixing infected hardware?</p>
<p style="text-align: left;">I look forward to hearing your thoughts on this subject.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/10/18/microsoft-to-ban-sick-pcs/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>October 2010 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2010/10/13/october-2010-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2010/10/13/october-2010-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 13 Oct 2010 13:21:32 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7484</guid>
		<description><![CDATA[As mentioned in the previous post on this months security bulletin releases, there are now confirmed to be 16 security bulletins, addressing 49 vulnerabilities.]]></description>
			<content:encoded><![CDATA[<p>As mentioned in the <a href="http://www.ukfastblog.co.uk/2010/10/08/october-2010-security-bulletin-release-advance-notification/" target="_blank">previous post</a> on this months security bulletin releases, there are now confirmed to be<strong> 16 security bulletins, addressing 49 vulnerabilities</strong>.</p>
<p><a href="http://www.microsoft.com/technet/security/bulletin/ms10-oct.mspx" target="_blank">This month</a> is a milestone for Microsoft in that it reaches a new high for both the number of bulletins released and vulnerabilites being addressed.</p>
<p>Of the 16 security bulletins, 12 address Windows, 3 Office, 1 .NET and 1 Internet Explorer. Whilst all should be given due attention in their relevant environments, our primary focus is those affecting Windows Server Operating Systems.</p>
<p>As such, the following table focuses on affected Server OS&#8217;s by bulletin and the likelihood of a Operating System restart being required and hence impacting on services provided.</p>
<table border="1" cellspacing="0" cellpadding="0" width="630">
<colgroup span="1">
<col span="1" width="81"></col>
<col span="1" width="101"></col>
<col span="5" width="128"></col>
</colgroup>
<tbody>
<tr height="41">
<td width="55" height="41"><strong>Bulletin Identifier</strong></td>
<td width="85"><strong>Aggregate Severity Rating</strong></td>
<td width="85"><strong>Windows Server 2003 32-bit</strong></td>
<td width="85"><strong>Windows Server 2003 x64</strong></td>
<td width="85"><strong>Windows Server 2008 32-bit</strong></td>
<td width="85"><strong>Windows Server 2008 x64</strong></td>
<td width="85"><strong>Windows Server 2008 R2</strong></td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-071.mspx">MS10-071</a></td>
<td>Important</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-073.mspx">MS10-073</a></td>
<td>Important</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-074.mspx">MS10-074</a></td>
<td>Moderate</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-075.mspx">MS10-075</a></td>
<td>None</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Not applicable</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-076.mspx">MS10-076</a></td>
<td>Critical</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-077.mspx">MS10-077</a></td>
<td>Critical</td>
<td>Not applicable</td>
<td>May restart</td>
<td>Not applicable</td>
<td>May restart</td>
<td>May restart</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-078.mspx">MS10-078</a></td>
<td>Important</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Not applicable</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-081.mspx">MS10-081</a></td>
<td>Important</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-082.mspx">MS10-082</a></td>
<td>Important</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
<td>May restart</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-083.mspx">MS10-083</a></td>
<td>Important</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-084.mspx">MS10-084</a></td>
<td>Important</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Not applicable</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-085.mspx">MS10-085</a></td>
<td>None</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Restart required</td>
<td>Restart required</td>
<td>Restart required</td>
</tr>
<tr height="21">
<td height="21"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-086.mspx">MS10-086</a></td>
<td>None</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Not applicable</td>
<td>Restart required</td>
</tr>
</tbody>
</table>
<p>As can be seen, there are a large number of <strong>updates affecting 2003, 2008 &amp; 2008 R2</strong> but most importantly we are <strong>highly likely to see widespread requirement for Operating System restarts</strong>. Typically where &#8216;May restart&#8217; is listed, this will require a restart if components being updated are in use at the time of update or if services cannot for some reason be stopped &#8211; so planning for a restart is highly recommended.</p>
<p>In addition to reviewing the official Security Bulletin, it is also worth reviewing the information on the <a href="http://blogs.technet.com/b/msrc/archive/2010/10/11/october-2010-security-bulletin-release.aspx" target="_blank">Microsoft Security Response Center blog</a> regarding this months updates where more detail on real world scenarios is discussed.  The below slides are from the blog and show the Deployment Priority and Severity and Exploitability Index ratings for this months updates.</p>
<p style="text-align: center;"><img class="aligncenter size-large wp-image-7487" title="october-10 deploy" src="http://www.ukfastblog.co.uk/wp-content/uploads/2010/10/october-10-deploy-1024x576.png" alt="" width="581" height="327" /><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2010/10/october-10-severity.png"><img class="aligncenter size-large wp-image-7488" title="october-10 severity" src="http://www.ukfastblog.co.uk/wp-content/uploads/2010/10/october-10-severity-1024x576.png" alt="" width="581" height="327" /></a></p>
<p>MC.</p>
<p><em>(as usual, as a UKFast customer, you benefit from these updates being applied automatically unless you have opted out of this service.)</em></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/10/13/october-2010-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>October 2010 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2010/10/08/october-2010-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2010/10/08/october-2010-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Fri, 08 Oct 2010 08:41:40 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[bulletin]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[update]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7437</guid>
		<description><![CDATA[This 'Patch Tuesday' for October 2010, sees the release of 16 bulletins addressing 49 vulnerabilities. All bulletins affect Windows; 4 carrying Critical severity rating.]]></description>
			<content:encoded><![CDATA[<p>This <strong>&#8216;Patch Tuesday&#8217; for October 2010</strong>, sees the release of<strong> 16 </strong><strong>bulletins addressing 49 vulnerabilities.</strong> All bulletins affect Windows; 4 carrying Critical severity rating.</p>
<p>The limited information available at this pre-release stage is as follows:</p>
<table id="E5C" style="width: 600px; height: 512px;" border="1" cellspacing="0" cellpadding="0" width="600">
<colgroup span="1">
<col span="1" width="40"></col>
<col span="1" width="120"></col>
<col span="3" width="80"></col>
</colgroup>
<tbody>
<tr valign="top">
<td><strong>Bulletin ID</strong></td>
<td><strong>Maximum Severity Rating and Vulnerability Impact</strong></td>
<td><strong>Restart Requirement</strong></td>
<td><strong>Affected Software</strong></td>
</tr>
<tr valign="top">
<td>Bulletin 1</td>
<td>Critical<br />
Remote Code Execution</td>
<td>Requires restart</td>
<td>Microsoft Windows,<br />
Internet Explorer</td>
</tr>
<tr valign="top">
<td>Bulletin 2</td>
<td>Critical<br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 3</td>
<td>Critical<br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 4</td>
<td>Critical<br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 5</td>
<td>Important<br />
Information Disclosure</td>
<td>May require restart</td>
<td>Microsoft Server Software</td>
</tr>
<tr valign="top">
<td>Bulletin 6</td>
<td>Important<br />
Elevation of Privilege</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 7</td>
<td>Important<br />
Elevation of Privilege</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 8</td>
<td>Important<br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Office</td>
</tr>
<tr valign="top">
<td>Bulletin 9</td>
<td>Important<br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Office</td>
</tr>
<tr valign="top">
<td>Bulletin 10</td>
<td>Important<br />
Remote Code Execution</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 11</td>
<td>Important<br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 12</td>
<td>Important<br />
Remote Code Execution</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 13</td>
<td>Important<br />
Elevation of Privilege</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 14</td>
<td>Important<br />
Denial of Service</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 15</td>
<td>Moderate<br />
Remote Code Execution</td>
<td>May require restart</td>
<td>Microsoft Windows</td>
</tr>
<tr valign="top">
<td>Bulletin 16</td>
<td>Moderate<br />
Tampering</td>
<td>Requires restart</td>
<td>Microsoft Windows</td>
</tr>
</tbody>
</table>
<p>In addition, September also saw the release of an out-of-band bulletin by Microsoft (<a href="http://www.ukfastblog.co.uk/2010/09/29/september-out-of-band-update-released/" target="_blank">MS10-070</a>) which we issued guidance on last week and should be considered a critical update for .net based web services.</p>
<p>We will issue further information on the impact of this months updates once they have been released for testing early next week.</p>
<p>The &#8216;Microsoft Security Bulletin Advance Notification for October 2010&#8242; page <a href="http://www.microsoft.com/technet/security/bulletin/ms10-oct.mspx" target="_blank">here</a> should be referenced for detailed information on how these updates are to affect your servers or solutions when <strong>released on 12th October </strong><em>(as usual, as a UKFast customer, you benefit from these updates being applied automatically unless you have opted out of this service.)</em></p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/10/08/october-2010-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>September Out-of Band update released</title>
		<link>http://blog.ukfast.co.uk/2010/09/29/september-out-of-band-update-released/</link>
		<comments>http://blog.ukfast.co.uk/2010/09/29/september-out-of-band-update-released/#comments</comments>
		<pubDate>Wed, 29 Sep 2010 10:30:23 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[out-of-band]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[update]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7326</guid>
		<description><![CDATA[[UPDATE 01/10/2010: MS10-070 was released to Windows Update overnight]
On September 28th 2010, Microsoft released MS10-070 - a windows update released outside of the normal update schedule.

This update addresses vulnerabilities in the .NET framework and affects all versions of .NET on Server Operating Systems.
]]></description>
			<content:encoded><![CDATA[<p><span style="color: #ff0000;"><em>[UPDATE 01/10/2010: MS10-070 was released to Windows Update overnight last night and will be being applied to computers configured with Automatic updates. As usual, as a UKFast customer, you benefit from updates being applied automatically unless you have opted out of this service.]</em></span></p>
<p>On September 28th 2010, Microsoft released MS10-070 &#8211; a windows update released <strong><span style="text-decoration: underline;">outside of the normal update schedule.</span></strong></p>
<p>This update addresses vulnerabilities in the .NET framework and affects all versions of .NET on Server Operating Systems.</p>
<p><em>&#8220;The vulnerability could allow information disclosure. An attacker who successfully exploited this vulnerability could read data, such as the view state, which was encrypted by the server. This vulnerability can also be used for data tampering, which, if successfully exploited, could be used to decrypt and tamper with the data encrypted by the server. Microsoft .NET Framework versions prior to Microsoft .NET Framework 3.5 Service Pack 1 are not affected by the file content disclosure portion of this vulnerability.&#8221; &#8211; </em>from <a href="http://www.microsoft.com/technet/security/bulletin/ms10-070.mspx" target="_blank">Microsoft Security Bulletin MS10-070</a>.</p>
<p>As the vulnerability has been publically disclosed, the update is classified as important and Microsoft (whilst not yet releasing to Windows Update) are advising implementation of the update at the &#8216;earliest&#8217; convenience.  The update will be released to the broader audience via Windows Update over the next few days and we will report on this here when we are informed.</p>
<p>Because this is an update to the .NET framework, the update applies across the board to Windows XP, Vista, Windows 7, <strong><span style="text-decoration: underline;">Windows Server 2003, 2008 and 2008 R2</span></strong>.</p>
<p>Once applied, the update does not require a reboot <strong><span style="text-decoration: underline;">unless</span></strong> the update process was unable to stop services or access files associated.  This will therefore <strong><span style="text-decoration: underline;">require</span></strong> interuption to services for applications which utilise .NET, regardless of whether a reboot is necessary.</p>
<p>There are known issues associated with updating the .NET framework code and any issues experienced in applying this update should first refer to the Microsoft knowledge base article <a href="http://support.microsoft.com/kb/2418042" target="_blank">2418042</a>.</p>
<p>For the time being, prior to release via Windows Update, the update can be located via the Microsoft Download site by searching on MS10-070 or .. clicking <a href="http://www.microsoft.com/downloads/en/results.aspx?freetext=MS10-070&amp;displaylang=en&amp;stype=s_basic" target="_blank">here</a>.</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/09/29/september-out-of-band-update-released/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>September 2010 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2010/09/15/september-2010-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2010/09/15/september-2010-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 15 Sep 2010 10:49:18 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[bulletin]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[update]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7300</guid>
		<description><![CDATA[As mentioned in the previous post on this months security bulletin releases, there are now confirmed to be 9 security bulletins, addressing 11 vulnerabilities.  Refer to this page for details on all updates released this month.]]></description>
			<content:encoded><![CDATA[<p>As mentioned in the <a href="http://www.ukfastblog.co.uk/2010/09/10/september-2010-security-bulletin-release-advance-notification/" target="_blank">previous post</a> on this months security bulletin releases, there are now confirmed to be <strong>9 security bulletins, addressing 11 vulnerabilities</strong>.  Refer to <a href="http://www.microsoft.com/technet/security/bulletin/ms10-sep.mspx" target="_blank">this</a> page for details on all updates released this month.  Affected Server OS&#8217;s are listed below:</p>
<table border="1" cellspacing="0" cellpadding="0" width="640">
<colgroup span="1">
<col span="1" width="119"></col>
<col span="1" width="79"></col>
<col span="2" width="141"></col>
<col span="1" width="160"></col>
</colgroup>
<tbody>
<tr height="21">
<td width="119" height="21"><strong>Bulletin Identifier</strong></td>
<td width="79"><strong>Severity</strong></td>
<td width="141"><strong>Windows Server 2003</strong></td>
<td width="141"><strong>Windows Server 2008</strong></td>
<td width="160"><strong>Windows Server 2008 R2</strong></td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/ms10-061.mspx">MS10-061</a></td>
<td>(Important)</td>
<td>Requires restart</td>
<td>Requires restart</td>
<td>Requires restart</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-062.mspx">MS10-062</a></td>
<td>(Critical)</td>
<td>May require restart</td>
<td>May require restart</td>
<td>Not applicable</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-063.mspx">MS10-063</a></td>
<td>(Critical)</td>
<td>Requires restart</td>
<td>Requires restart</td>
<td>Not applicable</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-065.mspx">MS10-065</a></td>
<td>(Important)</td>
<td>May require restart</td>
<td>May require restart</td>
<td>May require restart</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/ms10-066.mspx">MS10-066</a></td>
<td>(Important)</td>
<td>Requires restart</td>
<td>Not applicable</td>
<td>Not applicable</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-067.mspx">MS10-067</a></td>
<td>(Important)</td>
<td>May require restart</td>
<td>Not applicable</td>
<td>Not applicable</td>
</tr>
<tr height="20">
<td height="20"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-068.mspx">MS10-068</a></td>
<td>(Important)</td>
<td>Requires restart</td>
<td>Requires restart</td>
<td>Requires restart</td>
</tr>
<tr height="21">
<td height="21"><a href="http://www.microsoft.com/technet/security/bulletin/MS10-069.mspx">MS10-069</a></td>
<td>(Important)</td>
<td>Requires restart</td>
<td>Not applicable</td>
<td>Not applicable</td>
</tr>
</tbody>
</table>
<p>In addition to the above, if you have previously installed the update relating to MS10-53 (vulnerability in IE), <a href="http://support.microsoft.com/?kbid=2398632" target="_blank">another update</a> <em>- which requires a reboot -</em> to this has been released this month to fix issues with the launch of IE on W7 and W2008 R2.</p>
<p>Since these have been released, limited testing has been undertaken and we can confirm that we are <strong>expecting</strong> <strong>reboots</strong> to be required for <strong>Windows Server 2003, 2008</strong> and <strong>2008 R2</strong>.</p>
<p>MC.</p>
<p><em>(as usual, as a UKFast customer, you benefit from these updates being applied automatically unless you have opted out of this service.)</em></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/09/15/september-2010-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>September 2010 Security Bulletin Release Advance Notification</title>
		<link>http://blog.ukfast.co.uk/2010/09/10/september-2010-security-bulletin-release-advance-notification/</link>
		<comments>http://blog.ukfast.co.uk/2010/09/10/september-2010-security-bulletin-release-advance-notification/#comments</comments>
		<pubDate>Fri, 10 Sep 2010 08:49:13 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7274</guid>
		<description><![CDATA[This 'Patch Tuesday' for September 2010, sees the release of 9 bulletins addressing 11 vulnerabilities. All bulletins affect Windows; 2 carrying Critical severity rating.]]></description>
			<content:encoded><![CDATA[<p>This <strong>&#8216;Patch Tuesday&#8217; for September 2010</strong>, sees the release of<strong> 9 </strong><strong>bulletins addressing 11 vulnerabilities.</strong> All bulletins affect Windows; 2 c<strong></strong>arrying Critical severity rating.</p>
<p>The limited information available at this pre-release stage is as follows:</p>
<table border="1" cellspacing="0" cellpadding="0" width="616">
<colgroup span="1">
<col span="1" width="160"></col>
<col span="1" width="104"></col>
<col span="3" width="128"></col>
</colgroup>
<tbody>
<tr height="41">
<td width="128" height="41"><strong>Bulletin Identifier</strong></td>
<td width="104"><strong>Severity</strong></td>
<td width="128"><strong>Windows Server 2003</strong></td>
<td width="128"><strong>Windows Server 2008</strong></td>
<td width="128"><strong>Windows Server 2008 R2</strong></td>
</tr>
<tr height="20">
<td width="160" height="20">Bulletin 1</td>
<td width="104">(Important)</td>
<td width="128">requires restart</td>
<td width="128">requires restart</td>
<td width="128">requires restart</td>
</tr>
<tr height="20">
<td width="160" height="20">Bulletin 2</td>
<td width="104">(Critical)</td>
<td width="128">may require restart</td>
<td width="128">may require restart</td>
<td width="128">Not applicable</td>
</tr>
<tr height="20">
<td width="160" height="20">Bulletin 3</td>
<td width="104">(Critical)</td>
<td width="128">may require restart</td>
<td width="128">may require restart</td>
<td width="128">Not applicable</td>
</tr>
<tr height="20">
<td width="160" height="20">Bulletin 5</td>
<td width="104">(Important)</td>
<td width="128">may require restart</td>
<td width="128">may require restart</td>
<td width="128">may require restart</td>
</tr>
<tr height="20">
<td width="160" height="20">Bulletin 6</td>
<td width="104">(Important)</td>
<td width="128">requires restart</td>
<td width="128">Not applicable</td>
<td width="128">Not applicable</td>
</tr>
<tr height="20">
<td width="160" height="20">Bulletin 7</td>
<td width="104">(Important)</td>
<td width="128">may require restart</td>
<td width="128">Not applicable</td>
<td width="128">Not applicable</td>
</tr>
<tr height="20">
<td width="160" height="20">Bulletin 8</td>
<td width="104">(Important)</td>
<td width="128">requires restart</td>
<td width="128">requires restart</td>
<td width="128">requires restart</td>
</tr>
<tr height="21">
<td width="160" height="21">Bulletin 9</td>
<td width="104">(Important)</td>
<td width="128">requires restart</td>
<td width="128">Not applicable</td>
<td width="128">Not applicable</td>
</tr>
</tbody>
</table>
<p>We will issue further information on the impact of these updates once they have been released for testing.</p>
<p>The &#8216;Microsoft Security Bulletin Advance Notification for September 2010&#8242; page <a href="http://www.microsoft.com/technet/security/bulletin/ms10-sep.mspx" target="_blank">here</a> should be referenced for detailed information on how these updates affect your servers or solutions when <strong>released on 14th September </strong><em>(as usual, as a UKFast customer, you benefit from these updates being applied automatically unless you have opted out of this service.)</em></p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/09/10/september-2010-security-bulletin-release-advance-notification/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Microsoft Virtualization Certifications</title>
		<link>http://blog.ukfast.co.uk/2010/08/23/microsoft-virtualization-certifications/</link>
		<comments>http://blog.ukfast.co.uk/2010/08/23/microsoft-virtualization-certifications/#comments</comments>
		<pubDate>Mon, 23 Aug 2010 16:20:40 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[certification]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[qualification]]></category>
		<category><![CDATA[system center]]></category>
		<category><![CDATA[training]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7253</guid>
		<description><![CDATA[With all the buzz currently in the industry about 'cloud' technology it's worth keeping up to speed with industry certifications and, especially, ones which provide the core understanding for cloud based solutions.]]></description>
			<content:encoded><![CDATA[<p>With all the buzz currently in the industry about &#8216;cloud&#8217; technology it&#8217;s worth keeping up to speed with industry certifications and, especially, ones which provide the core understanding for cloud based solutions.</p>
<p>Microsoft have many varied certification routes and I will not go in to detail on these here (their <a href="http://www.microsoft.com/learning/en/us/certification/mcitp.aspx" target="_blank">learning portal</a> is worth a visit however) but one route of key interest for cloudy types is Windows Server 2008 R2 Virtualization.</p>
<p>A bit of an overview of Microsoft certifications &#8211; the old school may remember MCP, MCSE etc &#8211; nowadays, we are in the age of MCTS and MCITP.  These are loosely the equivalent of their older counterparts, the former being a lower end single exam and the latter being a qualification or certification gained through a combination the single exams.</p>
<p>So &#8211; to achieve the latest MCITP (Microsoft Certified IT Pro) qualification, you&#8217;ll need to have passed several base MCTS (Technology Specialist) examinations.</p>
<p>In the case of cloudy certifications, this is the &#8221;Microsoft Certified IT Professional: Windows Server 2008 R2, Virtualization Administrator&#8221; qualification and requires:</p>
<ol>
<li>Exam <a href="http://www.microsoft.com/learning/en/us/exam.aspx?ID=70-652&amp;locale=en-us" target="_blank">70-652</a>: TS: Windows Server Virtualization, Configuring OR Exam <a href="http://www.microsoft.com/learning/en/us/exam.aspx?ID=70-659&amp;locale=en-us" target="_blank">70-659</a>: TS: Windows Server 2008 R2, Server Virtualization</li>
<li>Exam <a href="http://www.microsoft.com/learning/en/us/exam.aspx?ID=70-669&amp;locale=en-us" target="_blank">70-669</a>: TS: Windows Server 2008 R2, Desktop Virtualization</li>
<li>Exam <a href="http://www.microsoft.com/learning/en/us/exam.aspx?ID=70-693&amp;locale=en-us" target="_blank">70-693</a>: Pro: Windows Server 2008 R2, Virtualization Administrator</li>
</ol>
<p>All very worth looking at as they will help with core understanding of the technologies and go to prove an individuals ability with the technologies and&#8230;as they say these days at MS&#8230;<a href="http://www.microsoft.com/cloud/" target="_blank">we&#8217;re all in</a>!</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/08/23/microsoft-virtualization-certifications/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Internet Explorer 9 coming to a computer near you</title>
		<link>http://blog.ukfast.co.uk/2010/08/18/internet-explorer-9-coming-to-a-computer-near-you/</link>
		<comments>http://blog.ukfast.co.uk/2010/08/18/internet-explorer-9-coming-to-a-computer-near-you/#comments</comments>
		<pubDate>Wed, 18 Aug 2010 10:46:10 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[browsing]]></category>
		<category><![CDATA[web 2.0]]></category>
		<category><![CDATA[world wide web]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=7196</guid>
		<description><![CDATA[Microsoft and its partner developers are gearing up for the release of the latest in their incarnation of web browser, Internet Explorer.  This release, in the 15th year since IE 1, will be the 9th instalment of the much used (51% market share) browser.]]></description>
			<content:encoded><![CDATA[<p>Microsoft and its partner developers are gearing up for the release of the latest in their incarnation of web browser, Internet Explorer. This <strong>release</strong>, in the 15th year since IE 1, will be the <strong>9th instalment</strong> of the much used (<a href="http://en.wikipedia.org/wiki/Usage_share_of_web_browsers" target="_blank">51%</a> market share) browser.</p>
<p>Microsoft openly announced commitments to the audience at their PDC09 (<a href="http://www.microsoftpdc.com/" target="_blank">professional developer conference</a>) including:</p>
<li>Internet Explorer 9 would help enable the same markup to work across browsers</li>
<li>Internet Explorer 9 would be all-round fast</li>
<li>Through Windows and modern hardware, Internet Explorer 9 would unlock the next class of experiences for the web</li>
<p>And the browser looks set to feature in a big way at this years PDC as well as in the public arena where it is <strong>due for beta release on September 15th</strong> (before the PDC).</p>
<p>The release is being marked in a <a href="http://windowsteamblog.com/ie/b/ie/archive/2010/08/12/announcing-the-beauty-of-the-web-event-for-ie9-beta-launch.aspx" target="_blank">big way</a> (ok maybe not <a href="http://www.microsoft.com/presspass/features/2010/jun10/06-13kinectintroduced.mspx" target="_blank">Kinect big</a>) with Microsoft throwing a &#8216;beauty of the web&#8217; event for a select group of VIP web developers, designers, bloggers and press.</p>
<p>You can get your hands on the latest (currently 4th public) release of the <strong>IE9 preview </strong><a href="http://ie.microsoft.com/testdrive/" target="_blank"><strong>here</strong></a>.</p>
<p>MC.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/08/18/internet-explorer-9-coming-to-a-computer-near-you/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>August 2010 Security Bulletin Release</title>
		<link>http://blog.ukfast.co.uk/2010/08/11/august-2010-security-bulletin-release/</link>
		<comments>http://blog.ukfast.co.uk/2010/08/11/august-2010-security-bulletin-release/#comments</comments>
		<pubDate>Wed, 11 Aug 2010 11:53:23 +0000</pubDate>
		<dc:creator>Micro-Clouseau</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://www.ukfastblog.co.uk/?p=6988</guid>
		<description><![CDATA[As mentioned in the previous post on this months security bulletin releases, there are confirmed to be 14 security bulletins, addressing 34 vulnerabilities. Eight of those bulletins have a Critical severity rating, and four of those are considered to be high-priority deployments. Refer to this page for details on all updates released this month]]></description>
			<content:encoded><![CDATA[<p>As mentioned in the <a href="http://www.ukfastblog.co.uk/2010/08/06/august-2010-security-bulletin-release-advance-notification/" target="_blank">previous post </a>on this months security bulletin releases, there are confirmed to be <strong>14 security bulletins, addressing 34 vulnerabilities</strong>. Eight of those bulletins have a Critical severity rating, and four of those are considered to be high-priority deployments. Refer to <a href="http://www.microsoft.com/technet/security/bulletin/ms10-aug.mspx" target="_blank">this</a> page for details on all updates released this month.</p>
<p><em>Of these updates, for the Windows Server operating systems, 3 are listed as requires restart and apply to </em><em>Windows Server 2003, 2008 &amp; 2008 R2.</em></p>
<ul>
<li><a href="http://go.microsoft.com/fwlink/?LinkID=197393" target="_blank">MS10-046</a> &#8211; kb2286198</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=196549" target="_blank">MS10-053</a> &#8211; kb2183461</li>
<li><a href="http://go.microsoft.com/fwlink/?LinkId=179830" target="_blank">MS10-060</a> &#8211; kb2265906</li>
</ul>
<p>Since these have been released, limited testing has been undertaken and we can confirm that we are <strong>expecting</strong> <strong>reboots</strong> to be required for <strong>Windows Server 2003, 2008</strong> and <strong>2008 R2</strong>.</p>
<p>MC.</p>
<p><em>(as usual, as a UKFast customer, you benefit from these updates being applied automatically unless you have opted out of this service.)</em></p>
<p><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2010/07/July2010DeploymentPriority.png"></a></p>
<p style="text-align: center;"><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2010/08/august-10-deploy.png"><img class="aligncenter size-large wp-image-7000" title="august-10 deploy" src="http://www.ukfastblog.co.uk/wp-content/uploads/2010/08/august-10-deploy-1024x576.png" alt="" width="614" height="346" /></a></p>
<p style="text-align: center;"><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2010/08/august-10-deploy.png"></a><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2010/08/august-10-severity.png"><img class="aligncenter size-large wp-image-7001" title="august-10 severity" src="http://www.ukfastblog.co.uk/wp-content/uploads/2010/08/august-10-severity-1024x576.png" alt="" width="614" height="346" /></a><a href="http://www.ukfastblog.co.uk/wp-content/uploads/2010/07/July2010SeverityandExploitability.png"></a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ukfast.co.uk/2010/08/11/august-2010-security-bulletin-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

