Microsoft Security Bulletin Summary for August 2007

Busy month this month with 6 Critical and 3 Important updates:

Critical Security Bulletins
MS07-042 - Vulnerability in Microsoft XML Core Services Could Allow Remote Code Execution (936227)
  - Affected Software:
    - Microsoft XML Core Services 3.0 (KB936021) on Microsoft
      Windows 2000 Service Pack 4
    - Microsoft XML Core Services 3.0 (KB936021) on Windows XP
      Service Pack 2
    - Microsoft XML Core Services 3.0 (KB936021) on Windows XP
      Professional x64 Edition and Windows XP Professional x64
      Edition Service Pack 2
    - Microsoft XML Core Services 3.0 (KB936021) on Windows Server
      2003 Service Pack 1 and Windows Server 2003 Service Pack 2
    - Microsoft XML Core Services 3.0 (KB936021) on Windows Server
      2003 x64 Edition and Windows Server 2003 x64 Edition Service
      Pack 2
    - Microsoft XML Core Services 3.0 (KB936021) on Windows Server
      2003 with SP1 for Itanium-based Systems and Windows Server
      2003 with SP2 for Itanium-based Systems
    - Microsoft XML Core Services 3.0 (KB936021) on Windows Vista
    - Microsoft XML Core Services 3.0 (KB936021) on Windows Vista
      x64 Edition
    - Microsoft XML Core Services 4.0 (KB936181) when installed on
      Microsoft Windows 2000 Service Pack 4
    - Microsoft XML Core Services 4.0 (KB936181) on Windows XP
      Service Pack 2
    - Microsoft XML Core Services 4.0 (KB936181) when installed on
      Windows XP Professional x64 Edition and Windows XP
      Professional x64 Edition Service Pack 2
    - Microsoft XML Core Services 4.0 (KB936181) when installed on
      Windows Server 2003 Service Pack 1 and Windows Server 2003
      Service Pack 2
    - Microsoft XML Core Services 4.0 (KB936181) when installed on
      Windows Server 2003 x64 Edition and Windows Server 2003 x64
      Edition Service Pack 2
    - Microsoft XML Core Services 4.0 (KB936181) when installed on
      Windows Server 2003 with SP1 for Itanium-based Systems and
      Windows Server 2003 with SP2 for Itanium-based Systems
    - Microsoft XML Core Services 4.0 (KB936181) when installed on
      Windows Vista
    - Microsoft XML Core Services 4.0 (KB936181) when installed on
      Windows Vista x64 Edition
    - Microsoft XML Core Services 6.0 (KB933579) when installed on
      Microsoft Windows 2000 Service Pack 4
    - Microsoft XML Core Services 6.0 (KB933579) when installed on
      Windows XP Service Pack 2
    - Microsoft XML Core Services 6.0 (KB933579) when installed on
      Windows XP Professional x64 Edition and Windows XP
      Professional x64 Edition Service Pack 2
    - Microsoft XML Core Services 6.0 (KB933579) when installed on
      Windows Server 2003 Service Pack 1 and Windows Server 2003
      Service Pack 2
    - Microsoft XML Core Services 6.0 (KB933579) when installed on
      Windows Server 2003 x64 Edition and Windows Server 2003 x64
      Edition Service Pack 2
    - Microsoft XML Core Services 6.0 (KB933579) when installed on
      Windows Server 2003 with SP1 for Itanium-based Systems and
      Windows Server 2003 with SP2 for Itanium-based Systems
    - Microsoft XML Core Services 6.0 (KB933579) on Windows Vista
    - Microsoft XML Core Services 6.0 (KB933579) on Windows Vista
      x64 Edition
    - Microsoft Office 2003 Service Pack 2 with Microsoft XML Core
      Services 5.0 (KB936048)
    - 2007 Office System with Microsoft XML Core Services 5.0
      (KB936960)
    - Microsoft Office Groove Server 2007 with Microsoft XML Core
      Services 5.0 (KB936056)
    - Microsoft Office SharePoint Server with Microsoft XML Core
      Services 5.0 (KB936056)
    - Impact: Remote Code Execution
    - Version Number: 1.0


MS07-043 - Vulnerability in OLE Automation Could Allow Remote Code Execution (921503)
  - Affected Software:
    - Microsoft Windows 2000 Service Pack 4
    - Windows XP Service Pack 2
    - Windows XP Professional x64 Edition
    - Windows XP Professional x64 Edition Service Pack 2
    - Windows Server 2003 Service Pack 1
    - Windows Server 2003 Service Pack 2
    - Windows Server 2003 x64 Edition
    - Windows Server 2003 x64 Edition Service Pack 2
    - Windows Server 2003 with SP1 for Itanium-based Systems
    - Windows Server 2003 with SP2 for Itanium-based Systems
    - Microsoft Office 2004 for Mac
    - Microsoft Visual Basic 6.0 Service Pack 6 (KB924053)
    - Impact: Remote Code Execution
    - Version Number: 1.0


MS07-044 - Vulnerability in Microsoft Excel Could Allow Remote Code Execution (940965)
  - Affected Software:
    - Microsoft Office 2000 Service Pack 3
    - Microsoft Office XP Service Pack 3
    - Microsoft Office 2003 Service Pack 2
    - Microsoft Excel Viewer 2003
    - Microsoft Office 2004 for Mac
    - Impact: Remote Code Execution
    - Version Number: 1.0


MS07-045 - Cumulative Security Update for Internet Explorer (937143)
  - Affected Software:
    - Microsoft Windows 2000 Service Pack 4
    - Windows XP Service Pack 2
    - Windows XP Professional x64 Edition
    - Windows XP Professional x64 Edition Service Pack 2
    - Windows Server 2003 Service Pack 1
    - Windows Server 2003 Service Pack 2
    - Windows Server 2003 x64 Edition
    - Windows Server 2003 x64 Edition Service Pack 2
    - Windows Server 2003 with SP1 for Itanium-based Systems
    - Windows Server 2003 with SP2 for Itanium-based Systems
    - Windows Vista
    - Windows Vista x64 Edition
    - Impact: Remote Code Execution
    - Version Number: 1.0

MS07-046 - Vulnerability in GDI Could Allow Remote Code Execution (938829)
  - Affected Software:
    - Microsoft Windows 2000 Service Pack 4
    - Windows XP Service Pack 2
    - Windows XP Professional x64 Edition
    - Windows Server 2003 Service Pack 1
    - Windows Server 2003 x64 Edition
    - Windows Server 2003 with SP1 for Itanium-based Systems
    - Impact: Remote Code Execution
    - Version Number: 1.0


MS07-050 - Vulnerability in Vector Markup Language Could Allow Remote Code Execution (938127)
  - Affected Software:
    - Microsoft Windows 2000 Service Pack 4
    - Windows XP Service Pack 2
    - Windows XP Professional x64 Edition
    - Windows XP Professional x64 Edition Service Pack 2
    - Windows Server 2003 Service Pack 1
    - Windows Server 2003 Service Pack 2
    - Windows Server 2003 x64 Edition
    - Windows Server 2003 x64 Edition Service Pack 2
    - Windows Server 2003 with SP1 for Itanium-based Systems
    - Windows Server 2003 with SP2 for Itanium-based Systems
    - Windows Vista
    - Windows Vista x64 Edition
    - Impact: Remote Code Execution
    - Version Number: 1.0


Important Security Bulletins
MS07-047 - Vulnerability in Windows Media Player Could Allow Remote Code Execution (936782)
  - Affected Software:
    - Windows Media Player 7.1 on Microsoft Windows 2000 Service
      Pack 4
    - Windows Media Player 9 when installed on Microsoft Windows
      2000 Service Pack 4
    - Windows Media Player 9 on Windows XP Service Pack 2
    - Windows Media Player 10 when installed on Windows XP Service
      Pack 2
    - Windows Media Player 10 on Windows XP Professional x64 Edition
      and Windows XP Professional x64 Edition Service Pack 2
    - Windows Media Player 10 on Windows Server 2003 Service Pack 1
      and Windows Server 2003 Service Pack 2
    - Windows Media Player 10 on Windows Server 2003 x64 Edition
      and Windows Server 2003 x64 Edition Service Pack 2
    - Windows Media Player 11 when installed on Windows XP Service
      Pack 2
    - Windows Media Player 11 on Windows XP Professional x64 Edition
      and Windows XP Professional x64 Edition Service Pack 2
    - Windows Media Player 11 in Windows Vista
    - Windows Media Player 11 in Windows Vista x64 Edition
    - Impact: Remote Code Execution
    - Version Number: 1.0


MS07-048 - Vulnerabilities in Windows Gadgets Could Allow Remote Code Execution (938123)
  - Affected Software:
    - Windows Vista
    - Windows Vista x64 Edition
    - Impact: Remote Code Execution
    - Version Number: 1.0


MS07-049 - Vulnerability in Virtual PC and Virtual Server Could Allow Elevation of Privilege (937986)
  - Affected Software:
    - Microsoft Virtual PC 2004
    - Microsoft Virtual PC 2004 Service Pack 1
    - Microsoft Virtual Server 2005 Standard Edition
    - Microsoft Virtual Server 2005 Enterprise Edition
    - Microsoft Virtual Server 2005 R2 Standard Edition
    - Microsoft Virtual Server 2005 R2 Enterprise Edition
    - Microsoft Virtual PC for Mac Version 6.1
    - Microsoft Virtual PC for Mac Version 7
    - Impact: Elevation of Privilege
    - Version Number: 1.0

Published Tuesday, August 14, 2007 4:32 PM by chobbs

Comments

No Comments