[MS KBs] New KB Articles At Microsoft 21 Oct 2009 - Weekly Summary

.NET Framework 2.0


957488 MS09-062: Vulnerabilities in GDI+ could allow remote code execution

974378 MS09-061: Vulnerability in the .NET common language runtime could allow Remote Code Execution

974468 MS09-061: Description of the security update for the Microsoft .NET Framework 2.0 on Windows Vista 32-bit edition and Windows Vista 64-bit edition: October 13, 2009

971110 MS09-062: Description of the security update for the Microsoft .NET Framework 2.0 Service Pack 1: October 13, 2009

974291 MS09-061: Description of the security update for the Microsoft .NET Framework 2.0 Service Pack 1 on Windows Vista Service Pack 1 and Windows Server 2008: October 13, 2009

974292 MS09-061: Description of the security update for the Microsoft .NET Framework 2.0 Service Pack 1 and the Microsoft .NET Framework 3.5 on Windows Vista: October 13, 2009

953300 MS09-061: Description of the security update for the Microsoft .NET Framework 2.0 Service Pack 1 and the Microsoft .NET Framework 3.5 on Windows 2000, Windows XP, and Windows Server 2003: October 13, 2009


Expression Web

972581 MS09-062: Description of the security update for the 2007 Office system: October 13, 2009


Forefront Client Security

975962 MS09-062: Description of the security update for GDI+ for Forefront Client Security on Windows 2000: October 13, 2009


Internet Explorer 6.0

973525 MS09-055: Cumulative Security Update of ActiveX Kill Bits

974455 MS09-054: Cumulative security update for Internet Explorer

975169 The application that hosts a WebBrowser control crashes when you use a custom MIME filter on a computer that has Internet Explorer installed


Outlook 2003

974771 Description of the Outlook 2003 Junk E-mail Filter update: October 13, 2009

973705 MS09-060: Description of the security update for Outlook 2003: October 13, 2009


Outlook 2007

972363 MS09-060: Description of the security update for Outlook 2007: October 13, 2009

974810 Description of the Outlook 2007 Junk E-mail Filter update: October 13, 2009


SQL Server 2005

970894 MS09-062: Description of the security update for SQL Server 2005 Service Pack 3 QFE: October 13, 2009

970896 MS09-062: Description of the security update for SQL Server 2005 Service Pack 2 QFE: October 13, 2009

970892 MS09-062: Description of the security update for SQL Server 2005 Service Pack 3 GDR: October 13, 2009

970895 MS09-062: Description of the security update for GDI+ for SQL Server 2005 Service Pack 2 GDR: October 13, 2009


SQL Server 2008

976448 Install and enable the MapPoint SQL Server add-in


Windows Server 2003

972397 A hotfix for Windows Installer is available for Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008

975652 Error message when you use an application that monitors the event log to open an event log file on a computer that is running Windows Server 2003 SP2: "The event log file is corrupt"

973667 A Windows Server 2003-based domain controller may incorrectly return the "NO_SUCH_USER (0xc0000064)" status code in response to logon requests when the domain controller is shutting down or restarting

973460 Exceptions that are thrown from a 64-bit application that is running in the 64-bit editions of Windows Server 2003 or of Windows XP Professional are silently ignored

972635 The Active Directory Application Mode service may crash if the Active Directory Application Mode instance database is of a large scale on a computer that is running Windows Server 2003 SP2

953297 MS09-061: Description of the security update for the Microsoft .NET Framework 1.1 Service Pack 1: October 13, 2009

974857 Another service may be unexpectedly also stopped on a node of a Windows Server 2003-based cluster if the ResUtilStopResourceService function is used to stop a service

972122 A query takes a long time to complete and increases CPU usage to a high level on the domain controllers that are running Windows Server 2003 when you use NSPI API functions to query address book information

976220 Description of the Patch Registration Cleanup Tool

975467 MS09-059: Vulnerability in the Local Security Authority Subsystem Service could allow denial of service

975254 MS09-053: Vulnerabilities in FTP Service for Internet Information Services could allow remote code execution

975682 MS09-051: Vulnerability in Windows Media Runtime could allow remote code execution

971486 MS09-058: Vulnerabilities in Windows kernel could allow elevation of privilege

975025 MS09-051: Description of the security update for Audio Compression Manager: October 13, 2009

954155 MS09-051: Description of the security update for Windows Media Audio Voice Decoder: October 13, 2009

969878 MS09-051: Description of the security update for DirectShow WMA Voice Codec: October 13, 2009

958869 MS09-062: Description of the security update for GDI+ for all editions of Windows XP, Windows Vista, Windows Server 2003, and Windows Server 2008 and for Windows Server 2000 with Internet Explorer 6 Service Pack 1: October 13, 2009

974571 MS09-056: Vulnerabilities in CryptoAPI could allow spoofing

973886 You cannot restore large files in the NTFS file system when all the data streams that have sparse attributes are deleted in the 64-bit version of Windows XP SP2 or in Windows Server 2003 SP2

969059 MS09-057: Vulnerability in Indexing Service could allow remote code execution

974112 MS09-052: Vulnerability in Windows Media Player could allow remote code execution


Windows Server 2008

976063 When you run an LDAP query against a Windows Server 2008-based domain controller, you obtain a partial attribute list

971265 A memory leak issue in the Lsass.exe process causes an application or a service to stop responding if the application or the service uses the NTLM authentication on a computer that is running Windows Server 2008 or Windows Vista.

969309 Print jobs sent to a local printer from a console application do not print completely in Windows Vista and in Windows Server 2008

975212 When you use a VPN connection that uses Smart Card authentication on a client computer that is running Windows Vista or Windows Server 2008, the computer stops responding

974605 The Data Collector Set may not start on a computer that is running Windows Server 2008 or Windows Vista

975142 You cannot install Active Directory Domain Services on a member server that is running Windows Server 2008 in a branch office if the DNS and LDAP communication between the branch office and the forest root domain is blocked

973509 The advanced security settings for Windows Firewall that you deploy by using a Group Policy object (GPO) are not displayed in Windows Vista or in Windows 2008

975808 All IP addresses are registered on the DNS servers when the IP addresses are assigned to one network adapter on a computer that is running Windows Server 2008 SP2 or Windows Vista SP2

975815 File corruption occurs under a stress situation when the CopyFileEx function is used to copy a file between two computers that are running Windows Server 2008 or Windows Vista

973763 The failover operation takes a long time to fail over a shared disk resource that is located on a cluster node of a Windows Server 2008-based failover cluster if many snapshots are saved on the shared disk

975654 Error code when you try to install the DNS server role if all network adapters are disabled or unplugged on a computer that is running Windows Server 2008: 0x80070643

971258 You cannot rescan the Indexing Service scope that has a full path of over 13 characters on a computer that is running Windows Vista or Windows Server 2008

974589 The Task Scheduler MMC snap-in stops responding when you view the history tab of a task that has more than 10,000 history events on a computer that is running Windows Server 2008 or Windows Vista

975512 Some SMB clients cannot access cluster file shares but they can access non-cluster file shares that are located on a computer that is running Windows Server 2008

974924 You cannot make a VPN connection successfully by entering a correct PIN after an incorrect PIN is entered when the connection uses a smart card and PEAP authentication on a computer that is running Windows Server 2008 or Windows Vista

974848 You cannot install a 64-bit version of SQL Server 2005 on a computer that is running a 64-bit version of Windows Vista or Windows Server 2008

975246 A memory leak occurs when you plug in and then unplug a USB camera from a computer that is running Windows Vista or Windows Server 2008

975517 MS09-050: Vulnerabilities in SMB could allow remote code execution

975698 A computer that is running Windows Server 2008 or Windows Vista receives various stop codes that cause the system to automatically restart after you enable the NetDMA feature on the new "Crystal Beach" (DMA) chip from Intel

975126 Some custom-sized pages are printed incorrectly when you print a document on both sides from a computer that is running Windows Vista or Windows Server 2008

974738 Error message when you use the MBSA tool to check for weak passwords or to assess password security on a computer that is running Windows Server 2008 or Windows Vista: "Some user accounts have blank or simple passwords, or could not be analyzed"

973995 You may lose some events when you subscribe to some events that are in multiple event logs on a computer that is running Windows Server 2008 or Windows Vista

975823 The capacity of a Secure Digital (SD) card that is larger than 32 GB is reported incorrectly in Windows Vista and in Windows Server 2008

975803 Earlier snapshots are deleted after you restore multiple copy-on-write snapshots in consecutive order in Windows Vista or in Windows Server 2008

975598 The Nslookup.exe utility does not use all the suffixes in the DNS suffix search list if the total length of the DNS suffix search list is longer than 255 characters on a computer that is running Windows Server 2008 or Windows Vista

974867 Error message when you try to burn a dual-layer Blu-ray disc on a computer that is running Windows Vista or Windows Server 2008: "The disc does not have enough free space for all of the files you selected"

974201 Stop error message when you retrieve WMI connection statistics for iSCSI after you change the iSCSI configurations on a computer that is running Windows Server 2008 or Windows Vista: "0x00000019 BAD_POOL_HEADER"

974178 Error code 1450 after you transfer data by using the named pipes protocol between a client computer and a server that are running Windows Vista or Windows Server 2008

972797 Event ID 1038 is logged when a failover occurs on a back-end disk controller in a Windows Server 2008 failover cluster

974248 The log file size grows larger than the maximum file size limit that was set in Performance Monitor if you select a Comma Separated log format or a Tab Separated log format on a computer that is running Windows Server 2008 or Windows Vista


Windows Vista Enterprise

200424 Remote Desktop Connection (RDC) on Windows Vista and Windows 7 does not recognize a username change

970401 Description of BitLocker To Go Reader

Read the complete post at http://wmug.co.uk/blogs/cliffs_blog/archive/2009/10/21/ms-kbs-new-kb-articles-at-microsoft-21-oct-2009-weekly-summary.aspx

Published Wednesday, October 21, 2009 12:27 PM by Cliff Hobbs - FAQShop.com and Microsoft MVP ConfigMgr/ SMS