April 19, 2024

Language:

CamSA12-06: Microsoft Update for Multiple Vulnerabilities for May 2012

I. Overview 

Microsoft has released the Microsoft Security Bulletin Summary for May 2012. The information include 3 critical and 4 importants patches.

This vulnerability can allow a remote, unauthenticated attacker could execute arbitrary code, cause a denial of service, or gain unauthorized access to your files or system.

II. Effected System

– Microsoft Windows
– Microsoft .NET Framework
– Microsoft Office
– Microsoft Silverlight

III. Patches

– MS12-029: Vulnerability in Microsoft Word Could Allow Remote Code Execution (2680352)

– MS12-034: Combined Security Update for Microsoft Office, Windows, .NET Framework, and Silverlight (2681578)

– MS12-035: Vulnerabilities in .NET Framework Could Allow Remote Code Execution (2693777)

– MS12-030:Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (2663830)

– MS12- 031: Vulnerability in Microsoft Visio Viewer 2010 Could Allow Remote Code Execution (2597981)

– MS12-032: Vulnerability in TCP/IP Could Allow Elevation of Privilege (2688338)

– MS12-033: Vulnerability in Windows Partition Manager Could Allow Elevation of Privilege (2690533)

IV. Solutions

Microsoft has provided updates for these vulnerabilities in the Microsoft Security Bulletin Summary for May 2012, which describes any known issues related to the updates. Administrators are encouraged to note these issues and test for any potentially adverse effects. In addition, administrators should consider using an automated update distribution system such as Windows Server Update Services (WSUS). Home users are encouraged to enable automatic updates.

V. Contact Information

– Email: office@camcert.gov.kh

– Tel: (855) 92 335 536 – (855) 16 888 209

[message_box title=”Disclaimer” color=”yellow”]

The information provided herein is on “as is” basis, without warranty of any kind.

[/message_box]

***Disclaimer: CamCERT own some of the content. Our purpose is pure to help spread the awareness, tips or other information related to security to everyone. Even though every information is true, accurate, completed and appropriate, we make no responsibility nor warranty since everything could go wrong.