Archive for July 11th, 2011

11 Kerberos authentication component, Microsoft Office 2007 Windows security local authority ascension holes

Safety notice: MS11-013; Knowledge base Numbers: KB2478971, KB2425227; Levels: important

Description: this patch to repair the Kerberos authentication component Windows security is a place of secret report security flaws have invaded the attacker may use system these bugs, further improve access control over the system.

Influence operating system: Windows XP / 2003 / Windows 7

12, Windows local security authentication subsystem local authority ascension holes

Safety notice: MS11-014; Knowledge base Numbers: KB2478960; Levels: important

Description: this patch to repair the Office 2007 Windows local safety certification subsystem in a secret report security flaws have invaded the attacker may use system these bugs, further improve access control over the system.

Influence operating system: Windows XP / 2003

 

8, Windows JScript and VBScript script engine information leakage holes

Safety notice: MS11-009; Knowledge base Numbers: KB2475792; Levels: important

Description: this patch to repair the Windows JScript and VBScript existing in the script engine at a secret report security hole, when the Office 2007 vulnerability of the existing users browse the attacker carefully constructed malicious website, may cause the user information leakage, stolen data privacy.

Influence operating system: Windows 7/2008 R2

9, Windows CSRSS local authority ascension holes

Safety notice: MS11-010; Knowledge base Numbers: KB2476687; Levels: important

Description: this patch repair Microsoft Office 2010 Windows client/server runtime subsystem (CSRSS) is a place in secret report security flaws have invaded the attacker may use system this vulnerability, further improve access control over the system.

Influence operating system: Windows XP / 2003

10, Windows kernel drive local authority ascension holes

Safety notice: MS11-012; Knowledge base Numbers: KB2479628; Levels: important

Description: this patch to repair the Microsoft Office 2007 Windows kernel-mode driver win32k sys. Existing in the secret report of the five place security flaws have invaded the attacker may use system these bugs, further improve access control over the system.

 

6, Windows OpenType compression font format (CFF) driving distance code execute holes

Safety notice: MS11-007; Knowledge base Numbers: KB2485376; Levels: critical

Description: this patch to repair the Microsoft Office 2007 Windows OpenType compression font format (CFF) is a driver in the secret report security hole, when the vulnerability of the existing users browse the attacker carefully construction site, may cause the Office 2007 attacker malicious code with the highest authority system carried out, install malicious programs or steal, distort the user privacy data and control over the system.

Influence operating system: Windows XP / 2003 / Vista / 2008 / Windows 7

7, Microsoft Visio software code execution loophole. Remote

Safety notice: MS11-008; Knowledge base Numbers: KB2434711, KB2434733, KB2434737; Levels: important

Description: this patch repair Microsoft Visio software the existence of two place secret report security hole, when the vulnerability of the existing users browse the attacker carefully constructed Visio files, could cause the attacker malicious code enforced, install malicious programs or steal, distort the user privacy data.