Thursday, February 11, 2010

Windows XP Restart Issues After Installing MS10-015

Microsoft is aware that after installing the February security updates a limited number of users are experiencing issues restarting their computers. From reports, it has appears that this issue occurs after installing MS10-015 (KB977165). It may or may not be specific to a particular brand of PC or third party software. While Microsoft works on this problem, the update has been removed from Windows Update. Additional details are available at the MSRC Blog in Restart issues after installing MS10-015.

If you have not installed the February updates yet, you will not be offered MS10-015, however, it would be wise to check all updates if your Windows Update settings are to download and let you decide when to install. In order to protect your computer from the Elevation of Privilege vulnerability that MS10-015 addresses, there is a Microsoft Fix it that mitigates the vulnerability, available from
http://support.microsoft.com/kb/979682.

For anyone experiencing the BSOD after installing MS10-015, following are the instructions for removing the update, as provided by Kevin Hau, MSFT at Microsoft Answers:

1. Boot from your Windows XP CD or DVD and start the recovery console (see this Microsoft article for help with this step).

Once you are in the Repair Screen..

2. Type this command: CHDIR $NtUninstallKB977165$\spuninst

3. Type this command: BATCH spuninst.txt

4. When complete, type this command: exit

In the event you are unable to locate the Windows XP CD or DVD and do not have the recovery console installed, free assistance is available form Microsoft by calling 1-866-PCSafety (1-866-727-2338) or from https://consumersecuritysupport.microsoft.com. International customers can find local support contact numbers here: http://support.microsoft.com/common/international.aspx.


Clubhouse Tags: Clubhouse, Microsoft, Windows, Security, Updates, Vulnerabilities, Information



Remember - "A day without laughter is a day wasted."
May the wind sing to you and the sun rise in your heart...

Tuesday, February 09, 2010

Microsoft Security Advisory (977377)

Microsoft released Security Advisory (977377): Vulnerability in TLS/SSL Could Allow Spoofing today based on public reports of a vulnerability in the Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols. At this time, Microsoft is not aware of any attacks attempting to exploit the reported vulnerability.

The following affected software is identified in Security Advisory 977377:
  • Microsoft Windows 2000 Service Pack 4
  • Windows XP Service Pack 2 and Windows XP Service Pack 3
  • Windows XP Professional x64 Edition Service Pack 2
  • Windows Server 2003 Service Pack 2
  • Windows Server 2003 x64 Edition Service Pack 2
  • Windows Server 2003 with SP2 for Itanium-based Systems
  • Windows Vista, Windows Vista Service Pack 1, and Windows Vista Service Pack 2
  • Windows Vista x64 Edition, Windows Vista x64 Edition Service Pack 1, and Windows Vista x64 Edition Service Pack 2
  • Windows Server 2008 for 32-bit Systems and Windows Server 2008 for 32-bit Systems Service Pack 2*
  • Windows Server 2008 for x64-based Systems and Windows Server 2008 for x64-based Systems Service Pack 2*
  • Windows Server 2008 for Itanium-based Systems and Windows Server 2008 for Itanium-based Systems Service Pack 2
  • Windows 7 for 32-bit Systems
  • Windows 7 for x64-based Systems
  • Windows Server 2008 R2 for x64-based Systems*
  • Windows Server 2008 R2 for Itanium-based Systems
*Server Core installation affected. For more information on this installation option, see the MSDN articles, Server Core and Server Core for Windows Server 2008 R2. Note that the Server Core installation option does not apply to certain editions of Windows Server 2008 and Windows Server 2008 R2; see Compare Server Core Installation Options.

Additional information is available in Microsoft Knowledge Base Article 977377.

Clubhouse Tags: Clubhouse, Microsoft, Windows, Security, Vulnerabilities, Information


Remember - "A day without laughter is a day wasted."
May the wind sing to you and the sun rise in your heart...

February 2010 Security Bulletin Release


Microsoft released thirteen security bulletins addressing twenty-six vulnerabilities. Windows is affected by eleven of the bulletins and older versions of Office by the remaining two bulletins.

Of the bulletins, the following are rated as Critical: MS10-006, MS10-007, MS10-008, MS10-013, and MS10-015.

Additional information is available in the MSRC blog.

  • MS10-003: Vulnerability in Microsoft Office (MSO) Could Allow Remote Code Execution (978214), Important
  • MS10-004: Vulnerabilities in Microsoft Office PowerPoint Could Allow Remote Code Execution (975416),
  • Important
  • MS10-005: Vulnerability in Microsoft Paint Could Allow Remote Code Execution (978706), Moderate
  • MS10-006: Vulnerabilities in SMB Client Could Allow Remote Code Execution (978251), Critical
  • MS10-007: Vulnerability in Windows Shell Handler Could Allow Remote Code Execution (975713),
  • Critical
  • MS10-008: Cumulative Security Update of ActiveX Kill Bits (978262), Critical
  • MS10-009: Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (974145), Critical
  • MS10-010: Vulnerability in Windows Server 2008 Hyper-V Could Allow Denial of Service (977894),
  • Important
  • MS10-011: Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (978037), Important
  • MS10-012: Vulnerabilities in SMB Server Could Allow Remote Code Execution (971468), Important
  • MS10-013: Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution (977935), Critical
  • MS10-014: Vulnerability in Kerberos Could Allow Denial of Service (977290), Important
  • MS10-015: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (977165), Important

References:



Remember - "A day without laughter is a day wasted."
May the wind sing to you and the sun rise in your heart...