Patch Tuesday: What's Headed Your Way for Microsoft Patch Tuesday
Today is Microsoft Patch Tuesday. Here's the roundup of what to expect.
February 10, 2015
Last month, Microsoft made the decision to stop providing advanced notification of upcoming patches to the public. Instead, only those with a paid contract will get notice, and even then, the notification comes with only a day to spare. It's a shame, really. Microsoft talks about openness, delivering a new Azure portal to provide clarity on upcoming releases in the Cloud, but pulls back on a Trustworthy Computing promise made a decade ago.
So, what's coming today? The following table shows what is planned.
It's important to note, that while these show the various operating system versions, these updates will only be applicable to those versions still under support.
Bulletin ID | Rating | Vulnerability | Restart required? | Affected Software |
---|---|---|---|---|
Bulletin 1 (MS15-009) | Critical | Remote Code Execution | Yes | Internet Explorer 6, Internet Explorer 7, Internet Explorer 8, Internet Explorer 9, Internet Explorer 10, and Internet Explorer 11 |
Bulletin 2 (MS15-010) | Critical | Remote Code Execution - Kernel Mode Driver | Yes | Microsoft Windows Server 2003, Windows Vista, Windows Server 2008, Windows 7, Windows Server 2008 R2, Windows 8, Windows Server 2012, Windows RT, Windows 8.1, Windows Server 2012 R2, and Windows RT 8.1. |
Bulletin 3 (MS15-011) | Critical | Remote Code Execution - Group Policy | Yes | Microsoft Windows Server 2003, Windows Vista, Windows Server 2008, Windows 7, Windows Server 2008 R2, Windows 8, Windows Server 2012, Windows RT, Windows 8.1, Windows Server 2012 R2, and Windows RT 8.1. |
Bulletin 4 (MS15-012) | Important | Remote Code Execution | Might | Microsoft Excel 2007, Microsoft Word 2007, Microsoft Office 2010, Microsoft Excel 2010, Microsoft Word 2010, Microsoft Web Applications 2010, Microsoft Excel 2013, Microsoft Word Viewer, Microsoft Excel Viewer, and Microsoft Office Compatibility Pack. |
Bulletin 5 (MS15-013) | Important | Security Feature Bypass | Might | Microsoft Office 2007, Microsoft Office 2010, and Microsoft Office 2013. |
Bulletin 6 (MS15-014) | Important | Security Feature Bypass - Group Policy | Yes | All supported releases of Microsoft Windows. |
Bulletin 7 (MS15-015) | Important | Elevation of Privilege | Yes | Microsoft Windows 7, Windows Server 2008 R2, Windows 8, Windows 2012, Windows RT, Windows 8.1, Windows 2012 R2, and Windows RT 8.1. |
Bulletin 8 (MS15-016) | Important | Information Disclosure - Graphics Component | Might | Microsoft Windows. |
Bulletin 9 (MS15-017) | Important | Elevation of Privilege | Yes | Microsoft System Center Virtual Machine Manager 2012 R2 Update Rollup 4. |
Addtionally, the following were also made available:
Re-released Security Bulletin:
New Security Advisory:
Update for Windows Command Line Auditing (3004375).
Revsied Security Advisory:
About the Author
You May Also Like