Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

RETIRED: Microsoft December 2007 Advance Notification Multiple Vulnerabilities

Microsoft has released advance notification that the vendor will be releasing seven security bulletins on December 11, 2007. The highest severity rating for these issues is 'Critical'.

The bulletins are as follows:

Three 'Critical' bulletins affecting Microsoft Windows, DirectX, DirectShow, Windows Media Format Runtime, and Internet Explorer
Four 'Important' bulletins affecting Microsoft Windows


The following individual records have been created to document these vulnerabilities:

26797 Microsoft Message Queuing Service Buffer Overflow Vulnerability
26804 Microsoft DirectX WAV and AVI File Parsing Remote Code Execution Vulnerability
26789 Microsoft DirectX SAMI File Parsing Remote Code Execution Vulnerability
26776 Microsoft Windows Media Format Runtime ASF File Remote Code Execution Vulnerability
26506 Microsoft Internet Explorer mshtml.dll Remote Memory Corruption Vulnerability
26816 Microsoft Internet Explorer cloneNode() and nodeValue() Remote Memory Corruption Vulnerability
26817 Microsoft Internet Explorer Element Tags Remote Memory Corruption Vulnerability
26427 Microsoft Internet Explorer DHTML Object Memory Corruption Vulnerability
25544 Intuit QuickBooks Online Edition ActiveX Controls Multiple Vulnerabilities
26819 Intuit QuickBooks Online Edition ActiveX Controls Multiple Unspecified Vulnerabilities
26815 Vantage Linguistics AnswerWorks ActiveX Controls Multiple Unspecified Vulnerabilities
26777 Microsoft Windows SMBv2 Code Signing Remote Code Execution Vulnerability
26757 Microsoft Windows Vista Kernel ALPC Local Privilege Escalation Vulnerability
26121 Macrovision SafeDisc SecDRV.SYS Method_Neither Local Privilege Escalation Vulnerability







 

Privacy Statement
Copyright 2009, SecurityFocus