MS Sec Notification mailing list archives
Microsoft Security Update Minor Revisions
From: "Microsoft" <securitynotifications () e-mail microsoft com>
Date: Fri, 16 Feb 2018 18:10:26 -0600
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ******************************************************************** Title: Microsoft Security Update Minor Revisions Issued: February 16, 2018 ******************************************************************** Summary ======= The following CVEs have been revised in the February 2018 Security Updates. * CVE-2018-0842 Revision Information: ===================== CVE-2018-0842 - Title: CVE-2018-0842 | Windows Kernel Elevation of Privilege Vulnerability - https://portal.msrc.microsoft.com/en-us/security-guidance - Reasons for Revision: Corrected the CVE title and description to address the vulnerability as elevation of privilege. In the Affected Products table, corrected the Impact to Elevation of Privilege. This is an informational change only. - Originally posted: February 13, 2018 - Updated: February 13, 2018 - CVE Severity Rating: Important - Version: 1.1 - Reasons for Revision: In the Affected Products table, added the Supersedence entries for Monthly Rollup 4074594 for affected versions of Windows 8.1 and Windows Server 2012 R2. This is an informational change only. - Originally posted: February 13, 2018 - Updated: February 14, 2018 - CVE Severity Rating: Important - Version: 1.2 * CVE-2018-0825 - Title: CVE-2018-0825 | StructuredQuery Remote Code Execution Vulnerability - https://portal.msrc.microsoft.com/en-us/security-guidance - Reasons for Revision: In the Affected Products table, added the Supersedence entries for Monthly Rollup 4074594 for affected versions of Windows 8.1 and Windows Server 2012 R2. This is an informational change only. - Originally posted: February 13, 2018 - Updated: February 14, 2018 - CVE Severity Rating: Critical - Version: 1.1 * ADV180005 * CVE-2018-0832 * CVE-2018-0742 * CVE-2018-0833 * CVE-2018-0757 * CVE-2018-0844 * CVE-2018-0820 * CVE-2018-0846 * CVE-2018-0829 * CVE-2018-0847 * CVE-2018-0830 - https://portal.msrc.microsoft.com/en-us/security-guidance - Reasons for Revision: In the Affected Products table, added the Supersedence entries for Monthly Rollup 4074594 for affected versions of Windows 8.1 and Windows Server 2012 R2. This is an informational change only. - Originally posted: February 13, 2018 - Updated: February 14, 2018 - CVE Severity Rating: Important - Version: 1.1 Other Information ================= Recognize and avoid fraudulent email to Microsoft customers: ============================================================= If you receive an email message that claims to be distributing a Microsoft security update, it is a hoax that may contain malware or pointers to malicious websites. Microsoft does not distribute security updates via email. The Microsoft Security Response Center (MSRC) uses PGP to digitally sign all security notifications. However, PGP is not required for reading security notifications, reading security bulletins, or installing security updates. You can obtain the MSRC public PGP key at <https://technet.microsoft.com/security/dn753714>. ******************************************************************** THE INFORMATION PROVIDED IN THIS MICROSOFT COMMUNICATION IS PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND. MICROSOFT DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR IMPLIED, INCLUDING THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE LIABLE FOR ANY DAMAGES WHATSOEVER INCLUDING DIRECT, INDIRECT, INCIDENTAL, CONSEQUENTIAL, LOSS OF BUSINESS PROFITS OR SPECIAL DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY FOR CONSEQUENTIAL OR INCIDENTAL DAMAGES SO THE FOREGOING LIMITATION MAY NOT APPLY. ******************************************************************** Microsoft respects your privacy. Please read our online Privacy Statement at <http://go.microsoft.com/fwlink/?LinkId=81184>. If you would prefer not to receive future technical security notification alerts by email from Microsoft and its family of companies please visit the following website to unsubscribe: <https://profile.microsoft.com/RegSysProfileCenter/subscriptionwizar d.aspx?wizid=5a2a311b-5189-4c9b-9f1a-d5e913a26c2e&%3blcid=1033>. These settings will not affect any newsletters youâve requested or any mandatory service communications that are considered part of certain Microsoft services. For legal Information, see: <http://www.microsoft.com/info/legalinfo/default.mspx>. This newsletter was sent by: Microsoft Corporation 1 Microsoft Way Redmond, Washington, USA 98052 -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEELe29pj1Ogz+2MnKbEEiO2re18ugFAlqHbAcACgkQEEiO2re1 8ui/Yg//fllQiRYjtZPKqQuNxo5SUAaa2O2TfzwBNjD/r+xsLKx8+DrVGsmQFcBW +cJE/E5LaaNaUwK6OVCjlDIaOecBQGyvfRiC98xDbrrk13yrCnwqwzsrVNy6JYQc 2jDEOXVQggdbbaZfQ4x7AzyIR3inePpknudvPci5g/Gn+IAazecfzZoMCxAsnDRU PUG+xUo/MOPNSi+amUTbYBlicRJ+QIog9j6Y37mFbrBNCqVqL1honQqccS2EikZO bibmfcYmRUibD5Vmr+HaCCA8ktBE6t06s3kTWUPy1rhnMYZWjyuu5N+iD/BKUnKP 9FPlfWeJu/F3ZpYY0HT4BeZZEntFOgetuuXiFwwR1Px62mbbW2GKz0HAg8ja9BOQ 8tWjzbHvwwiLysnRRaeZs8Q4KoHghz3yUBpKJ3pLt3gl+813960vLsbcFJq6bRXs zmMaea4Ak+grWVM1qNcvoGmTZZu2SetxvdMi+T8gSkd0DpisLHEyeM7bOkQ4Ur6s HIVNiSJPoa4vIBOiF+Rf3HZvgRi00pmJ1epJtZr5YIIXWqzssSkCpZYxug74uvbn ZBSfq2D0S7UFh5ZpAk9fjMED7F7dMPpmVfn6OO8P7kHX/mwZJHutx7Ou4pqj3cOC ZIntgrS3OOYLnh2iXHUN/UavS1B0ehSNN9aZPJbZlL/6WkMfuI0= =PEIT -----END PGP SIGNATURE-----
Current thread:
- Microsoft Security Update Minor Revisions Microsoft (Jan 13)
- <Possible follow-ups>
- Microsoft Security Update Minor Revisions Microsoft (Jan 13)
- Microsoft Security Update Minor Revisions Microsoft (Feb 16)