MS Sec Notification mailing list archives

Microsoft Security Advisory Notification


From: "Microsoft" <securitynotifications () e-mail microsoft com>
Date: Tue, 10 Dec 2013 17:21:11 -0600

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

********************************************************************
Title: Microsoft Security Advisory Notification
Issued: December 10, 2013
********************************************************************

Security Advisories Updated or Released Today
==============================================

* Microsoft Security Advisory (2915720)
  - Title: Changes in Windows Authenticode Signature Verification
  - https://technet.microsoft.com/security/advisory/2915720
  - Revision Note: V1.0 (December 10, 2013): Advisory published.

* Microsoft Security Advisory (2905247)
  - Title: Insecure ASP.NET Site Configuration Could Allow 
    Elevation of Privilege
  - https://technet.microsoft.com/security/advisory/2905247
  - Revision Note: V1.0 (December 10, 2013): Advisory published.

* Microsoft Security Advisory (2871690)
  - Title: Update to Revoke Non-compliant UEFI Modules
  - https://technet.microsoft.com/security/advisory/2871690
  - Revision Note: V1.0 (December 10, 2013): Advisory published.

* Microsoft Security Advisory (2896666)
  - Vulnerability in Microsoft Graphics Component Could Allow 
    Remote Code Execution
  - https://technet.microsoft.com/security/advisory/2896666
  - Revision Note: V2.0 (December 10, 2013): Advisory updated to 
    reflect publication of security bulletin.

* Microsoft Security Advisory (2755801)
  - Update for Vulnerabilities in Adobe Flash Player in Internet
    Explorer
  - https://technet.microsoft.com/security/advisory/2755801
  - Revision Note: V17.0 (December 10, 2013): Added the 2907997 
    update to the Current Update section.


Other Information
=================

Follow us on Twitter for the latest information and updates:
http://twitter.com/msftsecresponse 

Recognize and avoid fraudulent email to Microsoft customers:
=============================================================
If you receive an email message that claims to be distributing
a Microsoft security update, it is a hoax that may contain
malware or pointers to malicious websites. Microsoft does
not distribute security updates via email.

The Microsoft Security Response Center (MSRC) uses PGP to digitally
sign all security notifications. However, it is not required to read
security notifications, security bulletins, security advisories, or
install security updates. You can obtain the MSRC public PGP key at
https://technet.microsoft.com/security/bulletin/pgp.

To receive automatic notifications whenever Microsoft Security 
Bulletins and Microsoft Security Advisories are issued or revised,
subscribe to Microsoft Technical Security Notifications on
http://technet.microsoft.com/security/dd252948.


********************************************************************
THE INFORMATION PROVIDED IN THIS MICROSOFT COMMUNICATION IS
PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND. MICROSOFT
DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR IMPLIED, INCLUDING
THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
PURPOSE.
IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE
LIABLE FOR ANY DAMAGES WHATSOEVER INCLUDING DIRECT, INDIRECT,
INCIDENTAL, CONSEQUENTIAL, LOSS OF BUSINESS PROFITS OR SPECIAL
DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE BEEN
ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY
FOR CONSEQUENTIAL OR INCIDENTAL DAMAGES SO THE FOREGOING
LIMITATION MAY NOT APPLY.
********************************************************************

To manage or cancel your subscription to this newsletter,
visit the Microsoft.com Profile Center at
<http://go.microsoft.com/fwlink/?LinkId=245953> and then
click Manage Communications under My Subscriptions in the 
Quicklinks section.

For more information, see the Communications Preferences section
of the Microsoft Online Privacy Statement at:
<http://go.microsoft.com/fwlink/?LinkId=92781>.

For the complete Microsoft Online Privacy Statement, see:
<http://go.microsoft.com/fwlink/?LinkId=81184>.

For legal Information, see:
<http://www.microsoft.com/info/legalinfo/default.mspx>.

This newsletter was sent by:
Microsoft Corporation
1 Microsoft Way
Redmond, Washington, USA
98052



-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 10.2.0 (Build 1950)
Charset: utf-8
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=tHUs
-----END PGP SIGNATURE-----


Current thread: