MS Sec Notification mailing list archives

Microsoft Security Bulletin Releases


From: "Microsoft" <securitynotifications () e-mail microsoft com>
Date: Wed, 29 Jul 2015 13:37:48 -0600

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

********************************************************************
Title: Microsoft Security Bulletin Releases
Issued: July 29, 2015
********************************************************************

Summary
=======

The following bulletins have undergone a major revision increment. 

  * MS15-074 - Important
  * MS15-078 - Critical
 

Bulletin Information:
=====================

MS15-074 - Important

 - Title: VVulnerability in Windows Installer Service Could Allow
   Elevation of Privilege (3072630) 
 - https://technet.microsoft.com/library/security/ms15-074
 - Reason for Revision: V2.0 (July 29, 2015): Bulletin rereleased
   to announce the availability of an update package for Windows
   10 systems. Customers running Windows 10 should apply the
   3074683 update to be protected from the vulnerability
   discussed in this bulletin. The update is available via
   Windows Update only. The majority of customers have
   automatic updating enabled and will not need to take any
   action because the update will be downloaded and installed
   automatically. 
 - Originally posted: July 14, 2015
 - Updated: July 29, 2015
 - Bulletin Severity Rating: Important
 - Version: 2.0 

MS15-078 - Critical

 - Title: Vulnerability in Microsoft Font Driver Could Allow 
   Remote Code Execution (3079904) 
 - https://technet.microsoft.com/library/security/ms15-078
 - Reason for Revision: V2.0 (July 29, 2015): Bulletin rereleased
   to announce the availability of an update package for Windows
   10 systems. Customers running Windows 10 should apply the
   3074683 update to be protected from the vulnerability
   discussed in this bulletin. The update is available via
   Windows Update only. The majority of customers have
   automatic updating enabled and will not need to take any
   action because the update will be downloaded and installed
   automatically. 
 - Originally posted: July 20, 2015
 - Updated: July 29, 2015
 - Bulletin Severity Rating: Critical
 - Version: 2.0 

 
Other Information
=================

Recognize and avoid fraudulent email to Microsoft customers:
=============================================================
If you receive an email message that claims to be distributing 
a Microsoft security update, it is a hoax that may contain 
malware or pointers to malicious websites. Microsoft does 
not distribute security updates via email. 

The Microsoft Security Response Center (MSRC) uses PGP to digitally 
sign all security notifications. However, PGP is not required for 
reading security notifications, reading security bulletins, or 
installing security updates. You can obtain the MSRC public PGP key
at <https://technet.microsoft.com/security/dn753714>.

********************************************************************
THE INFORMATION PROVIDED IN THIS MICROSOFT COMMUNICATION IS
PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND. MICROSOFT
DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR IMPLIED, INCLUDING
THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
PURPOSE.
IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE
LIABLE FOR ANY DAMAGES WHATSOEVER INCLUDING DIRECT, INDIRECT,
INCIDENTAL, CONSEQUENTIAL, LOSS OF BUSINESS PROFITS OR SPECIAL
DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE BEEN
ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY
FOR CONSEQUENTIAL OR INCIDENTAL DAMAGES SO THE FOREGOING
LIMITATION MAY NOT APPLY.
********************************************************************

Microsoft respects your privacy. Please read our online Privacy
Statement at <http://go.microsoft.com/fwlink/?LinkId=81184>.

If you would prefer not to receive future technical security
notification alerts by email from Microsoft and its family of
companies please visit the following website to unsubscribe:
<https://profile.microsoft.com/RegSysProfileCenter/subscriptionwizar
d.aspx?wizid=5a2a311b-5189-4c9b-9f1a-d5e913a26c2e&%3blcid=1033>.

These settings will not affect any newsletters you’ve requested or
any mandatory service communications that are considered part of
certain Microsoft services.

For legal Information, see:
<http://www.microsoft.com/info/legalinfo/default.mspx>.

This newsletter was sent by:
Microsoft Corporation
1 Microsoft Way
Redmond, Washington, USA
98052

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 10.2.0 (Build 1950)
Charset: utf-8
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=dTJm
-----END PGP SIGNATURE-----


Current thread: