Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

Microsoft Security

Microsoft Security Bulletins for

= Check Point has provided a protection to this bulletin

Microsoft Security Bulletin MS11-081:
Cumulative Security Update for Internet Explorer (2586448)

Severity: Critical

CVE-2011-1993: Scroll Event Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Internet Explorer accesses an object that has been deleted. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the logged-on user.

CVE-2011-1995: OLEAuto32.dll Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Internet Explorer accesses an object that has not been correctly initialized. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the logged-on user.

CVE-2011-1996: Option Element Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Internet Explorer accesses an object that has been deleted. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the logged-on user.

CVE-2011-1997: OnLoad Event Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Internet Explorer accesses an object that has been deleted. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the logged-on user.

CVE-2011-1999: Select Element Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Internet Explorer accesses a dereferenced memory address. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the logged-on user.

CVE-2011-2000: Body Element Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Internet Explorer accesses an object that has been deleted. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the logged-on user.

CVE-2011-2001: Virtual Function Table Corruption Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that Internet Explorer accesses a virtual function table after it has been corrupted. The vulnerability may corrupt memory in such a way that an attacker could execute arbitrary code in the context of the logged-on user.

Microsoft Security Bulletin MS11-080:
Vulnerability in Ancillary Function Driver Could Allow Elevation of Privilege (2592799)

Microsoft Security Bulletin MS11-079:
Vulnerabilities in Microsoft Forefront Unified Access Gateway Could Cause Remote Code Execution (2544641)

Severity: High

CVE-2011-1895: ExcelTable Response Splitting XSS Vulnerability

An HTTP response splitting vulnerability exists in Microsoft Forefront Unified Access Gateway (UAG) server where JavaScript can be injected back to the user in the resulting page, effectively allowing attacker-controlled JavaScript to run in the context of the user clicking the link.

CVE-2011-1896: ExcelTable Reflected XSS Vulnerability

An XSS vulnerability exists in Microsoft Forefront Unified Access Gateway (UAG) server where JavaScript can be injected back to the user in the resulting page, effectively allowing attacker-controlled JavaScript to run in the context of the user clicking the link.

CVE-2011-1896: ExcelTable Reflected XSS Vulnerability

An XSS vulnerability exists in Microsoft Forefront Unified Access Gateway (UAG) server where JavaScript can be injected back to the user in the resulting page, effectively allowing attacker-controlled JavaScript to run in the context of the user clicking the link.

CVE-2011-1897: Default Reflected XSS Vulnerability

An XSS vulnerability exists in Microsoft Forefront Unified Access Gateway (UAG) server where JavaScript can be injected back to the user in the resulting page, effectively allowing attacker-controlled JavaScript to run in the context of the user clicking the link.

CVE-2011-1897: Default Reflected XSS Vulnerability

An XSS vulnerability exists in Microsoft Forefront Unified Access Gateway (UAG) server where JavaScript can be injected back to the user in the resulting page, effectively allowing attacker-controlled JavaScript to run in the context of the user clicking the link.

CVE-2011-1969: Poisoned Cup of Code Execution Vulnerability

Microsoft Forefront Unified Access Gateway (UAG) applies a signed Java applet that can be leveraged by malicious Web sites to cause remote code execution on any Java-enabled Web browser.

CVE-2011-2012: Null Session Cookie Crash

A denial of service vulnerability exists in implementations of Microsoft Forefront Unified Access Gateway (UAG). When this occurs, an attacker could leverage the vulnerability to stop the IIS worker process and deny access to Web services on the affected system.

Microsoft Security Bulletin MS11-078:
Vulnerability in .NET Framework and Microsoft Silverlight Could Allow Remote Code Execution (2604930)

Severity: Critical

CVE-2011-1253: .NET Framework Class Inheritance Vulnerability

A remote code execution vulnerability exists in the way that the Microsoft .NET Framework and Silverlight framework restrict inheritance within classes. An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the logged-on user. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

Microsoft Security Bulletin MS11-077:
Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Remote Code Execution (2567053)

Severity: High

CVE-2011-2003: Font Library File Buffer Overrun Vulnerability

A remote code execution vulnerability exists in the Windows kernel due to improper handling of a specially crafted .fon font file. The vulnerability could allow an attacker to run code in kernel-mode and then install programs; view, change, or delete data; or create new accounts with full administrative rights.

CVE-2011-2003: Font Library File Buffer Overrun Vulnerability

A remote code execution vulnerability exists in the Windows kernel due to improper handling of a specially crafted .fon font file. The vulnerability could allow an attacker to run code in kernel-mode and then install programs; view, change, or delete data; or create new accounts with full administrative rights.

Microsoft Security Bulletin MS11-076:
Vulnerability in Windows Media Center Could Allow Remote Code Execution (2604926)

Severity: High

CVE-2011-2009: Media Center Insecure Library Loading Vulnerability

A remote code execution vulnerability exists in the way that Windows Media Center handles the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

Microsoft Security Bulletin MS11-075:
Vulnerability in Microsoft Active Accessibility Could Allow Remote Code Execution (2623699)

Severity: High

CVE-2011-1247: Active Accessibility Insecure Library Loading Vulnerability

A remote code execution vulnerability exists in the way that the Microsoft Active Accessibility component handles the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

More to know

Check Point solutions can help you protect your Microsoft environment

Archives