<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Windows Enterprise Desktop &#187; MS09-026</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/vista-enterprise-desktop/tag/ms09-026/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/vista-enterprise-desktop</link>
	<description></description>
	<lastBuildDate>Mon, 10 Jun 2013 20:27:06 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Patch Tuesday June09: A Real Whopper!</title>
		<link>http://itknowledgeexchange.techtarget.com/vista-enterprise-desktop/patch-tuesday-june09-a-real-whopper/</link>
		<comments>http://itknowledgeexchange.techtarget.com/vista-enterprise-desktop/patch-tuesday-june09-a-real-whopper/#comments</comments>
		<pubDate>Wed, 10 Jun 2009 16:43:49 +0000</pubDate>
		<dc:creator>Ed Tittel</dc:creator>
				<category><![CDATA[Enterprise Vista]]></category>
		<category><![CDATA[enterprise Vista desktop]]></category>
		<category><![CDATA[MS09-018]]></category>
		<category><![CDATA[MS09-019]]></category>
		<category><![CDATA[MS09-020]]></category>
		<category><![CDATA[MS09-021]]></category>
		<category><![CDATA[MS09-022]]></category>
		<category><![CDATA[MS09-023]]></category>
		<category><![CDATA[MS09-024]]></category>
		<category><![CDATA[MS09-025]]></category>
		<category><![CDATA[MS09-026]]></category>
		<category><![CDATA[MS09-027]]></category>
		<category><![CDATA[Patch Tuesday]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/vista-enterprise-desktop/?p=340</guid>
		<description><![CDATA[OK, so yesterday&#8217;s Patch Tuesday does the deed for June. It&#8217;s a monster: 10 security bulletins, 31 vulnerabilities addressed, and involving most versions of Windows itself, IE, and various MS Office and related elements (Works, Word, and Excel). Even the Windows Print Spooler and OS Kernel get in on the act! Of the 10 bulletins [...]]]></description>
				<content:encoded><![CDATA[<p>OK, so yesterday&#8217;s Patch Tuesday does the deed for June. It&#8217;s a monster: 10 security bulletins, 31 vulnerabilities addressed, and involving most versions of Windows itself, IE, and various MS Office and related elements (Works, Word, and Excel). Even the Windows Print Spooler and OS Kernel get in on the act!</p>
<p>Of the 10 bulletins issues, half (5) are critical, and fill some gaping widely-known holes in MS security. Chief among these: the dual WebDAV gothas for IIS publicized in May (explained in this <a href="http://blogs.zdnet.com/security/?p=3424" target="_blank">Ryan Naraine blog</a> from 5/19) and the infamous Pwn2Own vulnerability discovered in March at the CanSecWest conference in Vancouver.</p>
<table border="1" cellspacing="4" cellpadding="4">
<thead>
<tr>
<th>Bulletin ID</th>
<th>Rating</th>
<th>Target</th>
<th>Remarks</th>
</tr>
</thead>
<tbody>
<tr>
<td>MS09-018</td>
<td>Critical</td>
<td>Active Directory, Server 2000/203</td>
<td>2 remote code execution items</td>
</tr>
<tr>
<td>MS09-019</td>
<td>Critical</td>
<td>IE version 5-8</td>
<td>8 vulnerabilities, including remote code execution items</td>
</tr>
<tr>
<td>MS09-020</td>
<td>Important</td>
<td>IIS</td>
<td>2 vulnerabiliites allowing elevation of privilege</td>
</tr>
<tr>
<td>MS09-021</td>
<td>Critical</td>
<td>MS Excel</td>
<td>7 vulnerabilities including remote code execution</td>
</tr>
<tr>
<td>MS09-022</td>
<td>Critical</td>
<td>Windows Print Spooler</td>
<td>3 vulnerabilities, including remote code execution (Windows</td>
</tr>
<tr>
<td>MS09-023</td>
<td>Moderate</td>
<td>Windows Search</td>
<td>Single vulnerability could allow info disclosure</td>
</tr>
<tr>
<td>MS09-024</td>
<td>Critical</td>
<td>Microsoft Works converter</td>
<td>Could allow remote code execution</td>
</tr>
<tr>
<td>MS09-025</td>
<td>Important</td>
<td>Windows kernel</td>
<td>4 vulnerabilities that could allow elevation of privilege</td>
</tr>
<tr>
<td>MS09-026</td>
<td>Important</td>
<td>RPC</td>
<td>Could allow execution of arbitrary code or takeover</td>
</tr>
<tr>
<td>MS09-027</td>
<td>Critical</td>
<td>MS Word</td>
<p>I downloaded mine for Vista yesterday and they appear to have installed and taken without a hitch. You&#8217;ll probably want to start testing these right away, if you don&#8217;t plan to deploy them as-is.</p>
<td>2 vulnerabiltiies could allow remote code execution</td>
</tr>
</tbody>
</table>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/vista-enterprise-desktop/patch-tuesday-june09-a-real-whopper/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
