The Enterprise Security Supersite NewsFactor Sites:       NewsFactor.com     Enterprise Security Today     CRM Daily     Business Report     Sci-Tech Today  
   
Home Network Security Viruses & Malware Cybercrime Security Solutions More Topics...
GET RECOGNIZED
Let an ISACA® certification elevate your career.
Register today and save
You are here: Home / Windows Security / July Fireworks for Patch Tuesday
DDoS Protection Powered By Verisign
Patch Tuesday Continues July Fireworks for IT Admins
Patch Tuesday Continues July Fireworks for IT Admins
By Jennifer LeClaire / Enterprise Security Today Like this on Facebook Tweet this Link thison Linkedin Link this on Google Plus
PUBLISHED:
JULY
06
2012


Microsoft just announced the bugs it plans to patch on Tuesday. In all, Redmond will fix nine issues. Three of those vulnerabilities are rated "critical," which means they could allow hackers to launch remote code executions. The others vulnerabilities are rated "important."

The July release includes nine bulletins addressing 16 vulnerabilities in Microsoft Windows, Microsoft Office, Internet Explorer, and Visual Basic for Applications," said Angela Gunn of Microsoft's Trustworthy Computing Group. "As always, we recommend that customers review the ANS summary page for more information and prepare for the testing and deployment of these bulletins as soon as possible."

Across the Microsoft Board

Paul Henry, a security and forensic analyst at Lumension, said it looked like IT administrators would have to deal with more fireworks this month.

That, he said, is because nine patches is more than double last year's July patches: 4 total, with only 1 critical. According to his research, this puts Microsoft at 51 bulletins for 2012, about on par with 2011, which saw 56 bulletins at this time last year.

"Looking at the bulletins, one of the first things that jumps out is that these really impact the entire family of products, from XP all the way to 2008," Henry told us. "This is really a weird mix of patches, impacting both legacy and current generation software with critical issues."

Henry noted that it remains unclear if Microsoft will issue a patch this month for the XML Core Services issue that is currently being actively exploited in IE attacks. Microsoft normally includes details in its pre-release information if a zero-day patch is included, he explained.

However, in the July pre-release, Microsoft didn't call this out. Microsoft issued a FixIt tool to address the XML Core Services zero-day vulnerability and that may remain the only solution for IT admins in July.

New OSes on Horizon

Beyond July's Patch Tuesday, Henry is looking forward to the next set of potential targets: new operating systems from both Apple and Microsoft. Apple will soon release Mountain Lion and Microsoft is readying Windows 8. Although the full impact on IT remains to be seen, Henry said you can get a jump start by reading about some of the security features for both.

"Mountain Lion is a definite step forward for Apple security, with several new features to make it easier for IT to secure these machines. White-listing, sandboxed applications and daily updates go a long way in securing these products," Henry said.

"Windows 8 will also feature white listing and sandboxed apps, as well as a continuously running security system that starts protecting machines before the operating system is even fully booted."

Tell Us What You Think
Comment:

Name:

Like Us on FacebookFollow Us on Twitter
TOP STORIES NOW
MAY BE OF INTEREST
Salesforce.com is the market and technology leader in Software-as-a-Service. Its award-winning CRM solution helps 82,400 customers worldwide manage and share business information over the Internet. Experience CRM success. Click here for a FREE 30-day trial.
MORE IN WINDOWS SECURITY
Product Information and Resources for Technology You Can Use To Boost Your Business

Network Security Spotlight
Who Is the Hacker Group Lizard Squad?
Are they dangerous or just obnoxious? That’s what many are wondering about the hacker group Lizard Squad, which tweeted out a bomb threat that grounded a flight with a Sony exec aboard.
 
Are Government Spies Tipping Off Tor?
Less than a month ago, tech news headlines heralded a Tor Project breach. Now, some are saying that government spies are sharing information with Tor to help it prevent future breaches.
 
Backoff Malware Hits 1,000+ Businesses, Likely More
More than 1,000 businesses across the U.S. might have been affected by Backoff, a new kind of point-of-sale (PoS) malware, according to the Department of Homeland Security.
 

Enterprise Hardware Spotlight
Apple Set To Release Largest iPad Ever
Tech giant Apple seems to have adopted the mantra “go big or go home.” The company is planning to introduce its largest iPad ever: a 12.9-inch behemoth that will dwarf its largest existing models.
 
Alert: HP Recalls 5 Million Notebook AC Power Cords
HP is recalling about 5.6 million notebook computer AC power cords in the U.S. and another 446,700 in Canada because of possible overheating, which can pose a fire and burn hazard.
 
Acer's New Desktop Box Rides the Chrome OS Wave
Filling out its Chrome OS line, Acer is following the introduction of a larger Chromebook line earlier this month with a new tiny $180 desktop Chromebox and also a smaller Chromebook.
 

Mobile Technology Spotlight
Apple Set To Release Largest iPad Ever
Tech giant Apple seems to have adopted the mantra “go big or go home.” The company is planning to introduce its largest iPad ever: a 12.9-inch behemoth that will dwarf its largest existing models.
 
Verizon Hops on the Voice-Over-LTE Bandwagon
Wireless provider Verizon is gearing up for a nationwide launch of its Voice-over-LTE service over the next several weeks, promising clearer and crisper phone calls and a Skype-like video service.
 
Smartphone 'Kill Switch' Law in California; Will Other States Follow?
California’s new law -- signed by Gov. Jerry Brown on Monday -- aimed at deterring cellphone theft could mean most mobile phones sold in the U.S. will soon include similar “kill-switch” tech.
 

Navigation
Enterprise Security Today
Home/Top News | Network Security | Viruses & Malware | Cybercrime | Security Solutions | Mobile Security | Disaster Recovery | Windows Security
Data Security | EST Press Releases
NewsFactor Network Enterprise I.T. Sites
NewsFactor Technology News | Enterprise Security Today | CRM Daily

NewsFactor Business and Innovation Sites
Sci-Tech Today | NewsFactor Business Report

NewsFactor Services
FreeNewsFeed | Free Newsletters

About NewsFactor Network | How To Contact Us | Article Reprints | Careers @ NewsFactor | Services for PR Pros | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2014 NewsFactor Network. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.