-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
*******************************************************************************
*******
Title: Microsoft Security Update Releases
Issued: December 10, 2019 *****************************************************
*********************************
Summary
=======
The following CVEs have undergone a major revision increment:
* CVE-2018-0859
* CVE-2019-0838
* CVE-2019-0860
* ADV990001
Revision Information:
=====================
- CVE-2018-0859 | Scripting Engine Memory Corruption Vulnerability
- https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2018-
0859
- Version: 2.0
- Reason for Revision: Revised the Security Updates table to include supported
editions of Windows 10 Version 1903 because it is affected by this CVE.
Microsoft
recommends that customers running Windows 10 Version 1903 install security
update
4530684 to be protected from this vulnerability.
- Originally posted: February 13, 2018
- Updated: December 10, 2019
- Aggregate CVE Severity Rating: Critical
- CVE-2019-0838 | Windows Information Disclosure Vulnerability
- https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2019-
0838
- Version: 2.0
- Reason for Revision: Revised the Security Updates table to include supported
editions of Windows 10 Version 1903 because it is affected by this CVE.
Microsoft
recommends that customers running Windows 10 Version 1903 install security
update
4530684 to be protected from this vulnerability.
- Originally posted: April 9, 2019
- Updated: December 10, 2019
- Aggregate CVE Severity Rating: Important
- CVE-2019-0860 | Chakra Scripting Engine Memory Corruption Vulnerability
- https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2019-
0860
- Version: 2.0
- Reason for Revision: Revised the Security Updates table to include supported
editions of Windows 10 Version 1903 because it is affected by this CVE.
Microsoft
recommends that customers running Windows 10 Version 1903 install security
update
4530684 to be protected from this vulnerability.
- Originally posted: April 9, 2019
- Updated: December 10, 2019
- Aggregate CVE Severity Rating: Critical
- ADV990001 | Latest Servicing Stack Updates
- https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/ADV990001
- Version: 17.0
- Reason for Revision: A Servicing Stack Update has been released for Windows
Server
2008 and Windows Server 2008 (Server Core installation); Windows 7, Windows
Server
2008 R2, and Windows Server 2008 R2 (Server Core installation). See the FAQ
section
for more information.
- Originally posted: November 13, 2018
- Updated: December 10, 2019
- Aggregate CVE Severity Rating: Critical
*******************************************************************************
*******
Other Information
=================
Recognize and avoid fraudulent email to Microsoft customers: ==================
====================================================================
If you receive an email message that claims to be distributing a Microsoft
security
update, it is a hoax that may contain malware or pointers to malicious websites.
Microsoft does not distribute security updates via email.
The Microsoft Security Response Center (MSRC) uses PGP to digitally sign all
security
notifications. However, PGP is not required for reading security notifications,
reading security bulletins, or installing security updates. You can obtain the
MSRC
public PGP key at <https://technet.microsoft.com/security/dn753714>.
*******************************************************************************
*******
THE INFORMATION PROVIDED IN THIS MICROSOFT COMMUNICATION IS PROVIDED "AS IS"
WITHOUT
WARRANTY OF ANY KIND. MICROSOFT DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR
IMPLIED,
INCLUDING THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
PURPOSE.
IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE LIABLE FOR ANY
DAMAGES
WHATSOEVER INCLUDING DIRECT, INDIRECT, INCIDENTAL, CONSEQUENTIAL, LOSS OF
BUSINESS
PROFITS OR SPECIAL DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE
BEEN
ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY FOR
CONSEQUENTIAL
OR INCIDENTAL DAMAGES SO THE FOREGOING LIMITATION MAY NOT APPLY. **************
************************************************************************
Microsoft respects your privacy. Please read our online Privacy Statement at
<http://go.microsoft.com/fwlink/?LinkId=81184>.
If you would prefer not to receive future technical security notification alerts
by
email from Microsoft and its family of companies please visit the following
website
to unsubscribe:
<https://profile.microsoft.com/RegSysProfileCenter/subscriptionwizar
d.aspx?wizid=5a2a311b-5189-4c9b-9f1a-d5e913a26c2e&%3blcid=1033>.
These settings will not affect any newsletters you've requested or any mandatory
service communications that are considered part of certain Microsoft services.
For legal Information, see:
<http://www.microsoft.com/info/legalinfo/default.mspx>.
This newsletter was sent by:
Microsoft Corporation
1 Microsoft Way
Redmond, Washington, USA
98052
-----BEGIN PGP SIGNATURE-----
iQEzBAEBCAAdFiEELTQbGKdJ0A4NErYObMczVWaPe3UFAl3v21cACgkQbMczVWaP
e3UVmwgApFhpuRfFbONvSRrp2S8GrzhmLKtUZaBiEkq387a64PgtzZrelOqa1GMR
Jtec+YkSAjnQJUlIeXQfbduBCU7Nq7kG964zZnXCcIzSn3kG1MZ3thMvEayM5Kts
qyPkypqOT5LX+9dwAx0y8mvRGjXyK0D1j8eXf4NR8dDMDhFQR/t5+GgqhsOvnlHt
7G+z8nkUSU7L9I7kN26u8ga2Ew/37n8IOXMpgTxUuT/7w5RjojJ3H78gxEQ5VpoR
kdwAViSkykVOhHAuxKHA0c/BBonsIAbfnkaDwyUXd9EMH+sY6xHHVp+C1AdHvZtg
pq50DAOEAnZFr/BfHBHUAUYLhf/h1w==
=jweg
-----END PGP SIGNATURE-----
If you would prefer not to receive future technical security
notification alerts by email from Microsoft and its family of
companies please visit the following website to unsubscribe: https://account.m
icrosoft.com/profile/unsubscribe?CTID=0&ECID=HNuD%2FD%2Fxv8VEk6Rap6TfBIx2UImaDT
Nm32pQQH6ixwo%3D&K=e5282b67-8c89-4e67-afdd-a8e046bcb1b8&CMID=null&D=63711529857
1662035&PID=18000&TID=adfd46f4-992a-45ec-935c-4c9bc4baf506
---
■ Synchronet ■ Time Warp of the Future BBS - Home of League 10 IBBS Games
|