Newsletters
News & Information for Technology Purchasers NewsFactor Sites:       NewsFactor.com     Enterprise Security Today     CRM Daily     Business Report     Sci-Tech Today  
   
This ad will display for the next 20 seconds. Please click for more information, or scroll down to pass the ad, or Close Ad.
Home Enterprise I.T. Cloud Computing Applications Hardware More Topics...
Vblock™ Systems:
Advanced converged infrastructure
increases productivity & lowers costs.

www.vce.com
Data Security
24/7/365 Network Uptime
Average Rating:
Rate this article:  
Patch Tuesday Continues July Fireworks for IT Admins
Patch Tuesday Continues July Fireworks for IT Admins

By Jennifer LeClaire
July 6, 2012 10:30AM

    Bookmark and Share
"Looking at the bulletins, one of the first things that jumps out is that these really impact the entire family of products, from XP all the way to 2008," said security analyst Paul Henry of Microsoft's Patch Tuesday release. "This is really a weird mix of patches." Microsoft issued nine bulletins addressing 16 Windows vulnerabilities, three critical.
 


Microsoft just announced the bugs it plans to patch on Tuesday. In all, Redmond will fix nine issues. Three of those vulnerabilities are rated "critical," which means they could allow hackers to launch remote code executions. The others vulnerabilities are rated "important."

The July release includes nine bulletins addressing 16 vulnerabilities in Microsoft Windows, Microsoft Office, Internet Explorer, and Visual Basic for Applications," said Angela Gunn of Microsoft's Trustworthy Computing Group. "As always, we recommend that customers review the ANS summary page for more information and prepare for the testing and deployment of these bulletins as soon as possible."

Across the Microsoft Board

Paul Henry, a security and forensic analyst at Lumension, said it looked like IT administrators would have to deal with more fireworks this month.

That, he said, is because nine patches is more than double last year's July patches: 4 total, with only 1 critical. According to his research, this puts Microsoft at 51 bulletins for 2012, about on par with 2011, which saw 56 bulletins at this time last year.

"Looking at the bulletins, one of the first things that jumps out is that these really impact the entire family of products, from XP all the way to 2008," Henry told us. "This is really a weird mix of patches, impacting both legacy and current generation software with critical issues."

Henry noted that it remains unclear if Microsoft will issue a patch this month for the XML Core Services issue that is currently being actively exploited in IE attacks. Microsoft normally includes details in its pre-release information if a zero-day patch is included, he explained.

However, in the July pre-release, Microsoft didn't call this out. Microsoft issued a FixIt tool to address the XML Core Services zero-day vulnerability and that may remain the only solution for IT admins in July.

New OSes on Horizon

Beyond July's Patch Tuesday, Henry is looking forward to the next set of potential targets: new operating systems from both Apple and Microsoft. Apple will soon release Mountain Lion and Microsoft is readying Windows 8. Although the full impact on IT remains to be seen, Henry said you can get a jump start by reading about some of the security features for both.

"Mountain Lion is a definite step forward for Apple security, with several new features to make it easier for IT to secure these machines. White-listing, sandboxed applications and daily updates go a long way in securing these products," Henry said.

"Windows 8 will also feature white listing and sandboxed apps, as well as a continuously running security system that starts protecting machines before the operating system is even fully booted."
 

Tell Us What You Think
Comment:

Name:



APC has an established a reputation for solid products that virtually pay for themselves upon installation. Who has time to spend worrying about system downtime? APC makes it easy for you to focus on business growth instead of business downtime with reliable data center systems and IT solutions. Learn more here.


 Data Security
1.   Verizon Report Exposes Cyberthreats
2.   Heartbleed Exploit Could Cost Millions
3.   Michaels: Nearly 3M Cards Breached
4.   Malware Targets Facebook Users
5.   IBM Adds Disaster Recovery to SoftLayer


advertisement
Heartbleed Exploit Could Cost Millions
But it could have been prevented.
Average Rating:
Michaels: Nearly 3M Cards Breached
But the hack has been contained.
Average Rating:
Don't Reset Passwords for Heartbleed?
Added caution needed to ensure security.
Average Rating:
Product Information and Resources for Technology You Can Use To Boost Your Business

Network Security Spotlight
Verizon Data Breach Report Exposes Top Threats
Beyond Heartbleed, there are cyberthreats vying to take down enterprise networks, corrupt smartphones, and wreak havoc on businesses. Verizon is exposing these threats in a new report.
 
Where Do Web Sites Stand, Post-Heartbleed?
A security firm says the vast majority of Web sites have patched themselves to protect against the Heartbleed bug, but now there are questions raised on the reliability of open-source programs.
 
White House Updating Online Privacy Policy
A new Obama administration privacy policy explains how the government will gather the user data of online visitors to WhiteHouse.gov, mobile apps and social media sites, saying much is in the public domain.
 

Navigation
NewsFactor Network
Home/Top News | Enterprise I.T. | Cloud Computing | Applications | Hardware | Mobile Tech | Big Data | Communications
World Wide Web | Network Security | Data Storage | Small Business | Microsoft/Windows | Apple/Mac | Linux/Open Source | Personal Tech
Press Releases
NewsFactor Network Enterprise I.T. Sites
NewsFactor Technology News | Enterprise Security Today | CRM Daily

NewsFactor Business and Innovation Sites
Sci-Tech Today | NewsFactor Business Report

NewsFactor Services
FreeNewsFeed | Free Newsletters | XML/RSS Feed

About NewsFactor Network | How To Contact Us | Article Reprints | Careers @ NewsFactor | Services for PR Pros | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2014 NewsFactor Network. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.