Cisco Event Response: Microsoft Security Bulletin for January 2008

January 8, 2008

Microsoft released the January Security Update on January 8, 2008. Two bulletins were released that address three individual vulnerabilities. Microsoft rated one bulletin as Critical and the other as Important; both bulletins address Microsoft Windows products. The Critical vulnerability could allow a remote attacker to execute arbitrary code, but an exploit requires that an attacker can send multicast IGMPv3 or MLDv2 traffic to an affected system. Microsoft released information on two Important vulnerabilities that may allow attackers to cause a denial of service or gain elevated privileges.


Cisco Applied Mitigation Bulletin

Cisco Applied Mitigation Bulletins provide identification and mitigation techniques that administrators can deploy on Cisco network devices. When applicable, Cisco IOS access control lists, Cisco Intrusion Prevention System (IPS) signatures, Cisco IOS NetFlow, and firewall inspection are among the techniques discussed in the bulletins.

Cisco Applied Mitigation Bulletin: Microsoft Security Bulletin for January 2008


Cisco Security IntelliShield Alert Manager and Cisco IPS

The following table identifies Cisco Security IntelliShield Alert Manager alerts and Cisco IPS signatures associated with this Microsoft update:

Microsoft Security Bulletin Affected Product Cisco IntelliShield Alert CVE ID
Search CVEs
Cisco IPS Signature CVSS
Base Score
CVSS Q&A

Microsoft Security Bulletin MS08-001

Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution

Microsoft Windows

Microsoft Windows XP Professional

Microsoft Windows Server

Microsoft Windows Vista

Microsoft Windows Kernel IGMP and MLD Code Execution Vulnerability CVE-2007-0069
6224/0
9.3
Microsoft Windows Kernel ICMP Router Discovery Protocol Denial of Service Vulnerability CVE-2007-0066
6755/0
5.7

Microsoft Security Bulletin MS08-002

Vulnerability in LSASS Could Allow Local Elevation of Privilege

Microsoft Windows

Microsoft Windows XP Professional

Microsoft Windows Server

Microsoft Windows LSASS Privilege Escalation Vulnerability CVE-2007-5352
6.6

 

Return to Cisco Security Center