June 10, 2008Microsoft released the June Security Update on June 10, 2008. Seven bulletins were released that address ten individual vulnerabilities. Microsoft rated three of the seven bulletins as Critical. Some level of user interaction is required to exploit the Critical vulnerabilities that exist in Microsoft Internet Explorer and Microsoft DirectX. The Critical vulnerability in the Microsoft Bluetooth Stack does not require user interaction but only affects Bluetooth-enabled devices that reside within physical proximity of an attacker. Three bulletins rated as Important address vulnerabilities in Active Directory, Pragmatic General Multicast (PGM), and Microsoft WINS. The WINS vulnerability could allow for elevation of privileges, while the Active Directory and PGM vulnerabilities may result in a denial of service. A Moderate bulletin was also released to address a code execution vulnerability in the Windows Vista Speech Recognition ActiveX control.
|
