MS Sec Notification mailing list archives

Microsoft Security Bulletin Minor Revisions


From: "Microsoft" <securitynotifications () e-mail microsoft com>
Date: Wed, 16 Dec 2015 20:00:02 -0600

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

********************************************************************
Title: Microsoft Security Bulletin Minor Revisions
Issued: December 16, 2015
********************************************************************

Summary
=======
The following bulletins and/or bulletin summaries have undergone a 
minor revision increment. 

Please see the appropriate bulletin for more details.

  * MS15-124 - Critical
  * MS15-125 - Critical
  * MS15-DEC
    

Bulletin Information:
=====================

MS15-124 - Critical 

 - Title: Cumulative Security Update for Internet Explorer (3116180)
 - https://technet.microsoft.com/library/security/ms15-124.aspx
 - Reason for Revision: V1.1 (December 16, 2015): Bulletin revised 
   to further clarify the steps users must take to be protected 
   from the vulnerability described in CVE-2015-6161. This bulletin, 
   MS15-124, provides protections for this issue, but user action is 
   required to enable them; the cumulative update for Internet 
   Explorer does not enable the protections by default. Before 
   applying the protections, Microsoft recommends that customers 
   perform testing appropriate to their environment and system 
   configurations.
 - Originally posted: December 08, 2015   
 - Updated: December 16, 2015
 - Bulletin Severity Rating: Critical
 - Version: 1.1

MS15-125 - Critical 

 - Title: Cumulative Security Update for Microsoft Edge (3116184)
 - https://technet.microsoft.com/library/security/ms15-125.aspx
 - Reason for Revision: V1.1 (December 16, 2015): Revised the 
   vulnerability description for CVE-2015-6161 to more accurately
   describe the ASLR Bypass. This is an informational change only. 
   Customers who have already successfully installed security 
   update 3116869 or 3116900 do not need to take any action.
 - Originally posted: November 10, 2015   
 - Updated: December 09, 2015
 - Bulletin Severity Rating: Critical
 - Version: 1.1

MS15-DEC

 - Title: Microsoft Security Bulletin Summary for December 2015
 - https://technet.microsoft.com/library/security/ms15-dec.aspx
 - Reason for Revision: V1.2 (December 16, 2015): Bulletin Summary
   revised to add a Known Issue to the Executive Summaries table 
   for 3104002. To resolve the issue, install hotfix 3125446. See
   Microsoft Knowledge Base Article 3104002 for more information.
 - Originally posted: December 08, 2015   
 - Updated: December 16, 2015
 - Version: 1.2

 
Other Information
=================

Recognize and avoid fraudulent email to Microsoft customers:
=============================================================
If you receive an email message that claims to be distributing 
a Microsoft security update, it is a hoax that may contain 
malware or pointers to malicious websites. Microsoft does 
not distribute security updates via email. 

The Microsoft Security Response Center (MSRC) uses PGP to digitally 
sign all security notifications. However, PGP is not required for 
reading security notifications, reading security bulletins, or 
installing security updates. You can obtain the MSRC public PGP key
at <https://technet.microsoft.com/security/dn753714>.

********************************************************************
THE INFORMATION PROVIDED IN THIS MICROSOFT COMMUNICATION IS
PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND. MICROSOFT
DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR IMPLIED, INCLUDING
THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
PURPOSE.
IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE
LIABLE FOR ANY DAMAGES WHATSOEVER INCLUDING DIRECT, INDIRECT,
INCIDENTAL, CONSEQUENTIAL, LOSS OF BUSINESS PROFITS OR SPECIAL
DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE BEEN
ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY
FOR CONSEQUENTIAL OR INCIDENTAL DAMAGES SO THE FOREGOING
LIMITATION MAY NOT APPLY.
********************************************************************

Microsoft respects your privacy. Please read our online Privacy
Statement at <http://go.microsoft.com/fwlink/?LinkId=81184>.

If you would prefer not to receive future technical security
notification alerts by email from Microsoft and its family of
companies please visit the following website to unsubscribe:
<https://profile.microsoft.com/RegSysProfileCenter/subscriptionwizar
d.aspx?wizid=5a2a311b-5189-4c9b-9f1a-d5e913a26c2e&%3blcid=1033>.

These settings will not affect any newsletters you’ve requested or
any mandatory service communications that are considered part of
certain Microsoft services.

For legal Information, see:
<http://www.microsoft.com/info/legalinfo/default.mspx>.

This newsletter was sent by:
Microsoft Corporation
1 Microsoft Way
Redmond, Washington, USA
98052

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 10.2.0 (Build 1950)
Charset: utf-8
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=S9WV
-----END PGP SIGNATURE-----


Current thread: