-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 National Cyber Alert System Technical Cyber Security Alert TA10-348A Microsoft Updates for Multiple Vulnerabilities Original release date: December 14, 2010 Last revised: -- Source: US-CERT Systems Affected * Microsoft Windows * Microsoft Internet Explorer * Microsoft Office * Microsoft Sharepoint * Microsoft Exchange Overview There are multiple vulnerabilities in Microsoft Windows, Internet Explorer, Office, Sharepoint, and Exchange. Microsoft has released updates to address these vulnerabilities. I. Description The Microsoft Security Bulletin Summary for December 2010 describes multiple vulnerabilities in Microsoft Windows, Internet Explorer, Office, Sharepoint, and Exchange. Microsoft has released updates to address the vulnerabilities. II. Impact A remote, unauthenticated attacker could execute arbitrary code, cause a denial of service, or gain unauthorized access to your files or system. III. Solution Apply updates Microsoft has provided updates for these vulnerabilities in the Microsoft Security Bulletin Summary for December 2010. That bulletin describes any known issues related to the updates. Administrators are encouraged to note these issues and test for any potentially adverse effects. In addition, administrators should consider using an automated update distribution system such as Windows Server Update Services (WSUS). IV. References * Microsoft Security Bulletin Summary for December 2010 - * Microsoft Windows Server Update Services - ____________________________________________________________________ The most recent version of this document can be found at: ____________________________________________________________________ Feedback can be directed to US-CERT Technical Staff. Please send email to with "TA10-348A Feedback VU#462388" in the subject. ____________________________________________________________________ For instructions on subscribing to or unsubscribing from this mailing list, visit . ____________________________________________________________________ Produced 2010 by US-CERT, a government organization. Terms of use: ____________________________________________________________________ Revision History December 14, 2010: Initial release -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.5 (GNU/Linux) iQEVAwUBTQfHLz6pPKYJORa3AQKscQf+PuoQMdOhFTA15BHwhfvSisQ6rtS4qN/S GZHTverwD+frfgbTpuwCwQIy0pr99Xg2Tgxh589AYrHoQMsCOmoOTn5J+36j5YFU 8eynvA4heEebmYGdygykItEoZNjtDVKqEIpWq3k71au4O0i1r+qqEx4dWCWNl0vo YbEiY9t5pXwWfZElvAGN6bOWdE1vMU3yVakXm4L8wadRd1DPTYYE76DecOkIeU+i wjRzxSa6+63OtUXp/WYrnuG17L3FPkNyHB3Hh537+NtcXvFqu4OIr3uWaZOi70AC 6JzFrz3yRSEUiOsJuIvFcNl+RQDFlo/so4XfqVAw/J8uZ7vspmLB7Q== =O1/Z -----END PGP SIGNATURE-----