Skip Navigation

  • Home
  • Contact us
  • FAQ
  • Glossary
  • Public key
  • Sitemap
  • Cymraeg
  • What's new
CPNI - Centre for the Protection of National Infastructure

Advanced search

  • About CPNI
  • The threats
  • Security planning
  • Methods of attack
  • Protecting your assets
  • Products and services
    • CSIRTUK advisories
      • Advisories archive
    • General protective security publications
    • InfoSec briefings
    • InfoSec technical notes
    • InfoSec vulnerability disclosures
    • Good practice guidelines
    • Viewpoints
    • Information exchanges
  • Research
Home > Products and services > CSIRTUK advisories > Advisories archive > September 2006 > Microsoft Security Bulletin Re-Releases

September 2006

Microsoft Security Bulletin Re-Releases

ID: 00612
Ref: 587/2006
Date: 13 September 2006:14:10:04
Version: 1

Title: Microsoft Security Bulletin Re-Releases
Abstract: The following bulletins have undergone a major revision increment. Please see the appropriate bulletin for more details. * MS06-042 * MS06-040
Vendors affected: Microsoft
Operating systems affected: Microsoft
Applications affected: Microsoft

Title
=====

Microsoft Security Bulletin Re-Releases

Detail
======

The following bulletins have undergone a major revision increment.
Please see the appropriate bulletin for more details.

* MS06-042
* MS06-040

- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

********************************************************************
Title: Microsoft Security Bulletin Re-Releases
Issued: September 12, 2006
********************************************************************

Summary
=======
The following bulletins have undergone a major revision increment.
Please see the appropriate bulletin for more details.

* MS06-042
* MS06-040

Bulletin Information:
=====================

* MS06-042

- http://www.microsoft.com/technet/security/bulletin/ms06-042.mspx
- Reason for Revision: This Security Bulletin and Internet Explorer
6 Service Pack 1, Internet Explorer 5.01 Service Pack 4, and
Internet Explorer 6 for Microsoft Windows Server 2003
security updates have been re-released to address a
vulnerability documented in the Vulnerability Details section
as Long URL Buffer Overflow - CVE-2006-3873. Customers using
these versions of Internet Explorer should apply the new
update immediately.
- Originally posted: August 8, 2006
- Updated: September 12, 2006
- Bulletin Severity Rating: Critical
- Version: 3.0

* MS06-040

- http://www.microsoft.com/technet/security/bulletin/ms06-040.mspx
- Reason for Revision: The update has been revised and re-released
for Microsoft Windows 2003 and Microsoft Windows XP
Professional x64 Edition to address the issues identified in
Microsoft Knowledge Base Article 921883.
- Originally posted: August 8, 2006
- Updated: September 12, 2006
- Bulletin Severity Rating: Critical
- Version: 2.0

********************************************************************

Support:
========
Technical support resources can be found at:
http://go.microsoft.com/fwlink/?LinkId=21131

International customers can get support from their local Microsoft
subsidiaries. Phone numbers for international support can be found
at: http://support.microsoft.com/common/international.aspx

Microsoft Support Lifecycle for Business and Developer Software
===============================================================
The Microsoft Support Lifecycle policy provides consistent and
predictable guidelines for product support availability at the
time that the product is released. Under this policy, Microsoft
will offer a minimum of ten years of support. This includes five
years of Mainstream Support and five years of Extended Support for
Business and Developer products. Microsoft will continue to provide
security update support, at a supported Service Pack level, for a
minimum of ten years through the Extended support phase. For more
information about the Microsoft Support Lifecycle, visit
http://support.microsoft.com/lifecycle/ or contact your Technical
Account Manager.


Additional Resources:
=====================
* Microsoft has created a free monthly e-mail newsletter containing
valuable information to help you protect your network. This
newsletter provides practical security tips, topical security
guidance, useful resources and links, pointers to helpful
community resources, and a forum for you to provide feedback
and ask security-related questions.
You can sign up for the newsletter at:

http://www.microsoft.com/technet/security/secnews/default.mspx

* Microsoft has created a free e-mail notification service that
serves as a supplement to the Security Notification Service
(this e-mail). The Microsoft Security Notification Service:
Comprehensive Version. It provides timely notification of any
minor changes or revisions to previously released Microsoft
Security Bulletins and Security Advisories. This new service
provides notifications that are written for IT professionals and
contain technical information about the revisions to security
bulletins. To register visit the following Web site:

http://www.microsoft.com/technet/security/bulletin/notify.mspx

* Protect your PC: Microsoft has provided information on how you
can help protect your PC at the following locations:

http://www.microsoft.com/security/protect/

If you receive an e-mail that claims to be distributing a
Microsoft security update, it is a hoax that may be distributing a
virus. Microsoft does not distribute security updates through
e-mail. You can learn more about Microsoft's software distribution
policies here:

http://www.microsoft.com/technet/security/topics/policy/swdist.mspx

********************************************************************
THE INFORMATION PROVIDED IN THE THIS EMAIL IS
PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND. MICROSOFT
DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR IMPLIED, INCLUDING
THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
PURPOSE.
IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE
LIABLE FOR ANY DAMAGES WHATSOEVER INCLUDING DIRECT, INDIRECT,
INCIDENTAL, CONSEQUENTIAL, LOSS OF BUSINESS PROFITS OR SPECIAL
DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE BEEN
ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY
FOR CONSEQUENTIAL OR INCIDENTAL DAMAGES SO THE FOREGOING
LIMITATION MAY NOT APPLY.
********************************************************************

- -----BEGIN PGP SIGNATURE-----
Version: PGP 8.1

iQIVAwUBRQcN0xCvwTv3q93mAQKftRAAq/lJeAUDvpyDsUlgBjx0dAF5MN2bPDGw
NJH6X2/ytBMJJEehy+p4IxV1h2Q25RQYeu07MyfLqOFDGxzihteB/JNgyfQFF9w2
Uxsme4gjBHeOVSS0FspEexsLT07QORHJ1MjQByWZGW6idSs43dnpJ99ONA+NveCW
CINqZaCChi1pIABsTWUgd2f11LHBfOg07+WTgoELM2BKlaEbtkj8O2WspO2ikmi0
S50VQhw2QHLgBCnyg4VFnZaJqYWOA3qIkwI8NC2ogzadeY1wca5DQdYoRX6TwVpC
TwmQQL2aym68uXvLxeqFeRIZ2ik4uFWDX3tIm4+HQPjiozX9D/58DZ4OvHfKtfPH
xZxhdX8xE1McvKaYHwjXfAw09apwUoG0SRuZ9UD3cPQWANg4atz1MGNpyI1Th/DE
3bTNGQk8P7EetLjx1jE3BO3nRuVdPS03CJEjI/HeYz/yIHhWss/PZBZFky1cJFwl
B14seYmUjq+JF30G58kGVcr5ms5Q9N3Wiyc9JMsDaUKlfbBhW72JsLWEKrn2KfbW
UUPJTacXRG+C8d45cYUd+03rJpsSIcc2aKyk7whnKw/lNI3gdy0uXo7pBaMaL/EK
2OQCBFvNAplM4hqCaPXqgjHHd3YpCIXjpvN1t3BPs4F2mrDlG6BkwVk3uBip+fLn
cJhSVG08t/I=
=bHPM
- -----END PGP SIGNATURE-----
  • Accessibility |
  • Terms and conditions |
  • Privacy statement |
  • Data protection act |
  • Freedom of information |