Microsoft Security Advisory Notification Issued: October 17, 2014

  • 18 October 2014
  • 4 replies
  • 1 view

Userlevel 7
Badge +56
********************************************************************
Title: Microsoft Security Advisory Notification
Issued: October 17, 2014
********************************************************************
 
Security Advisories Updated or Released Today ==============================================
* Microsoft Security Advisory (2949927)
- Title: Vulnerability in SSL 3.0 Could Allow Information
Disclosure
- https://technet.microsoft.com/library/security/2949927
- Revision Note: V2.0 (October 17, 2014): Removed Download Center
links for Microsoft security update 2949927. Microsoft recommends
that customers experiencing issues uninstall this update.
Microsoft is investigating behavior associated with this update,
and will update the advisory when more information becomes
available.

Other Information
=================
Recognize and avoid fraudulent email to Microsoft customers:
=============================================================
If you receive an email message that claims to be distributing a Microsoft security update, it is a hoax that may contain malware or pointers to malicious websites. Microsoft does not distribute security updates via email.

4 replies

Userlevel 7
As always, thank you Mr. Microsoft 🙂
Userlevel 7
Badge +52

Microsoft at it again; withdraws yet another buggy update KB 2949927

On Friday, October 17 Microsoft revised the 2949927 advisory with the following statement:

Removed Download Center links for Microsoft security update 2949927. Microsoft recommends that customers experiencing issues uninstall this update. Microsoft is investigating behavior associated with this update, and will update the advisory when more information becomes available.

Let’s start with the less upsetting patch, KB 2952664. It was released to the Automatic Update chute on Oct. 14, this month’s Black Tuesday. The ensuing uproar and the backlash on the tech forums was so bad as the patch failed to install on many Windows 7 machines and was giving error 80242016.

The more disconcerting patch, KB 2949927 mentioned above was one of the four botched patches.It is supposed to add SHA-2 hash signing and verification capability to Windows 7. But if a user tries installing, some machines reported to lead to multiple reboots failing with error 80004005
Full Article
 
Userlevel 7
Actually, David, I think that TH is an aka for a Mr W. Gates, of Seattle...;)
 
Cheers, Daniel...on the ball as ever...what it is to have the insider track from our very own MVP.
Userlevel 7
Badge +3
 
 "It's been a rough few months for Microsoft's update quality control. September updates for Lync and OneDrive for Business were withdrawn because of bugs in the updates. The August patches were an even bigger mess with four updates withdrawn."
 
      Microsoft withdraws another buggy update | ZDNet

Reply