Microsoft Security Bulletins January 10 2017

  • 10 January 2017
  • 9 replies
  • 2353 views

Userlevel 7
Badge +56
Very brief bulletins from now on: https://community.webroot.com/t5/Security-Industry-News/No-more-Microsoft-Security-Bulletins-after-January-2017/td-p/275259
 

Security Bulletins 2017

 
 
For bulletin summaries that list the security bulletins released for each month see Security Bulletin Summaries.
Date                          
Bulletin number
Title                            
Affected Software                     

January 2017

January 10, 2016
MS17-001
Security Update in Microsoft Exchange Server to Address Spoofing (3125573)
Microsoft Windows
Microsoft Edge

January 10, 2016
MS17-002
Security Update for Microsoft Office to Address Remote Code Execution (3214291)
Microsoft Windows
Microsoft Office

January 10, 2016
MS17-003
Security Update for Microsoft Windows to Address Remote Code Execution (3124901)
Microsoft Windows
Adobe

January 10, 2016
MS17-004
Security Update for Local Security Authority Subsystem Service (3124901)
Microsoft Windows

9 replies

Userlevel 7
Badge +62
As always much appreciated Daniel!:D
Userlevel 7
Badge +56

Microsoft Security Bulletin Summary for January 2017

 
https://technet.microsoft.com/library/security/ms17-jan
Userlevel 7
Badge +56
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
 
********************************************************************
Microsoft Security Bulletin Summary for January 2017
Issued: January 10, 2017
********************************************************************
 
This bulletin summary lists security bulletins released for January 2017.
 
The full version of the Microsoft Security Bulletin Summary for January 2017 can be found at <https://technet.microsoft.com/library/security/ms17-jan>.
 
Critical Security Bulletins
============================
 
MS17-002
 
  - Affected Software:
    - Microsoft Word 2016 (32-bit edition)
      - Microsoft Word 2016 (64-bit edition)
      - Microsoft SharePoint Enterprise Server 2016
  - Impact: Remote Code Execution
  - Version Number: 1.0
 
MS17-003
 
  - Affected Software:
    - Windows 8.1 for 32-bit Systems:
      - Windows 8.1 for x64-based Systems:
    - Windows Server 2012
      (Windows Server 2012 Server Core installation not affected)
      - Windows Server 2012 R2
      (Windows Server 2012 R2 Server Core installation not affected)
      - Windows RT 8.1:
    - Windows 10 for 32-bit Systems
    - Windows 10 for x64-based Systems
    - Windows 10 Version 1511 for 32-bit Systems
    - Windows 10 Version 1511 for x64-based Systems
    - Windows 10 Version 1607 for 32-bit Systems
    - Windows 10 Version 1607 for x64-based Systems
    - Windows Server 2016 for x64-based Systems
  - Impact: Remote Code Execution
  - Version Number: 1.0
 
Important Security Bulletins
============================
 
MS17-001
 
  - Affected Software:
    - Windows 10 for 32-bit Systems
      - Microsoft Edge
    - Windows 10 for x64-based Systems
      - Microsoft Edge
    - Windows 10 Version 1511 for 32-bit Systems
      - Microsoft Edge
    - Windows 10 Version 1511 for x64-based Systems
      - Microsoft Edge
    - Windows 10 Version 1607 for 32-bit Systems:
      - Microsoft Edge
    - Windows 10 Version 1607 for x64-based Systems:
      - Microsoft Edge
    - Windows Server 2016 for x64-based Systems:
      - Microsoft Edge
      (Windows Server 2016 Server Core installation affected)
  - Impact: Elevation of Privilege
  - Version Number: 1.0
 
MS17-004
 
  - Affected Software:
    - Windows Vista Service Pack 2
    - Windows Vista x64 Edition Service Pack 2
    - Windows Server 2008 for 32-bit Systems Service Pack 2
      (Windows Server 2008 Server Core installation affected)
    - Windows Server 2008 for x64-based Systems Service Pack 2
      (Windows Server 2008 Server Core installation affected)
    - Windows Server 2008 for Itanium-based Systems Service Pack 2
    - Windows 7 for 32-bit Systems Service Pack 1
    - Windows 7 for x64-based Systems Service Pack 1
    - Windows Server 2008 R2 for x64-based Systems Service Pack 1
      (Windows Server 2008 R2 Server Core installation affected)
    - Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
  - Impact: Denial of Service
  - Version Number: 1.0
 
 
 
Other Information
=================
 
Recognize and avoid fraudulent email to Microsoft customers:
=============================================================
If you receive an email message that claims to be distributing a Microsoft security update, it is a hoax that may contain malware or pointers to malicious websites. Microsoft does not distribute security updates via email.
 
The Microsoft Security Response Center (MSRC) uses PGP to digitally sign all security notifications. However, PGP is not required for reading security notifications, reading security bulletins, or installing security updates. You can obtain the MSRC public PGP key at <https://technet.microsoft.com/security/dn753714>.
Userlevel 7
Badge +52
Windows 7 SP1 and Windows Server 2008 R2 SP1
KB3212642 -- January, 2017 Security Only Quality Update
KB3212646 -- January, 2017 Security Monthly Quality Rollup
 
KB3212646 -- January 2017 Security Monthly Quality Rollup for Windows 7 SP1 and Windows Server 2008 R2 SP1
  • MS17-004 Security Update for Local Security Authority Subsystem Service (3216771)
KB3212642 -- January 2017 Security Only Quality Update for Windows 7 SP1 and Windows Server 2008 R2 SP1
  • MS17-004 Security Update for Local Security Authority Subsystem Service (3216771)
KB3210063 -- Update for Windows Server 2012 R2 -- "0x000000D1" Stop error with update rollups on Windows Server 2012 R2
KB3210083 -- Update for Windows 8.1 and Windows Server 2012 R2 -- iSCSI disks are lost on upgrade for StorSimple appliances after update 3172614 is installed on Windows Server 2012 R2
KB3210694 -- Update for Internet Explorer -- Internet browser page becomes blank after you install security updates 3185330 in Windows 7 SP1 or security update 3185331 in Windows 8.1
Userlevel 4
Badge +5
It seems from my home PC that Windows 8.1 64bit received only a Flash update in January.................no cumulative or single security updates.
 
Is it what you've seen too?
 
Thanks in advance
Userlevel 7
Badge +52
@ wrote:
It seems from my home PC that Windows 8.1 64bit received only a Flash update in January.................no cumulative or single security updates.
 
Is it what you've seen too?
 
Thanks in advance
Hello
Yes. Windows 8.1: 1 critical update
Userlevel 4
Badge +5
Thanks for the answer.
 
My systems searching for updates only find KB3214628 (which is Flash related) and KB890830 (which is malware removal).
 
Is there something else they don't find?
 
Thanks in advance
Userlevel 7
Badge +52
@ wrote:
Thanks for the answer.
 
Is there something else they don't find?
 
No
 
Userlevel 4
Badge +5
Thanks you very much.
 
Very strange update month for Win 8.1, LOL

Reply