Proactive IT Security
 

Five critical updates for Microsoft systems in April 2009

2009-04-15 [Software advisories]

15 April 2009

In its security bulletin summary for April 2009 Microsoft has published five updates for critical vulnerabilities in its operating systems / applications, as well as two important and one moderate.

Critical is Microsoft’s highest vulnerability rating.

A summary describing briefly the vulnerabilities is available from Microsoft’s Security Bulletin Summary for April 2009.
From this page you will also find links to more detailed information in Microsoft's Security Bulletins MS09-009 - MS09-015.

The critical update addresses the following issues:

  • Two publicly disclosed and two privately reported vulnerabilities in Microsoft WordPad and Microsoft Office text converters. 
  • One publicly disclosed and two privately reported vulnerabilities in Microsoft HTTP services.
  • One privately reported vulnerability in Microsoft DirectX.
  • Two publicly disclosed and four privately reported vulnerabilities in Internet Explorer.
  • One publicly disclosed and one privately reported vulnerabilities in Microsoft Excel.

Updates that fixes the vulnerabilities are available from Windows automatic update mechanism for systems that support this. Alternatively, one may download updates from http://windowsupdate.microsoft.com.  

Norman advices all affected users to download the security updates as soon as possible, to be protected from potential exploits.