Proactive IT Security
 

Five critical updates for Microsoft systems in April 2010

2010-04-14 [Software advisories]

In its security bulletin summary for April 2010 Microsoft has published five updates for critical vulnerabilities in its operating systems / applications, as well as five important and one moderate updates.

Critical is Microsoft's highest vulnerability rating.

A summary describing briefly the vulnerabilities is available from Microsoft's Security Bulletin Summary for April 2010.
From this page you will also find links to more detailed information in Microsoft's Security Bulletins MS10-019 - MS10-029.

The critical update addresses the following issues:

  • Two privately reported vulnerabilities in Windows Authenticode Verification
  • One publicly disclosed and several privately reported vulnerabilities in SMB Client
  • One privately reported vulnerability in Windows Media Services
  • One privately reported vulnerability in Microsoft MPEG Layer-3 audio codecs
  • One privately reported vulnerability in Windows Media Player.

Updates that fixes the vulnerabilities are available from Windows automatic update mechanism for systems that support this. Alternatively, one may download updates from http://windowsupdate.microsoft.com.

Norman advices all affected users to download the relevant security updates as soon as possible, to be protected from potential exploits.