Microsoft Patch Tuesday

With this June Microsoft Patch Tuesday Security Update, we see a larger number security updates with 10 updates to Windows XP and Windows 7 desktops including 3 updates rated as Critical, 6 rated as Important and one patch update that has a Microsoft rating of Tampering. Unfortunately, all patches released this month will most likely require a reboot of the target system MCTS Training.

The ChangeBase AOK Patch Impact team has updated the sample application database with more unique application packages. All of the applications in this large sample application portfolio are analysed for application level conflicts with Microsoft Security Updates and potential dependencies.

Based on the results of our AOK Application Compatibility Lab several of the June Patch Tuesday updates are likely to require extensive application level testing including;

* MS10-033 Vulnerabilities in Media Decompression Could Allow Remote Code
* MS10-035 Cumulative Security Update for Internet Explorer
* MS10-036 Vulnerability in COM Validation in Microsoft Office Could Allow Remote Code Execution
* MS10-041 Vulnerability in Microsoft .NET Framework Could Allow Tampering

We have included a brief snap-shot of some of the results from our AOK Software that demonstrates some of the potential impacts on the OSP application package with the following MCITP Training.

In addition, this high level summary, we have also included a small sample of one of the AOK Summary reports from a smaller sample database:
Microsoft Patch Tuesday Update Testing Summary
MS10-033 Vulnerabilities in Media Decompression Could Allow Remote Code Execution
MS10-034 Cumulative Security Update of ActiveX Kill Bits
MS10-035 Cumulative Security Update for Internet Explorer
MS10-032 Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege
MS10-036 Vulnerability in COM Validation in Microsoft Office Could Allow Remote Code Execution
MS10-037 Vulnerability in the OpenType Compact Font Format Driver Could Allow Privilege Elevation
MS10-038 Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution
MS10-039 Vulnerabilities in Microsoft SharePoint Could Allow Elevation of Privilege
MS10-040 Vulnerability in Internet Information Services Could Allow Remote Code Execution
MS10-041 Vulnerability in Microsoft .NET Framework Could Allow Tampering