Le rendez-vous MS du mois.
Bon, je vous fais pas un dessin... ;-)
Je vous mets en rouge ceux qui concernent XP SP2 et en orange les XP SP1. Les autres ne concernent pas XP (version 32 bits : normale).
Bulletins "critiques" :
MS04-032 - Security Update for Microsoft Windows (840987)
http://www.microsoft.com/technet/security/Bulletin/ms04-032.mspx
(correctif cumulatif qui reprends MS02-071, MS03-007, MS03-013, MS03-045)
MS04-033 - Vulnerability in Microsoft Excel Could Allow Code Execution (886836)
http://www.microsoft.com/technet/security/Bulletin/ms04-033.mspx
(concerne Excel XP-2003)
MS04-034 - Vulnerability in Compressed (zipped) Folders Could Allow Code Execution (873376)
http://www.microsoft.com/technet/security/Bulletin/ms04-034.mspx
MS04-035 - Vulnerability in SMTP Could Allow Remote Code Execution (885881)
http://www.microsoft.com/technet/security/Bulletin/ms04-035.mspx
(concerne W2K3 et XP 64bits)
MS04-036 - Vulnerability in NNTP Could Allow Code Execution (883935)
http://www.microsoft.com/technet/security/Bulletin/ms04-036.mspx
(concerne NT, W2K, W2K3)
MS04-037 - Vulnerability in Windows Shell Could Allow Remote Code Execution (841356)
http://www.microsoft.com/technet/security/Bulletin/ms04-037.mspx
MS04-038 - Cumulative Security Update for Internet Explorer (834707)
http://www.microsoft.com/technet/security/Bulletin/ms04-038.mspx
(il corrige, entre autres, la vulnérabilité "drag and drop" : à passer d'urgence !)
Bulletins Important :
MS04-029 - Vulnerability in RPC Runtime Library Could Allow Information Disclosure and Denial of Service (873350)
http://www.microsoft.com/technet/security/Bulletin/ms04-029.mspx
(concerne NT)
MS04-030 - Bulletin Title Vulnerability in WebDAV XML Message Handler Could Lead to a Denial of Service (824151)
http://www.microsoft.com/technet/security/Bulletin/ms04-030.mspx
(concerne XP SP1 et IIS)
MS04-031 - Vulnerability in NetDDE Could Allow Remote Code Execution (841533)
http://www.microsoft.com/technet/security/Bulletin/ms04-031.mspx
Bulletins ré-édités:
MS04-028 - Buffer Overrun in JPEG Processing (GDI+) Could Allow Code Execution (833987)
http://www.microsoft.com/technet/security/Bulletin/ms04-028.mspx
(concerne aussi divers logiciels : voir la page MS. ré-édité ? : voir fin de la page MS)