Thu, Jun 5 2008 13:41 Don

MS Security Bulletin Advance Notification - Jun 5, 2008

Microsoft Security Bulletin Advance Notification for June 2008
Issued: June 5, 2008

This is an advance notification of security bulletins that
Microsoft is intending to release on June 10, 2008.

The full version of the Microsoft Security Bulletin Advance
Notification for June 2008 can be found at
http://www.microsoft.com/technet/security/bulletin/ms08-jun.mspx.

This bulletin advance notification will be replaced with the
June bulletin summary on June 10, 2008. For more information
about the bulletin advance notification service, see
http://www.microsoft.com/technet/security/Bulletin/advance.mspx.

Microsoft will host a webcast to address customer questions on
these bulletins on Wednesday, June 11, 2008,
at 11:00 AM Pacific Time (US & Canada). Register for the June
Security Bulletin Webcast at
http://www.microsoft.com/technet/security/bulletin/summary.mspx.

Microsoft also provides information to help customers prioritize
monthly security updates with any non-security, high-priority
updates that are being released on the same day as the monthly
security updates. Please see the section, Other Information.

This advance notification provides the software subject as the
bulletin identifier, because the official Microsoft Security
Bulletin numbers are not issued until release. The bulletin summary
that replaces this advance notification will have the proper
Microsoft Security Bulletin numbers (in the MSyy-xxx format) as the
bulletin identifier. The security bulletins for this month are as
follows, in order of severity:

Critical Security Bulletins

Bluetooth Bulletin

  - Affected Software:
    - Windows XP Service Pack 2 and Windows XP Service Pack 3
    - Windows XP Professional x64 Edition and Windows XP
      Professional x64 Edition Service Pack 2
    - Windows Vista and Windows Vista Service Pack 1
    - Windows Vista x64 Edition and Windows Vista x64 Edition
      Service Pack 1

    - Impact: Remote Code Execution
    - Version Number: 1.0

Internet Explorer Bulletin

  - Affected Software:
    - Internet Explorer 5.01 Service Pack 4 on Microsoft Windows
      2000 Service Pack 4
    - Internet Explorer 6 Service Pack 1 when installed on Microsoft
      Windows 2000 Service Pack 4
    - Internet Explorer 6 for Windows XP Service Pack 2 and Windows
      XP Service Pack 3
    - Internet Explorer 6 for Windows XP Professional x64 Edition
      and Windows XP Professional x64 Edition Service Pack 2
    - Internet Explorer 6 for Windows Server 2003 Service Pack 1 and
      Windows Server 2003 Service Pack 2
    - Internet Explorer 6 for Windows Server 2003 x64 Edition and
      Windows Server 2003 x64 Edition Service Pack 2
    - Internet Explorer 6 for Windows Server 2003 with SP1 for
      Itanium-based Systems and Windows Server 2003 with SP2 for
      Itanium-based Systems
    - Internet Explorer 7 for Windows XP Service Pack 2 and Windows
      XP Service Pack 3
    - Internet Explorer 7 for Windows XP Professional x64 Edition
      and Windows XP Professional x64 Edition Service Pack 2
    - Internet Explorer 7 for Windows Server 2003 Service Pack 1 and
       Windows Server 2003 Service Pack 2
    - Internet Explorer 7 for Windows Server 2003 x64 Edition and
      Windows Server 2003 x64 Edition Service Pack 2
    - Internet Explorer 7 for Windows Server 2003 with SP1 for
      Itanium-based Systems and Windows Server 2003 with SP2 for
      Itanium-based Systems
    - Internet Explorer 7 in Windows Vista and Windows Vista Service
      Pack 1
    - Internet Explorer 7 in Windows Vista x64 Edition and Windows
      Vista x64 Edition Service Pack 1
    - Internet Explorer 7 in Windows Server 2008 for 32-bit Systems
      (Windows Server 2008 Server Core installation affected)
    - Internet Explorer 7 in Windows Server 2008 for x64-based
      Systems (Windows Server 2008 Server Core installation affected)
    - Internet Explorer 7 in Windows Server 2008 for Itanium-based
      Systems

    - Impact: Remote Code Execution
    - Version Number: 1.0

DirectX Bulletin

  - Affected Software:
    - DirectX 7.0 on Microsoft Windows 2000 Service Pack 4
    - DirectX 8.1 on Microsoft Windows 2000 Service Pack 4
    - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Microsoft
      Windows 2000 Service Pack 4
    - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows XP
      Service Pack 2 and Windows XP Service Pack 3
    - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows XP
      Professional x64 Edition and Windows XP Professional x64
      Edition Service Pack 2
    - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows Server
      2003 Service Pack 1 and Windows Server 2003 Service Pack 2
    - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows Server
      2003 x64 Edition and Windows Server 2003 x64 Edition Service
      Pack 2
    - DirectX 9.0, DirectX 9.0b, and DirectX 9.0c on Windows Server
      2003 with SP1 for Itanium-based Systems and Windows Server
      2003 with SP2 for Itanium-based Systems
    - DirectX 10.0 on Windows Vista and Windows Vista Service Pack 1
    - DirectX 10.0 on Windows Vista x64 Edition and Windows Vista
      x64 Edition Service Pack 1
    - DirectX 10.0 on Windows Server 2008 for 32-bit Systems
      (Windows Server 2008 Server Core installation not affected)
    - DirectX 10.0 on Windows Server 2008 for x64-based Systems
      (Windows Server 2008 Server Core installation not affected)
    - DirectX 10.0 on Windows Server 2008 for Itanium-based Systems

    - Impact: Remote Code Execution
    - Version Number: 1.0


Important Security Bulletins

WINS Bulletin

  - Affected Software:
    - Microsoft Windows 2000 Server Service Pack 4
    - Windows Server 2003 Service Pack 1 and Windows Server 2003
      Service Pack 2
    - Windows Server 2003 x64 Edition and Windows Server 2003 x64
      Edition Service Pack 2
    - Windows Server 2003 with SP1 for Itanium-based Systems and
      Windows Server 2003 with SP2 for Itanium-based Systems

    - Impact: Elevation of Privilege
    - Version Number: 1.0

Active Directory Bulletin

  - Affected Software:
    - Active Directory on Microsoft Windows 2000 Server Service Pack
      4
    - ADAM when installed on Windows XP Service Pack 2 and Windows
      XP Service Pack 3
    - ADAM when installed on Windows XP Professional x64 Edition
      and Windows XP Professional x64 Edition Service Pack 2
    - Active Directory on Windows Server 2003 Service Pack 1 and
      Windows Server 2003 Service Pack 2
    - ADAM when installed on Windows Server 2003 Service Pack 1 and
      Windows Server 2003 Service Pack 2
    - Active Directory on Windows Server 2003 x64 Edition and
      Windows Server 2003 x64 Edition Service Pack 2
    - ADAM when installed on Windows Server 2003 x64 Edition and
      Windows Server 2003 x64 Edition Service Pack 2
    - Active Directory on Windows Server 2003 with SP1 for Itanium-
      based Systems and Windows Server 2003 with SP2 for Itanium-
      based Systems
    - Active Directory on Windows Server 2008 for 32-bit Systems
      (Windows Server 2008 Server Core installation affected)
    - AD LDS on Windows Server 2008 for 32-bit Systems
      (Windows Server 2008 Server Core installation affected)
    - Active Directory on Windows Server 2008 for x64-based Systems
      (Windows Server 2008 Server Core installation affected)
    - AD LDS on Windows Server 2008 for x64-based Systems
      (Windows Server 2008 Server Core installation affected)

    - Impact: Denial of Service
    - Version Number: 1.0

PGM Bulletin

  - Affected Software:
    - Windows XP Service Pack 2 and Windows XP Service Pack 3
    - Windows XP Professional x64 Edition and Windows XP
      Professional x64 Edition Service Pack 2
    - Windows Server 2003 Service Pack 1 and Windows Server 2003
      Service Pack 2
    - Windows Server 2003 x64 Edition and Windows Server 2003 x64
      Edition Service Pack 2
    - Windows Server 2003 with SP1 for Itanium-based Systems and
      Windows Server 2003 with SP2 for Itanium-based Systems
    - Windows Vista and Windows Vista Service Pack 1
    - Windows Vista x64 Edition and Windows Vista x64 Edition
      Service Pack 1
    - Windows Server 2008 for 32-bit Systems
      (Windows Server 2008 Server Core installation not affected)
    - Windows Server 2008 for x64-based Systems
      (Windows Server 2008 Server Core installation not affected)
    - Windows Server 2008 for Itanium-based Systems

    - Impact: Denial of Service
    - Version Number: 1.0


Moderate Security Bulletins

Kill Bit Bulletin

  - Affected Software:
    - Microsoft Windows 2000 Service Pack 4
    - Windows XP Service Pack 2 and Windows XP Service Pack 3
    - Windows XP Professional x64 Edition and Windows XP
      Professional x64 Edition Service Pack 2
    - Windows Server 2003 Service Pack 1 and Windows Server 2003
      Service Pack 2
    - Windows Server 2003 x64 Edition and Windows Server 2003 x64
      Edition Service Pack 2
    - Windows Server 2003 with SP1 for Itanium-based Systems and
      Windows Server 2003 with SP2 for Itanium-based Systems
    - Windows Vista and Windows Vista Service Pack 1
    - Windows Vista x64 Edition and Windows Vista x64 Edition
      Service Pack 1
    - Windows Server 2008 for 32-bit Systems
      (Windows Server 2008 Server Core installation affected)
    - Windows Server 2008 for x64-based Systems
      (Windows Server 2008 Server Core installation affected)
    - Windows Server 2008 for Itanium-based Systems

    - Impact: Remote Code Execution
    - Version Number: 1.0


Other Information

Microsoft Windows Malicious Software Removal Tool:

Microsoft will release an updated version of the Microsoft Windows
Malicious Software Removal Tool on Windows Update, Microsoft Update,
Windows Server Update Services, and the Download Center.

Non-Security, High-Priority Updates on MU, WU, and WSUS:

For information about non-security releases on Windows Update and
Microsoft
update, please see:
* http://support.microsoft.com/kb/894199: Microsoft Knowledge Base
  Article 894199, Description of Software Update Services and
  Windows Server Update Services changes in content for 2008.
  Includes all Windows content.
* http://technet.microsoft.com/en-us/wsus/bb466214.aspx: New,
  Revised, and Released Updates for Microsoft Products Other Than
  Microsoft Windows

Filed under: