<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>US-CERT Cyber Security Alerts</title>
  <id>http://www.us-cert.gov/</id>
  <author>
<name>US-CERT</name>
<email>info@us-cert.gov</email>
<uri>http://www.us-cert.gov</uri>
</author>
  <rights>Produced 2010 by US-CERT, a government organization.</rights>
  <subtitle>
    US-CERT Cyber Security Alerts provide timely information
    about current security issues, vulnerabilities, and exploits.  Cyber
    Security Alerts are released in conjunction with Technical Cyber
    Security Alerts when there is an issue that affects the general
    public.  Cyber Security Alerts outline the steps and actions that
    non-technical home and corporate computer users can take to protect
    themselves from attack.
  </subtitle>
  <updated>2010-03-09T21:48:36Z</updated>
  <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/" hreflang="en"/>
  <link type="application/atom+xml" rel="self" href="http://www.us-cert.gov/channels/alerts.atom" hreflang="en"/>
  <entry>
    <title>SA10-068A: Microsoft Updates for Multiple Vulnerabilities</title>
    <id>http://www.us-cert.gov/cas/alerts/SA10-068A.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: March 09, 2010<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Microsoft Windows</li><li>Microsoft Office</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Microsoft has released updates to address vulnerabilities in Microsoft
Windows and Microsoft Office.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<h4>Install updates</h4> <p>The updates to address the Windows font
vulnerability are available on the <a href="https://update.microsoft.com/">Microsoft Update</a> site (requires
Internet Explorer). We recommend enabling <a href="http://www.microsoft.com/athome/security/update/msupdate_keep_current.mspx">Automatic
Updates</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Microsoft has released multiple security bulletins for important
vulnerabilities in Microsoft Windows and Microsoft Office. These bulletins are
described in the <a href="http://www.microsoft.com/technet/security/bulletin/MS10-mar.mspx">Microsoft
Security Bulletin Summary for March 2010</a>.</p><p>These vulnerabilities may
allow an attacker to gain control of your computer or cause it to crash.</p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>Microsoft Security Bulletin Summary for March 2010 - &lt;<a href="http://www.microsoft.com/technet/security/bulletin/MS10-mar.mspx">http://www.microsoft.com/technet/security/bulletin/MS10-mar.mspx</a>&gt;</li><li>Microsoft
Update - &lt;<a href="https://update.microsoft.com/">https://update.microsoft.com/</a>&gt;</li><li>Microsoft
Update overview - &lt;<a href="http://www.microsoft.com/security/updates/mu.aspx">http://www.microsoft.com/security/updates/mu.aspx</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA10-068A%20Feedback%20VU#586853">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2010 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small>March 09, 2010: Initial release<br/></small></p>                         
</div>
    </content>
    <updated>2010-03-09T21:48:36Z</updated>
    <published>2010-03-09T21:48:36Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA10-068A.html"/>
  </entry>
  <entry>
    <title>SA10-040A: Microsoft Updates for Multiple Vulnerabilities</title>
    <id>http://www.us-cert.gov/cas/alerts/SA10-040A.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: February 09, 2010<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Microsoft Windows</li><li>Microsoft Internet Explorer</li><li>Microsoft
Office</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Microsoft has released updates to address vulnerabilities in Microsoft
Windows, Internet Explorer, and Microsoft Office.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<h4>Install updates</h4> <p>The updates to address the Windows font
vulnerability are available on the <a href="https://update.microsoft.com/">Microsoft Update</a> site (requires
Internet Explorer). We recommend enabling <a href="http://www.microsoft.com/athome/security/update/msupdate_keep_current.mspx">Automatic
Updates</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Microsoft has released multiple security bulletins for critical
vulnerabilities in Microsoft Windows, Windows Server, Internet Explorer, and
Microsoft Office. These bulletins are described in the <a href="http://www.microsoft.com/technet/security/bulletin/MS10-feb.mspx">Microsoft
Security Bulletin Summary for February 2010</a>.</p><p>These vulnerabilities may
allow an attacker to gain control of your computer or cause it to crash.</p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>Microsoft Security Bulletin Summary for February 2010 - &lt;<a href="http://www.microsoft.com/technet/security/bulletin/MS10-feb.mspx">http://www.microsoft.com/technet/security/bulletin/MS10-feb.mspx</a>&gt;</li><li>Microsoft
Update - &lt;<a href="https://update.microsoft.com/">https://update.microsoft.com/</a>&gt;</li><li>Microsoft
Update overview - &lt;<a href="http://www.microsoft.com/security/updates/mu.aspx">http://www.microsoft.com/security/updates/mu.aspx</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA10-040A%20Feedback%20VU#799780">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2010 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small>February 09, 2010: Initial release<br/></small></p>                         
</div>
    </content>
    <updated>2010-02-09T20:53:39Z</updated>
    <published>2010-02-09T20:53:39Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA10-040A.html"/>
  </entry>
  <entry>
    <title>SA10-021A: Microsoft Internet Explorer Vulnerabilities</title>
    <id>http://www.us-cert.gov/cas/alerts/SA10-021A.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: January 21, 2010<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Microsoft Internet Explorer</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Vulnerabilities in Internet Explorer could allow an attacker to take control
of your computer.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<p><strong>Apply updates</strong></p> <p>Microsoft has released updates to
address these vulnerabilities. Please see Microsoft Security Bulletin <a href="http://www.microsoft.com/technet/security/bulletin/ms10-002.mspx">MS10-002</a>
for more information.</p><p><strong>Apply workarounds</strong></p><p>Microsoft
has provided workarounds for some of the vulnerabilities in <a href="http://www.microsoft.com/technet/security/bulletin/ms10-002.mspx">MS10-002</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Microsoft has released updates for multiple vulnerabilities in Internet
Explorer, including the vulnerability detailed in Microsoft Security Advisory <a href="http://www.microsoft.com/technet/security/advisory/979352.mspx">979352</a>
and US-CERT Vulnerability Note <a href="http://www.kb.cert.org/vuls/id/492515">VU#49251</a>.</p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>Microsoft Security Bulletin MS10-002 - &lt;<a href="http://www.microsoft.com/technet/security/bulletin/ms10-002.mspx">http://www.microsoft.com/technet/security/bulletin/ms10-002.mspx</a>&gt;</li><li>Microsoft
Security Advisory 979352 - &lt;<a href="http://www.microsoft.com/technet/security/advisory/979352.mspx">http://www.microsoft.com/technet/security/advisory/979352.mspx</a>&gt;</li><li>US-CERT
Vulnerability Note VU#49251 - &lt;<a href="http://www.kb.cert.org/vuls/id/492515">http://www.kb.cert.org/vuls/id/492515</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA10-021A%20Feedback%20VU#49251">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2010 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small>January 21, 2010: Initial release<br/></small></p>                         
</div>
    </content>
    <updated>2010-01-21T20:57:47Z</updated>
    <published>2010-01-21T20:57:47Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA10-021A.html"/>
  </entry>
  <entry>
    <title>SA10-013A: Adobe Reader and Acrobat Vulnerabilities</title>
    <id>http://www.us-cert.gov/cas/alerts/SA10-013A.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: January 13, 2010<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Adobe Reader and Acrobat 9.2 and earlier 9.x versions</li><li>Adobe
Reader and Acrobat 8.1.7 and earlier 8.x versions</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Adobe has released Security bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb10-02.html">APSB10-02</a>,
which describes multiple vulnerabilities affecting Adobe Reader and Acrobat.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<p><strong>Update</strong></p><p>Adobe has released updates to address this
issue. You are encouraged to read Adobe Security Bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb10-02.html">APSB10-02</a>
and update vulnerable versions of Adobe Reader and Acrobat.</p><p><b>Disable
JavaScript in Adobe Reader and Acrobat</b> <br/> <br/> Disabling JavaScript
may prevent some exploits. Acrobat JavaScript can be disabled using the
Preferences menu (<tt>Edit</tt> -&gt; <tt>Preferences</tt> -&gt;
<tt>JavaScript;</tt> un-check <tt>Enable Acrobat JavaScript</tt>).<br/> <br/>
<b>Prevent Internet Explorer from automatically opening PDF documents</b><br/>
<br/> The installer for Adobe Reader and Acrobat configures Internet Explorer
to automatically open PDF files without your interaction. However, you can set
up a safer option that prompts you by importing the following as a .REG
file:</p><p style="margin-left: 40px;"><tt>Windows Registry Editor Version
5.00<br/> <br/>[HKEY_CLASSES_ROOT\AcroExch.Document.7]<br/>"EditFlags"=hex:00,00,00,00</tt></p><p><b>Disable the display of PDF
documents in your web browser</b><br/> <br/> Preventing PDF documents from
opening inside your web browser will partially mitigate this vulnerability. By
applying this workaround, you may also lessen the possibility of future
vulnerabilities.<br/> <br/> To prevent PDF documents from automatically being
opened in a web browser, do the following:<br/> <br/> 1. Open Adobe Acrobat
Reader.<br/> 2. Open the <tt>Edit</tt> menu.<br/> 3. Choose the
<tt>preferences</tt> option.<br/> 4. Choose the <tt>Internet</tt> section.<br/> 5. Un-check the "<tt>Display PDF in browser</tt>" check box.<br/>
<br/> <b>Do not access PDF documents from untrusted sources<br/> <br/> </b>Do
not open unfamiliar or unexpected PDF documents, particularly those hosted on
websites or delivered as email attachments. Please see Cyber Security Tip <a href="http://www.us-cert.gov/cas/tips/ST04-010.html">ST04-010</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Adobe Security Advisory <a href="http://www.adobe.com/support/security/bulletins/apsb10-02.html">APSB10-02</a>
describes a number of vulnerabilities affecting Adobe Reader and Acrobat. An
attacker could exploit these vulnerabilities by convincing a user to open a
specially crafted PDF file.</p><p>These vulnerabilities could allow a remote
attacker to take control of your computer or cause it to crash.</p><p> </p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>Adobe Security Bulletin APSB10-02 - &lt;<a href="http://www.adobe.com/support/security/bulletins/apsb10-02.html">http://www.adobe.com/support/security/bulletins/apsb10-02.html</a>&gt;</li><li>Vulnerability
Note VU#508357 - &lt;<a href="https://www.kb.cert.org/vuls/id/508357">https://www.kb.cert.org/vuls/id/508357</a>&gt;</li><li>Vulnerability
Note VU#773545 - &lt;<a href="https://www.kb.cert.org/vuls/id/773545">https://www.kb.cert.org/vuls/id/773545</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA10-013A%20Feedback%20VU#508357">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2010 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small>January 13, 2010: Initial release<br/></small></p>                         
</div>
    </content>
    <updated>2010-01-13T21:13:00Z</updated>
    <published>2010-01-13T21:13:00Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA10-013A.html"/>
  </entry>
  <entry>
    <title>SA10-012B: Microsoft Windows and Adobe Flash Player 6 Vulnerabilities</title>
    <id>http://www.us-cert.gov/cas/alerts/SA10-012B.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: January 12, 2010<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Microsoft Windows and Internet Explorer</li><li>Adobe (Macromedia) Flash
Player 6</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Microsoft has released updates to address a vulnerability in Microsoft
Windows. Microsoft has also published an Advisory about multiple vulnerabilities
in Adobe Flash Player 6 that is included with Windows XP.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<h4>Install updates</h4> <p>The updates to address the Windows font
vulnerability are available on the <a href="https://update.microsoft.com/">Microsoft Update</a> site (requires
Internet Explorer). We recommend enabling <a href="http://www.microsoft.com/athome/security/update/msupdate_keep_current.mspx">Automatic
Updates</a>.</p><p><strong>Upgrade or Remove Adobe Flash Player
6</strong></p><p>To address the Flash Player 6 vulnerabilitites, <a href="http://get.adobe.com/flashplayer/">upgrade</a> to a current version or
remove Flash Player using the <a href="http://kb2.adobe.com/cps/141/tn_14157.html">uninstaller</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Microsoft Security Bulletin <a href="http://www.microsoft.com/technet/security/bulletin/ms10-001.mspx">MS10-001</a>
describes a vulnerability in the Embedded Open Type (EOT) font engine in
Windows. Microsoft Security Advisory (<a href="http://www.microsoft.com/technet/security/advisory/979267.mspx">979267</a>)
notes multiple vulnerabilities in Adobe Flash Player 6 (formerly Macromedia
Flash Player) that is included with Windows XP. The Advisory recommends that
Windows XP users upgrade or remove Flash Player</p><p>These vulnerabilities may
allow an attacker to gain control of your computer or cause it to crash.</p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>Microsoft Security Bulletin Summary for January 2010 - &lt;<a href="http://www.microsoft.com/technet/security/bulletin/ms10-jan.mspx">http://www.microsoft.com/technet/security/bulletin/ms10-jan.mspx</a>&gt;</li><li>CVE-2010-0018
- &lt;<a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0018">http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0018</a>&gt;</li><li>Vulnerabilities
in Adobe Flash Player 6 Provided in Windows XP Could Allow Remote Code Execution
- &lt;<a href="http://www.microsoft.com/technet/security/advisory/979267.mspx">http://www.microsoft.com/technet/security/advisory/979267.mspx</a>&gt;</li><li>Vulnerability
Note VU#204889 - &lt;<a href="http://www.kb.cert.org/vuls/id/204889">http://www.kb.cert.org/vuls/id/204889</a>&gt;</li><li>Adobe
Flash Player - &lt;<a href="http://get.adobe.com/flashplayer/">http://get.adobe.com/flashplayer/</a>&gt;</li><li>How
to uninstall the Adobe Flash Player plug-in and ActiveX control - &lt;<a href="http://kb2.adobe.com/cps/141/tn_14157.html">http://kb2.adobe.com/cps/141/tn_14157.html</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA10-012B%20Feedback%20VU#552113">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2010 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small>January 12, 2010: Initial release<br/></small></p>                         
</div>
    </content>
    <updated>2010-01-12T22:49:18Z</updated>
    <published>2010-01-12T22:49:18Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA10-012B.html"/>
  </entry>
  <entry>
    <title>SA09-343A: Adobe Flash Vulnerabilities Affect Flash Player and Adobe AIR</title>
    <id>http://www.us-cert.gov/cas/alerts/SA09-343A.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: December 09, 2009<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Adobe Flash Player 10.0.32.18 and earlier versions</li><li>Adobe AIR
1.5.2 and earlier versions</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Adobe has released Security bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb09-19.html">APSB09-19</a>,
which describes vulnerabilities affecting Adobe Flash Player and Adobe AIR.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<p>Users are encouraged to update Flash Player 10.0.32.18 and earlier versions
as well as Adobe AIR 1.5.2 and earlier versions to the latest
version.</p><p>These vulnerabilities can be mitigated by disabling the Flash
plugin or by using the <a href="https://addons.mozilla.org/addon/722">NoScript</a> extension for Mozilla
Firefox or SeaMonkey to specify which websites can access the Flash plugin. For
more information about securely configuring web browsers, please see the <a href="http://www.us-cert.gov/reading_room/securing_browser/">Securing Your Web
Browser</a> document.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Adobe Security Bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb09-19.html">APSB09-19</a>
describes vulnerabilities affecting Adobe Flash Player and Adobe AIR. Flash
Player version 10.0.32.18 and earlier versions as well as Adobe AIR versions
1.5.2 and earlier are affected.</p> <p>An attacker could exploit this
vulnerability by convincing a user to visit a website that hosts a specially
crafted SWF file. The Adobe Flash browser plugin is available for multiple web
browsers and operating systems, any of which could be affected.</p>
</blockquote>


                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA09-343A%20Feedback%20VU#392637">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2009 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small>December 09, 2009: Initial release<br/></small></p>                         
</div>
    </content>
    <updated>2009-12-09T18:59:55Z</updated>
    <published>2009-12-09T18:59:55Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA09-343A.html"/>
  </entry>
  <entry>
    <title>SA09-342A: Microsoft Updates for Multiple Vulnerabilities</title>
    <id>http://www.us-cert.gov/cas/alerts/SA09-342A.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: December 08, 2009<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Microsoft Windows</li><li>Microsoft Internet Explorer</li><li>Microsoft
Office Word, Works, and Project</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Microsoft has released updates to address vulnerabilities in Microsoft
Windows, Internet Explorer, and Microsoft Office.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<h4>Install updates</h4> <p>The updates to address these vulnerabilities are
available on the <a href="https://update.microsoft.com/">Microsoft Update</a>
site (requires Internet Explorer). We recommend enabling <a href="http://www.microsoft.com/security/updates/mu.aspx">Automatic
Updates</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Microsoft has released multiple security bulletins for critical
vulnerabilities in Windows and Office. These bulletins are described in the <a href="http://www.microsoft.com/technet/security/bulletin/MS09-dec.mspx">Microsoft
Security Bulletin Summary for December 2009</a>. These vulnerabilities may allow
an attacker to gain control of your computer or cause it to crash.</p>
<p> </p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>Microsoft Security Bulletin Summary for December 2009 - &lt;<a href="http://www.microsoft.com/technet/security/bulletin/MS09-dec.mspx">http://www.microsoft.com/technet/security/bulletin/MS09-dec.mspx</a>&gt;</li><li>Microsoft
Update - &lt;<a href="http://update.microsoft.com/">http://update.microsoft.com/</a>&gt;</li><li>Microsoft
Update Overview - &lt;<a href="http://www.microsoft.com/security/updates/mu.aspx">http://www.microsoft.com/security/updates/mu.aspx</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA09-342A%20Feedback%20VU#115525">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2009 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small>December 08, 2009: Initial release<br/></small></p>                         
</div>
    </content>
    <updated>2009-12-08T21:37:42Z</updated>
    <published>2009-12-08T21:37:42Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA09-342A.html"/>
  </entry>
  <entry>
    <title>SA09-314A: Microsoft Updates for Multiple Vulnerabilities</title>
    <id>http://www.us-cert.gov/cas/alerts/SA09-314A.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: November 10, 2009<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Microsoft Windows</li><li>Microsoft Office Word and Excel</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Microsoft has released updates to address vulnerabilities in Microsoft
Windows and Office Word and Excel.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<h4>Install updates</h4> <p>The updates to address these vulnerabilities are
available on the <a href="https://update.microsoft.com/">Microsoft Update</a>
site (requires Internet Explorer). We recommend enabling <a href="http://www.microsoft.com/athome/security/update/msupdate_keep_current.mspx">Automatic
Updates</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Microsoft has released multiple security bulletins for critical
vulnerabilities in Windows and Office Word and Excel. These bulletins are
described in the <a href="http://www.microsoft.com/technet/security/bulletin/ms09-nov.mspx">Microsoft
Security Bulletin Summary for November 2009</a>. These vulnerabilities may allow
an attacker to gain control of your computer or cause it to crash.</p>
<p> </p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>Microsoft Security Bulletin Summary for November 2009 - &lt;<a href="http://www.microsoft.com/technet/security/bulletin/ms09-nov.mspx">http://www.microsoft.com/technet/security/bulletin/ms09-nov.mspx</a>&gt;</li><li>Microsoft
Update Services - &lt;<a href="https://update.microsoft.com/">https://update.microsoft.com/</a>&gt;</li><li>Microsoft
Update overview - &lt;<a href="http://www.microsoft.com/security/updates/mu.aspx">http://www.microsoft.com/security/updates/mu.aspx</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA09-314A%20Feedback%20VU#825685">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2009 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small>November 10, 2009: Initial release<br/></small></p>                         
</div>
    </content>
    <updated>2009-11-10T22:51:03Z</updated>
    <published>2009-11-10T22:51:03Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA09-314A.html"/>
  </entry>
  <entry>
    <title>SA09-286B: Multiple Vulnerabilities Affect Adobe Reader and Acrobat</title>
    <id>http://www.us-cert.gov/cas/alerts/SA09-286B.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: October 13, 2009<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Adobe Reader and Acrobat 9.1.3 and earlier 9.x versions</li><li>Adobe
Reader and Acrobat 8.1.6 and earlier 8.x versions</li><li>Adobe Reader and
Acrobat 7.1.3 and earlier 7.x versions</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Adobe has released Security bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb09-15.html">APSB09-15</a>,
which describes multiple vulnerabilities affecting Adobe Reader and Acrobat.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<p><strong>Update</strong></p><p>Adobe has released updates to address this
issue. Users are encouraged to read Adobe Security Bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb09-15.html">APSB09-15</a>
and update vulnerable versions of Adobe Reader and Acrobat.</p><p><strong>Enable
Data Execution Prevention (DEP) in Microsoft Windows<br/></strong></p><p>Consider enabling Data Execution Prevention (DEP) in supported
versions of Windows. Though it doesn't completely resolve the problem, DEP can
hinder the execution of attacks in some cases.</p><p>Microsoft has published
detailed technical information about DEP in Security Research &amp; Defense blog
posts "Understanding DEP as a mitigation technology" <a href="http://blogs.technet.com/srd/archive/2009/06/05/understanding-dep-as-a-mitigation-technology-part-1.aspx">part
1</a> and <a href="http://blogs.technet.com/srd/archive/2009/06/12/understanding-dep-as-a-mitigation-technology-part-2.aspx">part
2</a>. You should consider using DEP along with the patches and other
mitigations described in this document.</p><p><b>Disable JavaScript in Adobe
Reader and Acrobat</b> <br/> <br/> Disabling JavaScript may prevent some
exploits. Acrobat JavaScript can be disabled using the Preferences menu
(<tt>Edit</tt> -&gt; <tt>Preferences</tt> -&gt; <tt>JavaScript;</tt> un-check
<tt>Enable Acrobat JavaScript</tt>).<br/> <br/> <b>Prevent Internet Explorer
from automatically opening PDF documents</b><br/> <br/> The installer for
Adobe Reader and Acrobat configures Internet Explorer to automatically open PDF
files without your interaction. However, you can set up a safer option that
prompts the you by importing the following as a .REG file:</p><p style="margin-left: 40px;"><tt>Windows Registry Editor Version 5.00<br/> <br/>[HKEY_CLASSES_ROOT\AcroExch.Document.7]<br/>"EditFlags"=hex:00,00,00,00</tt></p><p><b>Disable the display of PDF
documents in your Web browser</b><br/> <br/> Preventing PDF documents from
opening inside your Web browser will partially mitigate this vulnerability. By
applying this workaround, you may also lessen the possibility of future
vulnerabilities.<br/> <br/> To prevent PDF documents from automatically being
opened in a Web browser, do the following:<br/> <br/> 1. Open Adobe Acrobat
Reader.<br/> 2. Open the <tt>Edit</tt> menu.<br/> 3. Choose the
<tt>preferences</tt> option.<br/> 4. Choose the <tt>Internet</tt> section.<br/> 5. Un-check the "<tt>Display PDF in browser</tt>" check box.<br/>
<br/> <b>Do not access PDF documents from untrusted sources<br/> <br/> </b>Do
not open unfamiliar or unexpected PDF documents, particularly those hosted on
Web sites or delivered as email attachments. Please see Cyber Security Tip <a href="http://www.us-cert.gov/cas/tips/ST04-010.html">ST04-010</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Adobe Security Advisory <a href="http://www.adobe.com/support/security/bulletins/apsb09-15.html">APSB09-15</a>
describes a number of vulnerabilities affecting Adobe Reader and Acrobat. An
attacker could exploit these vulnerabilities by convincing a user to open a
specially crafted PDF file.</p><p>These vulnerabilities could  allow a
remote attacker to take control of your computer or cause it to
crash.</p><p> </p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>APSB09-15 Security Advisory for Adobe Reader and Acrobat - &lt;<a href="http://www.adobe.com/support/security/bulletins/apsb09-15.html">http://www.adobe.com/support/security/bulletins/apsb09-15.html</a>&gt;</li><li>Understanding
DEP as a mitigation technology part 1 - &lt;<a href="http://blogs.technet.com/srd/archive/2009/06/05/understanding-dep-as-a-mitigation-technology-part-1.aspx">http://blogs.technet.com/srd/archive/2009/06/05/understanding-dep-as-a-mitigation-technology-part-1.aspx</a>&gt;</li><li>Understanding
DEP as a mitigation technology part 2 - &lt;<a href="http://blogs.technet.com/srd/archive/2009/06/12/understanding-dep-as-a-mitigation-technology-part-2.aspx">http://blogs.technet.com/srd/archive/2009/06/12/understanding-dep-as-a-mitigation-technology-part-2.aspx</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA09-286B%20Feedback%20VU#257117">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2009 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small/></p>                         
</div>
    </content>
    <updated>2009-10-13T21:16:17Z</updated>
    <published>2009-10-13T21:16:17Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA09-286B.html"/>
  </entry>
  <entry>
    <title>SA09-286A: Microsoft Updates for Multiple Vulnerabilities</title>
    <id>http://www.us-cert.gov/cas/alerts/SA09-286A.html</id>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">Original release date: October 13, 2009<br/>
Last <a href="#revisions">revised</a>: --<br/>
Source: US-CERT<br/>
<br/>
<a name="affected"/>
<h3>Systems Affected</h3>
<ul><li>Microsoft Windows</li><li>Microsoft Internet Explorer</li><li>Microsoft
Office</li></ul>

<br/>
<a name="overview"/>
<h2>Overview</h2>
<blockquote>
<p>Microsoft has released updates to address vulnerabilities in Microsoft
Windows, Internet Explorer, and Microsoft Office.</p>
</blockquote>

<br/>
<a name="solution"/>
<h2>Solution</h2>
<blockquote>
<h4>Install updates</h4> <p>The updates to address these vulnerabilities are
available on the <a href="https://update.microsoft.com/">Microsoft Update</a>
site (requires Internet Explorer). We recommend enabling <a href="http://www.microsoft.com/athome/security/update/msupdate_keep_current.mspx">Automatic
Updates</a>.</p>
</blockquote>

<br/>
<a name="description"/>
<h2>Description</h2>
<blockquote>
<p>Microsoft has released multiple security bulletins for critical
vulnerabilities in Windows. These bulletins are described in the <a href="http://www.microsoft.com/technet/security/bulletin/ms09-oct.mspx">Microsoft
Security Bulletin Summary for October 2009</a>. These vulnerabilities may allow
an attacker to gain control of your computer or cause it to crash.</p>
<p> </p>
</blockquote>

<br/>
<a name="references"/>
<h2>References</h2>
<blockquote>
<ul><li>Microsoft Security Bulletin Summary for October 2009 - &lt;<a href="http://www.microsoft.com/technet/security/bulletin/ms09-oct.mspx">http://www.microsoft.com/technet/security/bulletin/ms09-oct.mspx</a>&gt;</li><li>Microsoft
Windows Server Update Services - &lt;<a href="http://technet.microsoft.com/en-us/wsus/default.aspx">http://technet.microsoft.com/en-us/wsus/default.aspx</a>&gt;</li></ul>
</blockquote>

                                  

<br/>
<hr noshade="noshade"/>                               
<p><a href="mailto:cert@cert.org?subject=SA09-286A%20Feedback%20VU#788021">Feedback</a> can be directed to US-CERT.</p>
<hr noshade="noshade"/>

<p>Produced 2009 by US-CERT, a government organization. <a href="http://www.us-cert.gov/legal.html">Terms of use</a></p>
<a name="revisions"/>
<br/><b>Revision History</b>
<p><small/></p>                         
</div>
    </content>
    <updated>2009-10-13T18:53:37Z</updated>
    <published>2009-10-13T18:53:37Z</published>
    <link type="text/html" rel="alternate" href="http://www.us-cert.gov/cas/alerts/SA09-286A.html"/>
  </entry>
</feed>
