No IE Fix In Massive Microsoft Security Update

Microsoft will have its biggest Patch Tuesday for some time next week, with plans to fix 26 vulnerabilities, but this week’s new Internet Explorer vulnerability is not one of them.

The updates will come in 13 security bulletins on 9 FEbruary, this month’s “Patch Tuesday“, as Microsoft’s regular cycle of updates is known. Five of the bulletins are rated critical, seven are rated important and one is rated moderate. All but two of the bulletins address security issues in Windows, with the other two dealing with issues in Microsoft Office.

All told, the updates address 26 vulnerabilities, though exact details for most of the bugs were not made public. Microsoft said it plans to patch an escalation-of-privilege issue in the Windows kernel that it warned users about in January.

Among the vulnerabilities not being addressed this month are an Internet Explorer bug the company issued an advisory about this week and a vulnerability in the SMB (Server Message Block) protocol Microsoft is still working to address.

Four of the bulletins were given the highest deployment priority rating of one.

“Thirteen bulletins make this the busiest February we’ve seen from Microsoft, with only four last year and an average of 11 to 12 in the three years prior,” noted Sheldon Malm, senior director of security strategy at Rapid7.

“None of the operating systems escaped this month’s updates. Even the latest versions of Windows have been hit hard this month, with six updates for Vista, eight for Server 2008, and five for Server 2008 R2 and Windows 7. I won’t be surprised if Microsoft is playing catch-up on some lingering vulnerabilities from last year.”

Brian Prince eWEEK USA 2014. Ziff Davis Enterprise Inc. All Rights Reserved

Share
Published by
Brian Prince eWEEK USA 2014. Ziff Davis Enterprise Inc. All Rights Reserved

Recent Posts

Craig Wright Sentenced For Contempt Of Court

Suspended prison sentence for Craig Wright for “flagrant breach” of court order, after his false…

3 days ago

El Salvador To Sell Or Discontinue Bitcoin Wallet, After IMF Deal

Cash-strapped south American country agrees to sell or discontinue its national Bitcoin wallet after signing…

3 days ago

UK’s ICO Labels Google ‘Irresponsible’ For Tracking Change

Google's change will allow advertisers to track customers' digital “fingerprints”, but UK data protection watchdog…

3 days ago

EU Publishes iOS Interoperability Plans

European Commission publishes preliminary instructions to Apple on how to open up iOS to rivals,…

4 days ago

Momeni Convicted In Bob Lee Murder

San Francisco jury finds Nima Momeni guilty of second-degree murder of Cash App founder Bob…

4 days ago