Skip to main content
MSRC

Month Archives: September 2008

September 2008 Monthly Bulletin Release

Tuesday, September 09, 2008

I’m Simon, Release Manager in the MSRC. The September 2008 release contains 4 new bulletins, all with maximum severities of “Critical”. MS08-052 Vulnerabilities in GDI+ Could Allow Remote Code Execution (954593) MS08-053 Vulnerability in Windows Media Encoder 9 Could Allow Remote Code Execution (954156) MS08-054 Vulnerability in Windows Media Player Could Allow Remote Code Execution (954154)

Ruminations on Microsoft’s IE8 XSS Filter

Thursday, September 04, 2008

Hi, Amit Klein from Trusteer here. Awhile ago, David Ross from Microsoft SWI contacted me and asked me if I would like to review the new Internet Explorer 8 XSS Filter. Does a chicken like to peck? ;-) Of course I volunteered. My review was conducted in a rather interesting manner.

September 2008 Advanced Notification

Thursday, September 04, 2008

Hello, Bill here. I wanted to let you know that we just posted our Advance Notification for next week’s bulletin release which will occur on Tuesday, September 9, 2008 around 10 a.m. Pacific Standard Time. It is important to remember that while the information posted below is intended to help with your planning, because it is preliminary information, it is subject to change.