Skip to main content


MS07-069 Cumulative Security Update for Internet Explorer - Post Install Issue - Automated Work-Around

Thursday, December 20, 2007

Hi, this is Kieron, the MSRC Program Manager responsible for Internet Explorer. On Tuesday we released Knowledge Base article KB946627, which highlighted a known issue with Internet Explorer 6 on Windows XP Service Pack 2 after applying MS07-069 Cumulative Security Update for Internet Explorer (942615). The article documented a workaround, which required a registry setting change.

MS07-069 Cumulative Security Update for Internet Explorer - Post Install Issue

Tuesday, December 18, 2007

Hi, this is Kieron, the MSRC Program Manager responsible for Internet Explorer. We have been investigating public reports of possible problems on systems that have installed the Cumulative Security Update for Internet Explorer (942615), released earlier this month. We have some information to share with you regarding the results of our investigation into these reports.

December 2007 Monthly Release

Tuesday, December 11, 2007

Hi Everyone, This is Tami Gallupe, MSRC release manager, and I just wanted to let you know that we’ve posted our bulletins for December 2007. We released seven bulletins today: three have a maximum severity of Critical, and four have a maximum severity of Important. Here is a snapshot of what we released and you can find more information at the Security Bulletin Summary for December 2007.

December 2007 Advance Notification

Thursday, December 06, 2007

Hello, I wanted to let you know that we just posted our Advance Notification for next week’s bulletin release which will occur on Tuesday, December 11, 2007 at or around 10 a.m. Pacific Time. It is important to remember that while the information posted below is intended to help with your planning, because it is preliminary information, it is subject to change.

MSRC Blog: Security Advisory 945713

Monday, December 03, 2007

Hello. My name is Tim Rains and I work on the Security Response Communications Team at Microsoft. My team works to provide communications around security response to our customers through the MSRC Blog and other types of communications vehicles. I want to let you know that we have just posted Microsoft Security Advisory 945713, which provides information about a vulnerability in the way Microsoft Windows XP SP2, Windows Server 2003 SP1, Windows Server 2003 SP2 and Windows Vista find a Web Proxy Automatic Discovery (WPAD) server.

November 2007 Monthly Release

Tuesday, November 13, 2007

Hi, this is Simon, Release Manager in the MSRC. I’d like to introduce you to our November security release. Today we are releasing two new bulletins: · [**MS07-061**]( This update addresses a vulnerability in Windows URI handling, which could allow remote code execution and has a maximum severity of Critical. ** · [**MS07-062**](http://www.

November 2007 Advance Notification

Thursday, November 08, 2007

Hello, I wanted to let you know that we just posted our Advance Notification for next week’s bulletin release which will occur on Tuesday, November 13th, 2007 at or around 10 a.m. Pacific Time. It is important to remember that while the information posted below is intended to help with your planning, because it is preliminary information, it is subject to change.

MSRC Blog: Security Advisory (944653)

Monday, November 05, 2007

Today, in cooperation with Macrovision, we issued an Advisory related to a vulnerability in the Macrovision SECDRV.SYS Driver that is included with Windows XP and Windows 2003. Equally important, Macrovision also released an Advisory for this issue, which includes a security update. We recommend that customers review the Macrovision advisory before applying it.

MSRC Blog: October 25th Update To Security Advisory 943521

Thursday, October 25, 2007

Hi everyone, Bill Sisk here. This week we became aware of publicly disclosed exploit code being used in limited attacks on customers. This change in the threat landscape has prompted us to update last week’s Security Advisory 943521 and triggered our Software Security Incident Response Plan (SSIRP). Third party applications are currently being used as the vector for attack and customers who have applied the security updates available from these vendors are currently protected.