RETIRED: Microsoft September 2014 Advance Notification Multiple Vulnerabilities
BID:69636
Info
RETIRED: Microsoft September 2014 Advance Notification Multiple Vulnerabilities
| Bugtraq ID: | 69636 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Sep 04 2014 12:00AM |
| Updated: | Sep 11 2014 12:07AM |
| Credit: | Microsoft |
| Vulnerable: |
Microsoft Windows Vista x64 Edition SP2 Microsoft Windows Vista SP2 Microsoft Windows Server 2008 R2 for x64-based Systems SP1 Microsoft Windows Server 2008 for x64-based Systems SP2 Microsoft Windows Server 2008 for Itanium-based Systems SP2 Microsoft Windows Server 2008 for 32-bit Systems SP2 Microsoft Windows Server 2003 x64 SP2 Microsoft Windows Server 2003 Itanium SP2 Microsoft Windows Server 2003 SP2 Microsoft Windows 7 for x64-based Systems SP1 Microsoft Windows 7 for 32-bit Systems SP1 Microsoft Internet Explorer 9 Microsoft Internet Explorer 8 Microsoft Internet Explorer 7.0 Microsoft Internet Explorer 6.0 |
| Not Vulnerable: | |
Discussion
RETIRED: Microsoft September 2014 Advance Notification Multiple Vulnerabilities
Microsoft has released advance notification that on September 9, 2014, they will be releasing four security bulletins addressing multiple vulnerabilities.
The bulletins and their affected components are as follows:
One bulletin rated 'Critical' affecting Microsoft Windows and Internet Explorer.
Three bulletins rated 'Important' affecting Microsoft Windows, Microsoft Office, Microsoft Lync Server, and Microsoft .NET Framework.
This BID is being retired. The following individual records exist to better document the issues:
69578 Microsoft Internet Explorer CVE-2014-4059 Remote Memory Corruption Vulnerability
69580 Microsoft Internet Explorer CVE-2014-4065 Remote Memory Corruption Vulnerability
69581 Microsoft Internet Explorer CVE-2014-4079 Remote Memory Corruption Vulnerability
69583 Microsoft Internet Explorer CVE-2014-4080 Remote Memory Corruption Vulnerability
69584 Microsoft Internet Explorer CVE-2014-4081 Remote Memory Corruption Vulnerability
69585 Microsoft Internet Explorer CVE-2014-4082 Remote Memory Corruption Vulnerability
69587 Microsoft Internet Explorer CVE-2014-4083 Remote Memory Corruption Vulnerability
69588 Microsoft Internet Explorer CVE-2014-4084 Remote Memory Corruption Vulnerability
69589 Microsoft Internet Explorer CVE-2014-4085 Remote Memory Corruption Vulnerability
69590 Microsoft Internet Explorer CVE-2014-4086 Remote Memory Corruption Vulnerability
69591 Microsoft Internet Explorer CVE-2014-4087 Remote Memory Corruption Vulnerability
69595 Microsoft Internet Explorer CVE-2014-4088 Remote Memory Corruption Vulnerability
69596 Microsoft Internet Explorer CVE-2014-4089 Remote Memory Corruption Vulnerability
69597 Microsoft Internet Explorer CVE-2014-4090 Remote Memory Corruption Vulnerability
69598 Microsoft Internet Explorer CVE-2014-4091 Remote Memory Corruption Vulnerability
69599 Microsoft Internet Explorer CVE-2014-4092 Remote Memory Corruption Vulnerability
69600 Microsoft Internet Explorer CVE-2014-4093 Remote Memory Corruption Vulnerability
69601 Microsoft Internet Explorer CVE-2014-4096 Remote Memory Corruption Vulnerability
69602 Microsoft Internet Explorer CVE-2014-4094 Remote Memory Corruption Vulnerability
69604 Microsoft Internet Explorer CVE-2014-4095 Remote Memory Corruption Vulnerability
69605 Microsoft Internet Explorer CVE-2014-4097 Remote Memory Corruption Vulnerability
69606 Microsoft Internet Explorer CVE-2014-4098 Remote Memory Corruption Vulnerability
69607 Microsoft Internet Explorer CVE-2014-4099 Remote Memory Corruption Vulnerability
69608 Microsoft Internet Explorer CVE-2014-4100 Remote Memory Corruption Vulnerability
69609 Microsoft Internet Explorer CVE-2014-4101 Remote Memory Corruption Vulnerability
69610 Microsoft Internet Explorer CVE-2014-4102 Remote Memory Corruption Vulnerability
69611 Microsoft Internet Explorer CVE-2014-4103 Remote Memory Corruption Vulnerability
69612 Microsoft Internet Explorer CVE-2014-4104 Remote Memory Corruption Vulnerability
69613 Microsoft Internet Explorer CVE-2014-4105 Remote Memory Corruption Vulnerability
69614 Microsoft Internet Explorer CVE-2014-4106 Remote Memory Corruption Vulnerability
69615 Microsoft Internet Explorer CVE-2014-4111 Remote Memory Corruption Vulnerability
69616 Microsoft Internet Explorer CVE-2014-4110 Remote Memory Corruption Vulnerability
69617 Microsoft Internet Explorer CVE-2014-4108 Remote Memory Corruption Vulnerability
69618 Microsoft Internet Explorer CVE-2014-4107 Remote Memory Corruption Vulnerability
69619 Microsoft Internet Explorer CVE-2014-4109 Remote Memory Corruption Vulnerability
69576 Microsoft Internet Explorer CVE-2014-2799 Remote Memory Corruption Vulnerability
65601 Microsoft Internet Explorer CVE-2013-7331 Information Disclosure Vulnerability
69603 Microsoft .NET Framework CVE-2014-4072 Remote Denial of Service Vulnerability
69593 Microsoft Windows Task Scheduler Local Privilege Escalation Vulnerability
69586 Microsoft Lync Server CVE-2014-4068 Remote Denial of Service Vulnerability
69579 Microsoft Lync Server CVE-2014-4070 Cross Site Scripting Vulnerability
69592 Microsoft Lync Server CVE-2014-4071 Remote Denial of Service Vulnerability
Microsoft has released advance notification that on September 9, 2014, they will be releasing four security bulletins addressing multiple vulnerabilities.
The bulletins and their affected components are as follows:
One bulletin rated 'Critical' affecting Microsoft Windows and Internet Explorer.
Three bulletins rated 'Important' affecting Microsoft Windows, Microsoft Office, Microsoft Lync Server, and Microsoft .NET Framework.
This BID is being retired. The following individual records exist to better document the issues:
69578 Microsoft Internet Explorer CVE-2014-4059 Remote Memory Corruption Vulnerability
69580 Microsoft Internet Explorer CVE-2014-4065 Remote Memory Corruption Vulnerability
69581 Microsoft Internet Explorer CVE-2014-4079 Remote Memory Corruption Vulnerability
69583 Microsoft Internet Explorer CVE-2014-4080 Remote Memory Corruption Vulnerability
69584 Microsoft Internet Explorer CVE-2014-4081 Remote Memory Corruption Vulnerability
69585 Microsoft Internet Explorer CVE-2014-4082 Remote Memory Corruption Vulnerability
69587 Microsoft Internet Explorer CVE-2014-4083 Remote Memory Corruption Vulnerability
69588 Microsoft Internet Explorer CVE-2014-4084 Remote Memory Corruption Vulnerability
69589 Microsoft Internet Explorer CVE-2014-4085 Remote Memory Corruption Vulnerability
69590 Microsoft Internet Explorer CVE-2014-4086 Remote Memory Corruption Vulnerability
69591 Microsoft Internet Explorer CVE-2014-4087 Remote Memory Corruption Vulnerability
69595 Microsoft Internet Explorer CVE-2014-4088 Remote Memory Corruption Vulnerability
69596 Microsoft Internet Explorer CVE-2014-4089 Remote Memory Corruption Vulnerability
69597 Microsoft Internet Explorer CVE-2014-4090 Remote Memory Corruption Vulnerability
69598 Microsoft Internet Explorer CVE-2014-4091 Remote Memory Corruption Vulnerability
69599 Microsoft Internet Explorer CVE-2014-4092 Remote Memory Corruption Vulnerability
69600 Microsoft Internet Explorer CVE-2014-4093 Remote Memory Corruption Vulnerability
69601 Microsoft Internet Explorer CVE-2014-4096 Remote Memory Corruption Vulnerability
69602 Microsoft Internet Explorer CVE-2014-4094 Remote Memory Corruption Vulnerability
69604 Microsoft Internet Explorer CVE-2014-4095 Remote Memory Corruption Vulnerability
69605 Microsoft Internet Explorer CVE-2014-4097 Remote Memory Corruption Vulnerability
69606 Microsoft Internet Explorer CVE-2014-4098 Remote Memory Corruption Vulnerability
69607 Microsoft Internet Explorer CVE-2014-4099 Remote Memory Corruption Vulnerability
69608 Microsoft Internet Explorer CVE-2014-4100 Remote Memory Corruption Vulnerability
69609 Microsoft Internet Explorer CVE-2014-4101 Remote Memory Corruption Vulnerability
69610 Microsoft Internet Explorer CVE-2014-4102 Remote Memory Corruption Vulnerability
69611 Microsoft Internet Explorer CVE-2014-4103 Remote Memory Corruption Vulnerability
69612 Microsoft Internet Explorer CVE-2014-4104 Remote Memory Corruption Vulnerability
69613 Microsoft Internet Explorer CVE-2014-4105 Remote Memory Corruption Vulnerability
69614 Microsoft Internet Explorer CVE-2014-4106 Remote Memory Corruption Vulnerability
69615 Microsoft Internet Explorer CVE-2014-4111 Remote Memory Corruption Vulnerability
69616 Microsoft Internet Explorer CVE-2014-4110 Remote Memory Corruption Vulnerability
69617 Microsoft Internet Explorer CVE-2014-4108 Remote Memory Corruption Vulnerability
69618 Microsoft Internet Explorer CVE-2014-4107 Remote Memory Corruption Vulnerability
69619 Microsoft Internet Explorer CVE-2014-4109 Remote Memory Corruption Vulnerability
69576 Microsoft Internet Explorer CVE-2014-2799 Remote Memory Corruption Vulnerability
65601 Microsoft Internet Explorer CVE-2013-7331 Information Disclosure Vulnerability
69603 Microsoft .NET Framework CVE-2014-4072 Remote Denial of Service Vulnerability
69593 Microsoft Windows Task Scheduler Local Privilege Escalation Vulnerability
69586 Microsoft Lync Server CVE-2014-4068 Remote Denial of Service Vulnerability
69579 Microsoft Lync Server CVE-2014-4070 Cross Site Scripting Vulnerability
69592 Microsoft Lync Server CVE-2014-4071 Remote Denial of Service Vulnerability
Exploit / POC
RETIRED: Microsoft September 2014 Advance Notification Multiple Vulnerabilities
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
RETIRED: Microsoft September 2014 Advance Notification Multiple Vulnerabilities
Solution:
Microsoft plans to release fixes to address these issues on September 9, 2014.
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Microsoft plans to release fixes to address these issues on September 9, 2014.
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
RETIRED: Microsoft September 2014 Advance Notification Multiple Vulnerabilities
References:
References:
- Microsoft Homepage (Microsoft)