October will see seven bulletins from Microsoft, one addressing a vulnerability listed as critical in Microsoft Office and Windows Server, nothing (yet) from Adobe since APSA12-01 and Java will have it’s ‘regular’ update, currently scheduled for 16 October (it’s been eerily quiet from the Oracle camp lately). There are a few other noteworthy items this month that I will covering in additional articles.
Microsoft released 7 bulletins this moth including 1 critical and 7 listed as important. The critical bulletin addresses a vulnerability in Microsoft Office and Windows Server. The vulnerability in Office seems to be being downplayed a bit, noting that it ‘only really affects Word 2003, Word 2007 and Word 2010’. The downside though is that it can allow remote code execution and I really don’t know that many folks that have Microsoft Office installed without Word. Additional details, including executive summaries of each bulletin, are available from Microsoft here.
Things have been relatively quiet for the last few weeks from Adobe. As always though, there’s always tomorrow and zero day vulnerabilities typically aren’t announced. Up-to-date information from Adobe can always be found here.
Java is the big winner (loser?) again this month. Things seem to be pretty quiet right now but, if you don’t *have to have* Java installed, my recommendation would be to not have it installed. If you do have to have it installed, you need to make sure that you’re using the latest version and check for updates frequently. Java downloads are available here.
Monthly Update Clients
* If you are not currently taking advantage of our monthly update service and would like more information or to sign up, additional information is available here
For our Monthly Update clients, if a date and time hasn’t already been scheduled to install your updates, we will be contacting you shortly to schedule. If you aren’t already taking advantage of our monthly update service, there’s no time like the present to get started. We offer a monthly update service to keep all of your computers up-to-date for a low monthly fixed price with no long-term committment. Additional information is available on our website.