Microsoft to Issue 7 Security Patches

By Nate Mook | Published July 6, 2006, 2:30 PM

Microsoft plans to release 7 security bulletins as part of its July 11 Patch Tuesday, the company said Thursday. Four of the updates are for Windows, with the most severe being rated as "critical." Three other patches are directed at Office, also with a maximum severity of "critical."

Although Microsoft does not disclose in advance what flaws are to be patched, two vulnerabilities in Excel are likely to be among the fixes. One issue relates to maliciously crafted spreadsheet files that could lead to a full system compromise, while the other relates to hyperlinks in Excel documents.

Two security flaws affecting Internet Explorer were also reported last week, including a cross-site scripting issue where an attacker could view information in an open browser window from another that is visiting a malicious site.

A second more serious flaw involves how HTA applications are handled. A user could be tricked into opening a malicious file, which in turn could execute code. The file would need to be accessed through SMB or WebDAV in order for the issue to be exploited.

Microsoft said last week that it was investigating the issues, but it's not clear if the company has had time to develop and properly test a fix.

Along with the 7 security patches, Microsoft will release one high-priority non-security update that is not for Windows. Per usual, the Redmond company will also deliver an update to its Malicious Software Removal Tool on Tuesday.

Comments

View comments by with a score of at least

I've downloaded IE 7 Beta and now can not use IExplorer at all. Is is just me and my computer? Using XP Home Edition w/ sp2.
HELP!!!!!!!!!!

Score: 0

|

IE7 Beta is not a new program, it is a new version of an existing program, and thus when you install it, it replaces your old version (IE6) with itself
so you are still using the same product, it is still Internet Explorer, the difference is the version number

if the program wont run at all, try reinstalling it, or uninstalling and then doing a fresh install

Score: 0

|

Hi Ho....Hi Ho....off to patch we go

Score: 0

|

Hey!!!!!!!!!!!!!!!!!!!!!!!!!Don't be talking 'bout my sistah!!!!!!!

Score: 0

|

ANOTHER SWISS CHEESE TUESDAY!

Score: 0

|

I cannot imagine Microsoft without "critical patches". Well, I think there's always something to be made better. Some years ago I had to return to my old computer with Windows 98 SE in it. I keep using it since then. I have improved it in many ways (new motherboard, new hard drive, new processor, firewall, editors, registry cleaners, DVD, TV, Satellite receiver, tweaks, etc.) I never loaded a patch. If you are a Windows 98 SE user, don't worry: It is a really cool system and keeps working perfectly. You may find almost everything you need to improve it up to very high standards in the Internet, no need to buy a new machine.

Score: 0

|

And THAT is the last official day of any patch being released for win9x.

Those of you wanting future patches, and as well previous unofficial patches(by anonymous MS insiders) for the issues MS has stated it will not patch on 9X, check out either mdgx.com under your particular OS, or here: http://www.msfn.org/boar...dex.php?showtopic=46581

Score: 0

|

You won't be able to get future patches at that site because there won't be any future patches. All of those "unofficial service packs" and hot fixes are made by Microsoft. People just bundle them together into packs.

Score: 0

|

The critical one must be a WGA update.

*grin*

Score: 0

|

Oh gosh...

Is that an angry mob I see coming up the road?

lol

Score: 0

|

Grab yer Torch and Pitchforks!

Score: 0

|

and in the morning, I'm make-in WAFFLES.

Score: 0

|

Don't forget the rope!

Score: 0

|

Someone got it. ;)

Score: 0

|

PDC 2009: What have we learned this week?

There was the freebie that no one will forget, the heebie-jeebies courtesy of Scott Guthrie, and a teensy bit clearer picture of how this cloud thingie should work.

Live report: Will Google Chrome OS change Linux?

The mysteries of just what Chrome OS is, and how much of an operating system it truly is, may be resolved today.

PDC 2009: Microsoft cares about Web browser performance

The effort to give users of the world's dominant Web browser the impression of quality, is a personal one for the man who leads that battle.

Nokia re-affirms its commitment to Symbian, sort of

Maemo won't necessarily be replacing Symbian in the Nokia N-Series, but that's definitely a place where it will be found.

E-book readers will be in short supply this holiday season

E-readers are hot this year, and a lot of compelling new products have been released, but are there enough electrophoretic displays to go around?

Sony looks to finally open a single storefront for downloads

Sony has had many different download portals for movies, music, e-books, and games, and now it's looking to make a single shop for all of it.

Tuning out the tablet: Time to give the endless speculation a rest

Wide Angle Zoom: Wishing and hoping and thinking and praying....won't put an iTablet on the market.

Five improvements for IT managers in 2010

If businesses are to improve their efficiency for next year, they need to stop and reassess the basic tenets of their job.

AOL's spinoff from Time Warner to shed 2,500 jobs

As AOL moves toward become an independent company again, it will cut nearly a third of its workforce.

Gartner: SMS-based money transfer will be bigger than mobile browsing, search

Gartner issues its predictions for the 10 things our phones will be doing in 2012.

Don't forget to upgrade to Firefox 3.6 beta 3 today

Mozilla has released the latest beta its Firefox 3.6 browser software, just over one week after beta 2.