Feeds

Cortana, remind me to patch Windows, IE, and Adobe gear next Tues

Well, Microsoft's answer to Siri has got to be good for something

The Power of One Infographic

Microsoft will release eight security updates next Tuesday to squash remote-code execution bugs in Windows and Internet Explorer among other flaws.

Meanwhile, Adobe will issue new versions of Acrobat and Reader for this month's Patch Tuesday.

Two of the security updates from Microsoft are rated as critical because they allow miscreants to execute code from on vulnerable systems from afar: the Windows operating system from Server 2003 to Windows 8, web browser Internet Explorer 6 to 11, and some SharePoint-related software, are all at risk.

The other six updates are labelled important – one is a remote-code exec hole, four lead to privilege escalation and one allows hackers to bypass security protections. The affected software includes Microsoft Office 2007 to 2013, Windows and the .NET Framework.

Redmond, as usual, holds off documenting the vulnerabilities in further detail prior to the patch release.

The May release will be the first in more than a decade to not include any bulletins for Windows XP. The venerable OS was officially retired from support by Microsoft last month, though subsequent exploitation of flaws in the OS by miscreants has forced the company to issue an out-of-band update.

Adobe, meanwhile, will issue an update for four versions of its Reader and Acrobat software. The Adobe fix will address critical flaws in both the Windows and OS X versions of Reader and Acrobat 10 and 11.

Users and administrators are advised to test (if needed) and deploy all of next Tuesday's patches as soon as possible, least they fall victim to exploits targeting the newly disclosed vulnerabilities. ®

The Power of One eBook: Top reasons to choose HP BladeSystem

More from The Register

next story
Major problems beset UK ISP filth filters: But it's OK, nobody uses them
It's almost as though pr0n was actually rather popular
Google Nest, ARM, Samsung pull out Thread to strangle ZigBee
But there's a flaw in Google's IP-based IoT system
Orange spent weekend spamming customers with TXTs
Zero, not infinity, is the Magic Number customers want
US freemium mobile network eyes up Europe
FreedomPop touts 'free' calls, texts and data
Apple orders huge MOUNTAIN of 80 MILLION 'Air' iPhone 6s
Bigger, harder trouser bulges foretold for fanbois
'Two-speed internet' storm turns FCC.gov into zero-speed website
Deadline for comments on net neutrality shake-up extended to Friday
NBN Co execs: No FTTN product until 2015
Faster? Not yet. Cheaper? No data
Oh girl, you jus' didn't: Level 3 slaps Verizon in Netflix throttle blowup
Just hook us up to more 10Gbps ports, backbone biz yells in tit-for-tat spat
prev story

Whitepapers

Reducing security risks from open source software
Follow a few strategies and your organization can gain the full benefits of open source and the cloud without compromising the security of your applications.
Consolidation: The Foundation for IT Business Transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.
Application security programs and practises
Follow a few strategies and your organization can gain the full benefits of open source and the cloud without compromising the security of your applications.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.
Consolidation: the foundation for IT and business transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.