

| No. | Title | Date | ||
|---|---|---|---|---|
| 30 | Microsoft Security Bulletin MS10-002 - Critical | 01/22/10 |

1. Summary
Microsoft released cumulative security update for Internet Explorer (978207).
This security update resolves seven privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer. The more severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer.
[Related Vulnerabilities]
- XSS Filter Script Handling Vulnerability - CVE-2009-4074
- URL Validation Vulnerability - CVE-2010-0027
- Uninitialized Memory Corruption Vulnerability - CVE-2010-0244
- Uninitialized Memory Corruption Vulnerability - CVE-2010-0245
- Uninitialized Memory Corruption Vulnerability - CVE-2010-0246
- Uninitialized Memory Corruption Vulnerability - CVE-2010-0247
- HTML Object Memory Corruption Vulnerability - CVE-2010-0248
- HTML Object Memory Corruption Vulnerability - CVE-2010-0249
2. Affected Software
- Internet Explorer 5.01 SP4 on Microsoft Windows 2000 SP4
- Internet Explorer 6 SP1 on Microsoft Windows 2000 SP4
- Internet Explorer 6 on Windows XP SP2, SP3
- Internet Explorer 6 on Windows XP Professional x64 Edition SP2
- Internet Explorer 6 on Windows Server 2003 SP2
- Internet Explorer 6 on Windows Server 2003 x64 Edition SP2
- Internet Explorer 6 on Windows Server 2003 SP2 for Itanium-based Systems
- Internet Explorer 7 on Windows XP SP2, SP3
- Internet Explorer 7 on Windows XP Professional x64 Edition SP2
- Internet Explorer 7 on Windows Server 2003 SP2
- Internet Explorer 7 on Windows Server 2003 x64 Edition SP2
- Internet Explorer 7 on Windows Server 2003 SP2 for Itanium-based Systems
- Internet Explorer 7 on Windows Vista, SP1, SP2
- Internet Explorer 7 on Windows Vista x64 Edition, SP1, SP2
- Internet Explorer 7 on Windows Server 2008 for 32-bit Systems, SP2
- Internet Explorer 7 on Windows Server 2008 for x64-based Systems, SP2
- Internet Explorer 7 on Windows Server 2008 for Itanium-based Systems, SP2
- Internet Explorer 8 on Windows XP SP2, SP3
- Internet Explorer 8 on Windows XP Professional x64 Edition SP2
- Internet Explorer 8 on Windows Server 2003 SP2
- Internet Explorer 8 on Windows Server 2003 x64 Edition SP2
- Internet Explorer 8 on Windows Vista, SP1, SP2
- Internet Explorer 8 on Windows Vista x64 Edition, SP1, SP2
- Internet Explorer 8 on Windows Server 2008 for 32-bit Systems, SP2
- Internet Explorer 8 on Windows Server 2008 for x64-based Systems, SP2
- Internet Explorer 8 on Windows Server 2008 for Itanium-based Systems, SP2
- Internet Explorer 8 on Windows Server 2008 R2 for x64-based Systems
- Internet Explorer 8 on Windows Server 2008 R2 for Itanium-based Systems
- Internet Explorer 8 on Windows 7 for 32-bit Systems
- Internet Explorer 8 on Windows 7 for x64-based Systems
3. Solution
Apply the latest MS security patches for system.
4. Link
http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx
