Microsoft is preparing for another Patch Tuesdayand this time it plans to patch vulnerabilities found in the Windows operating system and the Office suite.
A total of four updates will be released on Tuesday, two of which were rated by the company as critical and the other two are considered important.
As usual, Microsoft doesn't give details about the vulnerabilities that will be fixed by the new patches, for obvious reasons, but it only says that Windows and Office will get critical updates. Of course, an update for Internet Explorer is also pending as the company discovered a bug that needs to be addressed as soon as possible. Internet Explorer 10 is the only version that is not affected by the specific vulnerability, as the company said.
As for Office, the vulnerability has been found in all versions of the suite. Since the company doesn't usually provide more details before releasing updates, we can't know if the upcoming updates will "close" the security hole found in Word that allows attackers to execute code using a malicious RTF document. In any case, we'll learn more on Tuesday.
| Bulletin ID | Maximum Severity Rating and Vulnerability Impact | Restart Requirement | Affected Software |
|---|---|---|---|
| Bulletin 1 | Critical Remote Code Execution | May require restart | Microsoft Office, Microsoft Office Services, Microsoft Office Web Apps |
| Bulletin 2 | Critical Remote Code Execution | Requires restart | Microsoft Windows, Internet Explorer |
| Bulletin 3 | Important Remote Code Execution | Requires restart | Microsoft Windows |
| Bulletin 4 | Important Remote Code Execution | May require restart | Microsoft Office |
Source: secnews.gr

