Post Patch Tuesday Roundup

Here are a few quick items since patch Tuesday:

  • MS09-071
    In Windows Server 2008, IAS was replaced by Network Policy Server (NPS).  Microsoft has updated their security bulletin to reflect this.

 

  • Non-security patch for Security Advisory
    Microsoft released a couple of security advisories on patch day.  One of the advisories suggested administrators install Extended Protection.  Installing this patch has caused issues on some IIS servers.  Microsoft has released a knowledge base article explaining the details around this issue and suggested work arounds: KB2009746

 

  • MS09-054 Cumalitive Update for Internet Explorer Issue
    When Microsoft released MS09-054 a few months ago, a bug was introduced that could result in Internet Explorer errors.  Microsoft had previously release a non-secuirty update to address this issue in hotfix with KB976749.  With MS09-072, Microsoft addressed this issue.  If you install the latest Cumalitive Update for Internet Explorer, this non-security patch will expire.

 

  • Adobe Flash Player Update Details
    Adobe released the details around the security bulletin released on patch Tuesday.  APSB09-19 fixes 7 Vulnerabilities that are rated critical.  SANS is reporting that Flash Player 9 is no longer supported after December 8th, 2009 in a recent blog posting.  You will need to migrate to Flash version 10 to get this security update.

- Jason Miller

Say your words