Here are a few quick items since patch Tuesday:
- MS09-071
In Windows Server 2008, IAS was replaced by Network Policy Server (NPS). Microsoft has updated their security bulletin to reflect this.
- Non-security patch for Security Advisory
Microsoft released a couple of security advisories on patch day. One of the advisories suggested administrators install Extended Protection. Installing this patch has caused issues on some IIS servers. Microsoft has released a knowledge base article explaining the details around this issue and suggested work arounds: KB2009746
- MS09-054 Cumalitive Update for Internet Explorer Issue
When Microsoft released MS09-054 a few months ago, a bug was introduced that could result in Internet Explorer errors. Microsoft had previously release a non-secuirty update to address this issue in hotfix with KB976749. With MS09-072, Microsoft addressed this issue. If you install the latest Cumalitive Update for Internet Explorer, this non-security patch will expire.
- Adobe Flash Player Update Details
Adobe released the details around the security bulletin released on patch Tuesday. APSB09-19 fixes 7 Vulnerabilities that are rated critical. SANS is reporting that Flash Player 9 is no longer supported after December 8th, 2009 in a recent blog posting. You will need to migrate to Flash version 10 to get this security update.
- Jason Miller