Alert Number: 100907-01
Alert Date: 10/09/07
Alert Title: Microsoft security bulletin release for October
Update-to: None
OS/Platform/Application:
Microsoft Windows Vista (including x64 Edition)
Microsoft Windows XP (including Service Pack 2, Professional, and x64 Edition)
Microsoft Windows Server 2003 (including Service Pack 1&2, x64, and Itanium-based systems)
Microsoft Windows 2000 Service Pack 4
Microsoft Outlook Express 6 and 5.5 (on all applicable Operating Systems)
Microsoft Mail in Windows Vista (all versions)
Microsoft Internet Explorer 7, 6, 5.0.1 (on all applicable operating Systems)
Microsoft Office 2004 for Mac
Microsoft Word 2000 and 2003 (including both versions service pack 3)
Microsoft SharePoint Services 3.0 on all versions of Windows Server 2003
Microsoft Office Sharepoint Server 2007 (all versions)
Category: ALERT
Severity: HIGH
Attention: Windows and Mac system Administrators, Desktop Support Personnel, Microsoft users
Summary: On October 9 2007 Microsoft released the latest in its monthly cycle of security bulletins. Included in this update are six bulletins (MS07-055 through MS07-060), four of which are listed as "critical" by the vendor.
Readers should take note that MS07-060 (The Microsoft Word vulnerability) is CURRENTLY BEING ACTIVELY EXPLOITED per reports from Microsoft and other Internet security-related agencies.
Recommended Actions: Windows and Mac System Administrators/users are encouraged to read the security bulletin and (if appropriate) install the updated bulletins as soon as possible.
ITS Actions: ITS Systems Management and Operations Staff will apply all necessary patches to the appropriate ITS servers as part of the next scheduled system update.
Resources:
Microsoft Security Bulletin for October 2007:
http://www.microsoft.com/technet/security/bulletin/ms07-oct.mspx