CERT-In Advisory CIAD-2008-59
Multiple Vulnerabilities in Microsoft Windows and Microsoft XML Core Services
Original issue date:
November 12, 2008
Systems Affected
- Windows 2000
- Windows XP
- Windows Server 2003
- Windows Vista
- Windows Server 2008
- Microsoft XML Core Services 3.0, 4.0, 5.0 and 6.0
Overview
Multiple vulnerabilities have been reported in various Microsoft products and components such as Microsoft Windows and Microsoft XML Core Services.
Description
The vulnerability notes released by CERT-In with reference to Microsoft Security Bulletins are given below:
| Microsoft Security Bulletin |
Severity |
CERT-In Vulnerability Notes |
| MS08-068: Vulnerability in SMB Could Allow Remote Code Execution |
Medium |
CIVN-2008-177:
Microsoft Windows SMB Credential Reflection Vulnerability |
| MS08-069: Vulnerabilities in Microsoft XML Core Services Could Allow Remote Code Execution |
High |
CIVN-2008-178:
Multiple Vulnerabilities in Microsoft XML Core Services |
Solution
Apply appropriate patches as mentioned in Microsoft Security Bulletin November 2008
http://www.microsoft.com/technet/security/bulletin/ms08-nov.mspx
Vendor Information
Microsoft Corporation
http://www.microsoft.com/technet/security/bulletin/ms08-nov.mspx
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information

Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In)
Ministry of Communications and Information Technology
Electronics Niketan
6, C.G.O. Complex
New Delhi-110 003

|