Seguridad proactiva para IT
 

No critical updates for Microsoft systems in March 2010

10 March 2010

In its security bulletin summary for March 2010 Microsoft has published no updates for critical vulnerabilities in its operating systems / applications, however two important updates were published.

A summary describing briefly the vulnerabilities is available from Microsoft's Security Bulletin Summary for March 2010.
From this page you will also find links to more detailed information in Microsoft's Security Bulletins MS10-016 - MS10-017.

Note in particular that these updates does not include any fix for the vulnerability described in Microsoft's Security Advisory from 1 March 2010 - Vulnerability in VBScript Could Allow Remote Code Execution - the so-called F1 or Help vulnerability. A workaround for this until a permanent fix is available, is to avoid pressing the F1 key while using Internet Explorer.

Updates that fixes the vulnerabilities are available from Windows automatic update mechanism for systems that support this. Alternatively, one may download updates from http://windowsupdate.microsoft.com.

Norman advices all affected users to download the relevant security updates as soon as possible, to be protected from potential exploits.