Today Microsoft released MS10-018 covering 10 vulnerabilities, including CVE-2010-0806, a zero-day threat discovered in the wild earlier in this month.
Reported exploit detections from McAfee home users are significant, though well below the top 20 detections at the the time of this blog post. Nonetheless, vulnerable users should patch soon.


View full post on McAfee Avert Labs
Related Posts
- Patchday: Fresh releases from Microsoft and Google
As announced last Friday, Microsoft released 3 Security Bulletins which deal with patches for 4 security vulnerabilities. One of them is rated critical and resides within the DirectShow framework for ... - Microsoft Security Bulletin Advance Notification
Microsoft has issued its advance notification for October’s Patch Tuesday. The company said it will release 16 security bulletins next week. Microsoft Office Two for Microsoft Office marked “importa... - Microsoft Releases ASP.NET Fix
On Thursday, Microsoft released the update for a publicly-disclosed vulnerability affecting ASP.NET servers to all their standard distribution channels, including Windows Update. View full ... - Microsoft Releases ASP.NET Update on Automatic Channels
Today Microsoft released the update for a publicly-disclosed vulnerability affecting ASP.NET servers to all their standard distribution channels, including Windows Update and WSUS (Windows Se... - Microsoft Releases Out Of Band Update For ASP.NET Flaw
Microsoft today released a security bulletin and "out of band" update for a vulnerability affecting ASP.NET applications. The early analysis on this vulnerability has called it extremely ser... - Microsoft releases work-around tool for DLL loading vulnerability
Microsoft has posted an advisory that explains the "DLL preloading attacks" and offers a work-around tool that “allows customers to disable the loading of libraries from remote network or WebDAV share... - Microsoft Confirms DLL Issue, Releases Workaround
In response to new developments in the old vulnerability of insecure DLL loading Microsoft has released an advisory describing the problem, actions that may be taken by users, administrators and devel... - Microsoft releases tool to block DLL load hijacking attacks
Microsoft responded to reports of potential zero-day attacks against a large number of Windows apps by publishing a tool to block known exploits. View full post on Computerworld Security News... - Microsoft Releases Record-Setting Patch Load
Microsoft released a record 14 security bulletins today, 8 of them with a maximum rating of Critical, fixing a record-tying total 34 vulnerabilities. One of the updates addresses a vulnerabil... - Save your work! Microsoft Releases Critical Security Patch
As expected, Microsoft has released a critical out-of-band patch for the LNK shortcut file vulnerability which received attention last month. As a critical patch, this update will be delivered th...




[...] [...]
[...] popular applications remain the main vehicle for Zeus crimeware infections. Naturally, there are campaigns that exclusively rely on recently published flaws, but the window of opportunity offered by those would be closed sooner than the one [...]