Unsolved

This post is more than 5 years old

5 Journeyman

 • 

15.6K Posts

 • 

45K Points

4349

April 10th, 2007 16:00

April Windows Critical/Security updates now available

These are rated CRITICAL:

 

MS07-017  Vulnerabilities in GDI Could Allow Remote Code Execution (925902) 

[This one was released early, on 3 April; however, last week's patch broke some third-party programs, including HD audio control software from Realtek; ElsterFormular German tax software; TUGZip, a free file-archiving utility; and CD-Tag, a program that turns CDs into digital audio files.

Microsoft said the latest update will fix the problems for PCs that have the affected programs installed.]

 

MS07-018  Vulnerabilities in Microsoft Content Management Server Could Allow Remote Code Execution (925939)  

[Note:  Unless you have Content Manager Server (a business application) installed on your PC, you will not find/need this particular update.]

 

MS07-019  Vulnerability in Universal Plug and Play Could Allow Remote Code Execution (931261)

 

MS07-020  Vulnerability in Microsoft Agent Could Allow Remote Code Execution (932168)

 

MS07-021 Vulnerabilities in CSRSS Could Allow Remote Code Execution (930178) 

[CSRSS= Client/Server Run-time Subsystem ]

 

---------------------------

This one is rated "IMPORTANT"

 

MS07-022 Vulnerability in Windows Kernel Could Allow Elevation of Privilege (931784)







Message Edited by ky331 on 04-10-2007 03:28 PM

4 Apprentice

 • 

20.5K Posts

April 19th, 2007 16:00

** Note on MS07-017
Three additional applications have been added to the list of applications affected by the issue discussed in Knowledge Base article 935448. The hotfix that is available addresses the issues in these applications:

- BricoPack Vista Inspirat 1.1 (by CrystalXP)
- AVG 7.5 (by Grisoft, Inc)
- BMC PATROL 7.1 (now called Performance Manager, by BMC Software, Inc)

More here:
http://blogs.technet.com/msrc/archive/2007/04/18/new-updates-for-microsoft-knowledge-base-article-925902.aspx


MS07-017 - Vulnerabilities in GDI Could Allow Remote Code Execution (925902)
http://www.microsoft.com/technet/security/Bulletin/MS07-017.mspx

Message Edited by Bugbatter on 04-19-2007 01:46 PM

5 Journeyman

 • 

15.6K Posts

 • 

45K Points

April 19th, 2007 20:00

BB:
 
I see that AVG 7.5 [Control Center] is among the impacted programs now.   I've been using AVG 7.5 [Free version] on two XP systems [one home, one pro], and installed the Windows updates as soon as they were made available.   I have not experienced any problems... in particular, the one being identified by Microsoft now.
 
I plan to go by the maxim, "if it aint broke, don't fix it"... that is, the patch does not show up for me when I go to Windows updates, so I don't see forcing the issue by going for a forced/manual download.   Any thought you [or others] would care to offer???
 

5 Journeyman

 • 

15.6K Posts

 • 

45K Points

April 20th, 2007 14:00

Interesting...  I haven't seen any complaints here [so far??]... and with the large number of AVG users we have here, you'd think SOMEONE would have complained by now...
unless the problem isn't as widespread as we're being lead to believe

4 Apprentice

 • 

20.5K Posts

April 20th, 2007 14:00

I have not had the problem either, and am running AVG 7.5 on two systems. I'm not patching unless I run into problems.

5 Journeyman

 • 

15.6K Posts

 • 

45K Points

April 21st, 2007 11:00

We have a clarification from the latest Microsoft bulletin [revision 7.1, 20 April '07]
 
You may receive a  similar  error message that references Shell32.dll when you run AVG Anti-Virus Control Center from Grisoft, Inc.
This problem occurs if you are also running BricoPack Vista Inspirat from CrystalXP.
To resolve this problem, uninstall BricoPack Vista Inspirat.

Note This is not a problem with AVG Anti-Virus Control Center nor with Windows.
[As such,]  This problem is not resolved when you install update 935448.
No Events found!

Top