-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
***************************& -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
********************************************************************
Title: Microsoft Security Update Minor Revisions
Issued: January 12, 2018
********************************************************************
Summary
=======
The following CVE has been revised in the January 2018 Security
Updates.
* CVE-2018-0802
Revision Information:
=====================
CVE-2018-0802
- Title: CVE-2018-0802 | Microsoft Office Memory Corruption
Vulnerability
- https://portal.msrc.microsoft.com/en-us/security-guidance
- Reasons for Revision: In the Exploitability Assessment table,
corrected the exploitability index for both latest and older
software releases. This is an informational change only.
- Originally posted: January 9, 2018
- Updated: January 12, 2018
- CVE Severity Rating: Important
- Version: 1.1
Other Information
=================
Recognize and avoid fraudulent email to Microsoft customers:
=============================================================
If you receive an email message that claims to be distributing
a Microsoft security update, it is a hoax that may contain
malware or pointers to malicious websites. Microsoft does
not distribute security updates via email.
The Microsoft Security Response Center (MSRC) uses PGP to digitally
sign all security notifications. However, PGP is not required for
reading security notifications, reading security bulletins, or
installing security updates. You can obtain the MSRC public PGP key
at <https://technet.microsoft.com/security/dn753714>.
********************************************************************
THE INFORMATION PROVIDED IN THIS MICROSOFT COMMUNICATION IS
PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND. MICROSOFT
DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR IMPLIED, INCLUDING
THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
PURPOSE.
IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE
LIABLE FOR ANY DAMAGES WHATSOEVER INCLUDING DIRECT, INDIRECT,
INCIDENTAL, CONSEQUENTIAL, LOSS OF BUSINESS PROFITS OR SPECIAL
DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE BEEN
ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY
FOR CONSEQUENTIAL OR INCIDENTAL DAMAGES SO THE FOREGOING
LIMITATION MAY NOT APPLY.
********************************************************************
Microsoft respects your privacy. Please read our online Privacy
Statement at <http://go.microsoft.com/fwlink/?LinkId=81184>.
If you would prefer not to receive future technical security
notification alerts by email from Microsoft and its family of
companies please visit the following website to unsubscribe:
<https://profile.microsoft.com/RegSysProfileCenter/subscriptionwizar
d.aspx?wizid=5a2a311b-5189-4c9b-9f1a-d5e913a26c2e&%3blcid=1033>.
These settings will not affect any newsletters youave requested or
any mandatory service communications that are considered part of
certain Microsoft services.
For legal Information, see:
<http://www.microsoft.com/info/legalinfo/default.mspx>.
This newsletter was sent by:
Microsoft Corporation
1 Microsoft Way
Redmond, Washington, USA
98052
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCAAdFiEELe29pj1Ogz+2MnKbEEiO2re18ugFAlpZXz4ACgkQEEiO2re1
8uhBDhAAv6xXUYeAlsoXZ9lHcKp4bKnZO81gVAUi2J0Y4JEb1gZJzzmjQwQs1Xu7
F7ZBnm4HTOlVFVJVERsWjWk4Vfn/QxfsokHpSac3tlPEZSX7hc7COxVI67rHdomZ
SQAZoRSxfMeYMvcSrW8QzhqfSAAsxJUJCe5rS84dCCFT8eZzaXDwsK+J+5ggrH4W
A4un5sQYJkDLrsIy9kaYjV3p6yIT6ScAmXVrQOoD/X065XVa6yaZGiNiADm/Itw9
9tVTneMqucQa99JJbm59fVIizJbYdxn3+fzDj1GsO8//FrRW6CVyGcg8OtkO3Sil
9FJbEvGSdpCWxzsUPMbubHLbFQI9Bk4d6p+hP8pSFf8l7oPS/Kn4+VByhGjZUZlY
0lzVhjAjfS3t/XlP64Z+FqbcH5+4mgGFg7siU2qYHx8Hs0NF7eRRI+aEh16H1Pta
vexjQUxIWgjV7L4/o0cV2pl3lSdkVL2pZBqqnvSIDLqnpojS2X5A2HqKp/JBXF6d
9jAld5rGKkd2PJIrvfTodW1O8jV91Wjw+SC8yWskqerIb074D3rYjene6Mq0jyg9
pQLQ62Hl5WK2Kype5mEoWEwCFnHCSkDNXEdGIX/8uMaqXSEJLpxQKVQewyeh1QQR
Hq1BfjpueGNj+PJFcktjllDlyOZLHmRSzF3jgKdLhPeLAlAC1wY=
=XvSY
-----END PGP SIGNATURE-----
Microsoft Security Bulletin CVE Revision Increment For January 2018
- Details
- Written by: khalil shreateh
- Category: Vulnerabilities
- Hits: 514