|« View all Symantec Security Threatcon Articles
Symantec Security Threatcon Status for 2012-06-29
On June 12, 2012, Microsoft released its scheduled patch update for June 2012. This month's update covers vulnerabilities in the Microsoft Windows operating system, Office, Internet Explorer, Dynamics AX, and .NET Framework. Seven security bulletins have been released to address these issues.
Of special note are the critical Internet Explorer vulnerabilities fixed in MS12-037 patch. These issues can be exploited for remote unauthenticated code-execution when a user views a specially crafted webpage using Internet Explorer. User accounts configured with minimal user rights are less impacted than users who operate with administrative user rights.
There have been confirmed reports of CVE-2012-1875 being exploited in the wild. Customers are advised to install all applicable updates as soon as possible.
Microsoft Security Bulletin Summary for June 2012
CVE-2012-1875 Exploited in the Wild - Part 1 (Trojan.Naid)
CVE-2012-1875 in the Wild (Part 2) - Internet Explorer Gets Stumped