Home | Patch Tuesday: February 14, 2007

Patch Tuesday: February 14, 2007

The eEye Digital Security Research Team is dedicated to finding and educating the public about new and existing security vulnerabilities. Below is a list of resources to help you understand the scope of the vulnerabilities behind this month's patches and how to make informed decisions about best ways to proceed with patch installation.

Patch Tuesday Email Bulletin
Immediately following each Patch Tuesday's releases from Microsoft, eEye provides an email bulletin detailing the specifics of each patch's underlying vulnerability, along with information to help administrators plan for patch deployment. The email is available to subscribers of eEye's "Alert" mailing list only. Subscribers also receive timely bulletins when important network security events are unfolding, such as worms and zero-day exploits.
Free Webinar: Vulnerability Expert Forum
As a service to the network security community, eEye's Research Team - headed by Marc Maiffret, eEye's CTO/Founder and Chief Hacking Officer - conducts a Vulnerability Expert Forum web seminar during the second week of every month. This Vulnerability Expert Forum enables participants to stay current on the potential risks and remediation requirements, such as those announced Tuesday, by exploring the effect that high-risk vulnerabilities and exploits have on network environments and infrastructures.
Trial Downloads
Each of eEye's vulnerability management products is designed to help you better prepare your network for remediation activities resulting from Patch Tuesday.
eEye Research's Zero-Day Tracker
eEye tracks a running list of archived and active zero-day vulnerabilities that have been publicly disclosed and/or used in attacks, and do not have any published vendor-supplied patch.
Retina Audits

eEye's Retina Audits


MS07-005
[5673] - Microsoft SBS Interactive Training Remote Code Execution (923723) - MPIT
[5691] - Microsoft SBS Interactive Training Remote Code Execution (923723) - MIT
[5692] - Microsoft SBS Interactive Training Remote Code Execution (923723) - IT



MS07-006
[5674] - Microsoft Windows Shell Privilege Escalation (928255)


MS07-007
[5676] - Microsoft Windows Image Acquisition Service Privilege Escalation (927802)


MS07-008
[5677] - Microsoft HTML Help ActiveX Remote Code Execution (928843)


MS07-009

[5680] - Microsoft Data Access Components (MDAC) Remote Code Execution (927779)


MS07-010
[5703] - Microsoft Malware Protection Engine Remote Code (932135) - Forefront Exchange
[5704] - Microsoft Malware Protection Engine Remote Code (932135) - Forefront Sharepoint
[5705] - Microsoft Malware Protection Engine Remote Code (932135) - Antigen Pending
[5706] - Microsoft Malware Protection Engine Remote Code (932135) - Windows Defender
[5707] - Microsoft Malware Protection Engine Remote Code (932135) - OneCare Pending


MS07-011
[5681] - Microsoft OLE Dialog Remote Code Execution (926436)


MS07-012
[5682] - Microsoft MFC Remote Code Execution (924667) - Windows
[5683] - Microsoft MFC Remote Code Execution (924667) - VS .NET 2002
[5684] - Microsoft MFC Remote Code Execution (924667) - VS .NET 2003


MS07-013
[5685] - Microsoft RichEdit Remote Code Execution (918118) - Windows
[5686] - Microsoft RichEdit Remote Code Execution (918118) - Office 2000
[5687] - Microsoft RichEdit Remote Code Execution (918118) - Office XP
[5688] - Microsoft RichEdit Remote Code Execution (918118) - Office 2003
[5689] - Microsoft RichEdit Remote Code Execution (918118) - Office 2004 Mac


MS07-014
[5693] - Microsoft Word Remote Code Execution (929434) - Word 2000
[5694] - Microsoft Word Remote Code Execution (929434) - Word 2002
[5695] - Microsoft Word Remote Code Execution (929434) - Word 2003
[5696] - Microsoft Word Remote Code Execution (929434) - Word Viewer 2003
[5697] - Microsoft Word Remote Code Execution (929434) - Word 2004 Mac


MS07-015
[5698] - Microsoft RichEdit Remote Code Execution (918118) - Learning Essentials
[5699] - Microsoft Office Remote Code Execution (932554) - Office 2000 5700 - Microsoft Office Remote Code Execution (932554) - Office XP
[5701] - Microsoft Office Remote Code Execution (932554) - Office 2003
[5702] - Microsoft Office Remote Code Execution (932554) - Office 2004 Mac


MS07-016
[5690] - Microsoft Internet Explorer Cumulative Security Update (928090)