{"id":6377,"date":"2018-08-02T08:11:33","date_gmt":"2018-08-02T06:11:33","guid":{"rendered":"http:\/\/159.69.82.204\/win\/?p=6377"},"modified":"2022-01-24T17:38:44","modified_gmt":"2022-01-24T16:38:44","slug":"microsoft-security-update-releases-notifications-08-01-2018","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2018\/08\/02\/microsoft-security-update-releases-notifications-08-01-2018\/","title":{"rendered":"Microsoft Security Update Releases\/Notifications (08\/01\/2018)"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline\" src=\"https:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2015\/01\/Schutz.jpg\" width=\"40\" align=\"left\" height=\"47\">[<a href=\"https:\/\/www.borncity.com\/blog\/2018\/08\/02\/microsoft-security-update-releases-notifications-2-8-2018\/\" target=\"_blank\" rel=\"noopener\">German<\/a>]Effective August 1, 2018, Microsoft has pulished <em>Microsoft Security Update Releases<\/em> for CVE-2018-8172 and CVE-2018-8202 and <em>Microsoft Security Advisory Notification<\/em> (with notes on Spectre patches). Here are the details.<\/p>\n<p><!--more--><\/p>\n<p>********************************************************************<br \/>Title: Microsoft Security Update Releases<br \/>Issued: August 1, 2018<br \/>********************************************************************<\/p>\n<p>Summary<br \/>=======<\/p>\n<p>The following CVEs have undergone a major revision increment:<\/p>\n<p>* CVE-2018-8172<br \/>* CVE-2018-8202<\/p>\n<p>Revision Information:<br \/>=====================<\/p>\n<p>&#8211; CVE-2018-8172 | Visual Studio Remote Code Execution<br \/>&nbsp;&nbsp; Vulnerability<br \/>&#8211; <a href=\"https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\" target=\"_blank\" rel=\"noopener\">https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance<\/a><br \/>&#8211; Reason for Revision: Revised the Affected Products table to <br \/>&nbsp;&nbsp; include Expression Blend 3 Service Pack 1 and Expression Blend<br \/>&nbsp;&nbsp; 2 Service Pack 2 because they are also affected by this <br \/>&nbsp;&nbsp; vulnerability. Microsoft recommends that customers running <br \/>&nbsp;&nbsp; either of these versions of Expression Blend install the <br \/>&nbsp;&nbsp; update to be fully protected from this vulnerability.<br \/>&#8211; Originally posted: July 10, 2018<br \/>&#8211; Updated: July 31, 2018<br \/>&#8211; Aggregate CVE Severity Rating: Important<br \/>&#8211; Version: 2.0<\/p>\n<p>&#8211; CVE-2018-8202 | .NET Framework Elevation of Privilege <br \/>&nbsp;&nbsp; Vulnerability<br \/>&#8211; <a href=\"https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\">https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance<\/a><br \/>&#8211; Reason for Revision: Microsoft is announcing the release of <br \/>&nbsp;&nbsp; updates, available via the Microsoft Update catalog, to resolve <br \/>&nbsp;&nbsp; known issues some customers experienced after installing the <br \/>&nbsp;&nbsp; July 2018 security updates for .NET Framework. Microsoft <br \/>&nbsp;&nbsp; recommends that customers who experienced application errors as <br \/>&nbsp;&nbsp; described in KB4345913 <br \/>&nbsp;&nbsp; (https:\/\/support.microsoft.com\/en-us\/help\/4345913) install the <br \/>&nbsp;&nbsp; applicable Standalone update for your system. Customers running<br \/>&nbsp;&nbsp; Window 10 Version 1607 or Windows Server 2016 should install <br \/>&nbsp;&nbsp; Cumulative update 4346877 to resolve application errors. See <br \/>&nbsp;&nbsp; the Affected Products table for links to download and install <br \/>&nbsp;&nbsp; the updates.<br \/>&#8211; Originally posted: July 10, 2018<br \/>&#8211; Updated: July 31, 2018<br \/>&#8211; Aggregate CVE Severity Rating: Important<br \/>&#8211; Version: 4.0<\/p>\n<p>I reported on the last point in the article <a href=\"https:\/\/borncity.com\/win\/2018\/07\/31\/net-framework-updates-july-30-2018-with-fixes\/\" target=\"_blank\" rel=\"noopener\">NET-Framework Updates July 30, 2018 with Fixes<\/a>. The second document concerns notes for the Spectre patches:<\/p>\n<p>********************************************************************<br \/>Title: Microsoft Security Advisory Notification<br \/>Issued: August 1, 2018<br \/>********************************************************************<\/p>\n<p>Security Advisories Released or Updated on August 1, 2018<br \/>===================================================================<\/p>\n<p>* Microsoft Security Advisory ADV180002<\/p>\n<p>&#8211; Title: Guidance to mitigate speculative execution side-channel<br \/>&nbsp;&nbsp; vulnerabilities<br \/>&#8211; <a href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-us\/vulnerability\/ADV180002\/ADV180002\" target=\"_blank\" rel=\"noopener\">https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/advisory\/ADV180002<\/a><br \/>&#8211; Reason for Revision: Added FAQ #18 to address a high CPU <br \/>&nbsp;&nbsp; utilization issue some customers with an AMD-based device are <br \/>&nbsp;&nbsp; experiencing after installing the June or July Windows security <br \/>&nbsp;&nbsp; updates or after installing a BIOS update.&nbsp; <br \/>&#8211; Originally posted: January 3, 2018<br \/>&#8211; Updated: August 1, 2018<br \/>&#8211; Version: 23.0<\/p>\n","protected":false},"excerpt":{"rendered":"<p>[German]Effective August 1, 2018, Microsoft has pulished Microsoft Security Update Releases for CVE-2018-8172 and CVE-2018-8202 and Microsoft Security Advisory Notification (with notes on Spectre patches). Here are the details.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[580],"tags":[65,69,195],"class_list":["post-6377","post","type-post","status-publish","format-standard","hentry","category-security","tag-microsoft","tag-security","tag-update"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/6377","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=6377"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/6377\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=6377"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=6377"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=6377"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}