9 de agosto de 2017

MICROSOFT. Boletines de seguridad de agosto de 2017

La publicación mensual de actualizaciones de seguridad de Microsoft este mes consta de 48 vulnerabilidades, 25 clasificadas como críticas, 21 como importantes y 2 como moderadas, catalogadas de Importancia: 5 - Crítica
Recursos afectados:
  1. Adobe Flash Player
  2. Internet Explorer 10
  3. Internet Explorer 11
  4. Internet Explorer 9
  5. Microsoft Edge
  6. Microsoft Office 2010 Click-to-Run (C2R) for 32-bit editions
  7. Microsoft Office 2010 Click-to-Run (C2R) for 64-bit editions
  8. Microsoft Office 2013 Click-to-Run (C2R) for 32-bit editions
  9. Microsoft Office 2013 Click-to-Run (C2R) for 64-bit editions
  10. Microsoft Office 2016 Click-to-Run (C2R) for 32-bit editions
  11. Microsoft Office 2016 Click-to-Run (C2R) for 64-bit editions
  12. Microsoft Outlook 2007 Service Pack 3
  13. Microsoft Outlook 2010 Service Pack 2 (32-bit editions)
  14. Microsoft Outlook 2010 Service Pack 2 (64-bit editions)
  15. Microsoft Outlook 2013 RT Service Pack 1
  16. Microsoft Outlook 2013 Service Pack 1 (32-bit editions)
  17. Microsoft Outlook 2013 Service Pack 1 (64-bit editions)
  18. Microsoft Outlook 2016 (32-bit edition)
  19. Microsoft Outlook 2016 (64-bit edition)
  20. Microsoft SharePoint Server 2010 Service Pack 2
  21. Microsoft SQL Server 2012 for 32-bit Systems Service Pack 3
  22. Microsoft SQL Server 2012 for 32-bit Systems Service Pack 3 (CU)
  23. Microsoft SQL Server 2012 for x64-based Systems Service Pack 3
  24. Microsoft SQL Server 2012 for x64-based Systems Service Pack 3 (CU)
  25. Microsoft SQL Server 2014 Service Pack 1 for 32-bit Systems
  26. Microsoft SQL Server 2014 Service Pack 1 for 32-bit Systems (CU)
  27. Microsoft SQL Server 2014 Service Pack 1 for x64-based Systems
  28. Microsoft SQL Server 2014 Service Pack 1 for x64-based Systems (CU)
  29. Microsoft SQL Server 2014 Service Pack 2 for 32-bit Systems
  30. Microsoft SQL Server 2014 Service Pack 2 for 32-bit Systems (CU)
  31. Microsoft SQL Server 2014 Service Pack 2 for x64-based Systems
  32. Microsoft SQL Server 2014 Service Pack 2 for x64-based Systems (CU)
  33. Microsoft SQL Server 2016 for x64-based Systems
  34. Microsoft SQL Server 2016 for x64-based Systems (CU)
  35. Microsoft SQL Server 2016 for x64-based Systems Service Pack 1
  36. Microsoft SQL Server 2016 for x64-based Systems Service Pack 1 (CU)
  37. Windows 10 for 32-bit Systems
  38. Windows 10 for x64-based Systems
  39. Windows 10 Version 1511 for 32-bit Systems
  40. Windows 10 Version 1511 for x64-based Systems
  41. Windows 10 Version 1607 for 32-bit Systems
  42. Windows 10 Version 1607 for x64-based Systems
  43. Windows 10 Version 1703 for 32-bit Systems
  44. Windows 10 Version 1703 for x64-based Systems
  45. Windows 7 for 32-bit Systems Service Pack 1
  46. Windows 7 for x64-based Systems Service Pack 1
  47. Windows 8.1 for 32-bit systems
  48. Windows 8.1 for x64-based systems
  49. Windows RT 8.1
  50. Windows Server 2008 for 32-bit Systems Service Pack 2
  51. Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)
  52. Windows Server 2008 for Itanium-Based Systems Service Pack 2
  53. Windows Server 2008 for x64-based Systems Service Pack 2
  54. Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation)
  55. Windows Server 2008 R2 for Itanium-Based Systems Service Pack 1
  56. Windows Server 2008 R2 for x64-based Systems Service Pack 1
  57. Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
  58. Windows Server 2012
  59. Windows Server 2012 (Server Core installation)
  60. Windows Server 2012 R2
  61. Windows Server 2012 R2 (Server Core installation)
  62. Windows Server 2016
  63. Windows Server 2016  (Server Core installation)
Para conocer el detalle de las versiones afectadas de cada software, por favor, consulte los enlaces de la sección "Más información".
Detalle de las actualizaciones
En el boletín de actualizaciones de seguridad correspondiente al mes de agosto se han publicado vulnerabilidades de seguridad de los siguientes tipos:
  • Denegación de servicio: CVE-2017-0174; CVE-2017-8623; CVE-2017-8627; CVE-2017-8673
  • Elevación de privilegios: CVE-2017-8593; CVE-2017-8622 (Crítica); CVE-2017-8624; CVE-2017-8633
  • Divulgación de información: CVE-2017-8666; CVE-2017-8668
  • Ejecución remota de código: CVE-2017-0250 (Crítica); CVE-2017-0293 (Crítica); CVE-2017-8591 (Crítica); CVE-2017-8620 (Crítica); CVE-2017-8664; CVE-2017-8691
Recomendación
  • Instalar la actualización correspondiente. En el resumen de los boletines de seguridad de Microsoft, se informa de los distintos métodos de actualización dentro de cada boletín.
Más información
Fuente: Hispasec