Thursday, October 16, 2008

Malicious Software Removal Tool 2.3

Microsoft Malicious Software Removal Tool 2.3
โปรแกรม Microsoft Windows Malicious Software Removal Tool เป็นเครื่องมือสำหรับใช้ตรวจสอบและลบไวรัสและมัลแวร์ต่างๆ บนระบบ Windows XP, Windows 2000 และ Windows Server 2003 เช่น Blaster, Sasser และ Mydoom โดยหลังจากโปรแกรมทำการตรวจสอบแล้วเสร็จ จะสร้างรายงานผลการทำงานในไฟล์ชื่อ mrt.log ซึ่งจะอยู่ในโฟลเดอร์ %WINDIR%\debug สำหรับรายละเอียดเกี่ยวกับตัวโปรแกรมและตำแหน่งการดาวน์โหลดจะอยู่ในหัวข้อ "รายละเอียดโปรแกรม Microsoft Windows Malicious Software Removal Tool" ด้านล่าง หลังจากทำการดาวน์โหลดเสร็จแล้วก็สามารถทำการรันได้เลย โดยที่ไม่ต้องทำการติดตั้งแต่อย่างใด โดยมีโหมดการสแกนให้เลือก 3 แบบ ด้วยกันคือ Quick Scan ซึ่งจะทำการสแกนเฉพาะส่วนของระบบที่พบไวรัสบ่อย Full Scan ทำการสแกนทั้งระบบซึ่งจะใช้เวลาค่อนข้างนาน และ Customized Scan ซึ่งผู้ใช้จะสามารถเลือกโฟลเดอร์ที่จะทำการสแกนได้

รายละเอียดโปรแกรม Microsoft Windows Malicious Software Removal Tool
ชื่อไฟล์: windows-kb890830-v2.3.exe
เวอร์ชัน: 2.3
หมายเลข Knowledge Base (KB): KB890830
วันที่ออก: 10/14/2008
ขนาดของไฟล์: 7.1 MB
เวลาในการดาวน์โหลดโดยประมาณ: 18 นาที (Dial-up 56K)
ภาษา: อังกฤษ และภาษาอื่นๆ อีก 23 ภาษา
ดาวน์โหลดลิงค์:
เวอร์ชัน x86: http://www.microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&displaylang=en (คลิกที่นี่ เพื่อดาวน์โหลด Malicious software removal tool v2.3 เวอร์ชัน x32)
เวอร์ชัน x64: http://www.microsoft.com/downloads/details.aspx?familyid=585D2BDE-367F-495E-94E7-6349F4EFFC74&displaylang=en (คลิกที่นี่ เพื่อดาวน์โหลด Malicious software removal tool v2.3 เวอร์ชัน x64)

ความต้องการระบบ:
Microsoft Malicious Software Removal Tool 2.4 สามารถใช้งานได้บนระบบปฏิบัติการ Windows 2000 Windows Server 2003 Windows Vista และ Windows XP

หมายเหตุ:
โปรแกรม Microsoft Windows Malicious Software Removal Tool นั้น ไม่ได้ถูกพัฒนาให้แทนที่โปรแกรมป้องกันไวรัส ดังนั้นเพื่อความปลอดภัยท่านควรทำการติดตั้งโปรแกรมป้องกันไวรัสบนเครื่องคอมพิวเตอร์ โดยอ่านรายละเอียดเกี่ยวกับโปรแกรมป้องกันไวรัสแบบฟรีเวอร์ชันได้ที่ Free AntiVirus Download

ลิงค์ที่เกี่ยวข้อง
Malicious Software Removal Tool
รายชื่อไวรัสและมัลแวร์

Add to Technorati Favorites Add to Google Add to delicious.com Add to digg.com
Keywords: Malicious software removal tool KB890830

© 2008 Thai Windows Administrator, All Rights Reserved.

Microsoft Security Bulletin Major Revisions‏

ไมโครซอฟท์ซีเคียวริตี้อัพเดท Minor Revisions
เมื่อวัน ที่ 15 ตุลาคม 2551 ที่ผ่านมา ไมโครซอฟท์ได้ทำการปรับปรุงซีเคียวริตี้อัพเดทจำนวน 1 ตัว คือ ซีเคียวริตี้อัพเดทหมายเลข MS08-062 เป็น Revision 2.0 โดยมีรายละเอียดดังนี้

MS08-062: Vulnerability in Windows Internet Printing Service Could Allow Remote Code Execution (953155)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-062.mspx
หตุผลในการปรับปรุง:
- ลบระดับความอันตรายสำหรับระบบ Windows Server 2008 สำหรับ Itanium-based
- เพิ่ม Frequently Asked Questions (FAQ) เพื่ออธิบายเหตุผลเกี่ยวกับระดับความอันตรายสำหรับระบบ Windows Server 2008 สำหรับ Itanium-based
- แจ้งให้ทราบว่าสามารถมำการอัพเดทระบบ Windows Server 2008 สำหรับ Itanium-based ได้ผ่านทาง Microsoft Download Center
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 14 ตุลาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: สูง (Important)
เวอร์ชัน: 2.0
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Windows 2000 Service Pack 4
- Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition และ Windows 2003 Server x64 Edition Service Pack 2
- Windows Server 2003 ติดตั้ง SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 with SP2 สำหรับ Itanium based Systems
- Windows Vista และ Windows Vista Service Pack 1
- Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 สำหรับ 32-bit Systems(Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ x64-based Systems (Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ Itanium-based Systems
ผลกระทบ: Remote Code Execution

ลิงค์ที่เกี่ยวข้อง
• Microsoft Security Bulletin Summary for October 2008 (http://www.microsoft.com/technet/security/bulletin/ms08-OCT.mspx)
• Microsoft Technet Security (http://www.microsoft.com/technet/security/default.mspx)
• Microsoft Security Center (http://www.microsoft.com/security/default.mspx)

Add to Technorati Favorites  Add to Google  Add to delicious.com  Add to digg.com
Keywords: MS08-062 KB953155

© 2008 Thai Windows Administrator, All Rights Reserved.

Microsoft Security Bulletin Minor Revisions

ไมโครซอฟท์ซีเคียวริตี้อัพเดท Minor Revisions
เมื่อ วันที่ 15 ตุลาคม 2551 ที่ผ่านมา ไมโครซอฟท์ได้ทำการปรับปรุงซีเคียวริตี้อัพเดทจำนวน 8 ตัว คือ ซีเคียวริตี้อัพเดทหมายเลข MS08-041 เป็น Revision 2.1, MS08-057, MS08-058, MS08-059, MS08-060, MS08-063, MS08-064 และ MS08-065 เป็น Revision 1.1 โดยมีรายละเอียดดังนี้

• MS08-041 - Critical
• MS08-057 - Critical
• MS08-058 - Critical
• MS08-059 - Critical
• MS08-060 - Critical
• MS08-063 - Important
• MS08-064 - Important
• MS08-065 - Important

สำหรับการอัพเดทแต่ละตัวมีรายละเอียดดังนี้

MS08-041: Vulnerability in the ActiveX Control for the Snapshot Viewer for Microsoft Access Could Allow Remote Code Execution (955617)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx
เหตุผลในการปรับปรุง: เพิ่มการอ้างอิงกับของ Viewer for Microsoft Access กับ Microsoft Knowledge Base Article (KB957198) และอธิบายให้ชัดเจนว่าถ้าทำการติดตั้ง Microsoft Office 2000 Service Pack 3, Office XP Service Pack 2, หรือ Office 2003 Service Pack 2 หรือ Office 2003 Service Pack 3 ไม่จำเป็นต้องติดตั้งอัพเดทใหม่
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 12 สิงหาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: ระดับวิกฤติ (Critical)
เวอร์ชัน: 2.1
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ
- Microsoft Office Access 2000 Service Pack 3
- Microsoft Office Access 2002 Service Pack 3
- Microsoft Office Access 2003 Service Pack 2 และ Microsoft Office Access 2003 Service Pack 3
- Snapshot Viewer สำหรับ Microsoft Access

MS08-057: Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (956416)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-057.mspx
เหตุผลในการปรับปรุง: เปลี่ยนการ detection และ deployment ของ Systems Management Server เป็น "yes" สำหรับ Microsoft Office Excel Viewer 2003 ในส่วน Detection and Deployment Tools
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 14 ตุลาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: ระดับวิกฤติ (Critical)
เวอร์ชัน: 1.1
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Office Excel 2000 Service Pack 3
- Microsoft Office Excel 2002 Service Pack 3
- Microsoft Office Excel 2003 Service Pack 2
- Microsoft Office Excel 2003 Service Pack 3
- Microsoft Office Excel 2007
- Microsoft Office Excel 2007 Service Pack 1
- Microsoft Office 2004 สำหรับ Mac
- Microsoft Office 2008 สำหรับ Mac
- Open XML File Format Converter สำหรับ Mac
- Microsoft Office Excel Viewer 2003
- Microsoft Office Excel Viewer 2003 Service Pack 3
- Microsoft Office Excel Viewer
- Microsoft Office Compatibility Pack สำหรับ Word, Excel และ PowerPoint 2007 File Formats
- Microsoft Office Compatibility Pack สำหรับ Word, Excel และ PowerPoint 2007 File Formats Service Pack 1
- Microsoft Office SharePoint Server 2007
- Microsoft Office SharePoint Server 2007 Service Pack 1
- Microsoft Office SharePoint Server 2007 x64 Edition
- Microsoft Office SharePoint Server 2007 x64 Edition Service Pack 1

MS08-058: Cumulative Security Update for Internet Explorer (956390)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-058.mspx
เหตุผลในการปรับปรุง: แก้ไขค่า registry key สำหรับ Windows 2003 และ แก้ไขลิงค์ของไฟล์รายละเอียด
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 14 ตุลาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: ระดับวิกฤติ (Critical)
เวอร์ชัน: 1.1
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Internet Explorer 5.01 Service Pack 4 บน Windows 2000 Service Pack 4
- Internet Explorer 6 Service Pack 1 เมื่อติดตั้งบน Windows 2000 Service Pack 4
- Internet Explorer 6 สำหรับ Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Internet Explorer 6 สำหรับ Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Internet Explorer 6 สำหรับ Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Internet Explorer 6 สำหรับ Windows Server 2003 x64 Edition และ Windows Server 2003 x64 Edition Service Pack 2
- Internet Explorer 6 สำหรับ Windows Server 2003 ติดตั้ง SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 ติดตั้ง SP2 สำหรับ Itanium-based Systems
- Internet Explorer 7 สำหรับ Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Internet Explorer 7 สำหรับ Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 x64 Edition และ Windows Server 2003 x64 Edition Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 ติดตั้ง SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 ติดตั้ง SP2 สำหรับ Itanium-based Systems
- Internet Explorer 7 ใน Windows Vista และ Windows Vista Service Pack 1
- Internet Explorer 7 ใน Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Internet Explorer 7 ใน Windows Server 2008 สำหรับ 32-bit Systems (Windows Server 2008 Server Core installation ไม่ได้รับผลกระทบ)
- Internet Explorer 7 ใน Windows Server 2008 สำหรับ x64-based Systems (Windows Server 2008 Server Core installation ไม่ได้รับผลกระทบ)
- Internet Explorer 7 ใน Windows Server 2008 สำหรับ Itanium-based Systems

MS08-059: Vulnerability in Host Integration Server RPC Service Could Allow Remote Code Execution (956695)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-059.mspx
เหตุผลในการปรับปรุง: เพิ่มการอ้างอิงกับ Microsoft Knowledge Base Article (KB956695) ในส่วน Executive Summary และแก้ไขชื่อเรื่อง HIS Command Execution Vulnerability (CVE- 2008-3466) ในส่วน Acknowledgments
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 14 ตุลาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: ระดับวิกฤติ (Critical)
เวอร์ชัน: 1.1
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Host Integration Server 2000 Service Pack 2 (Server)
- Microsoft Host Integration Server 2000 Administrator Client
- Microsoft Host Integration Server 2004 (Server)
- Microsoft Host Integration Server 2004 Service Pack 1 (Server)
- Microsoft Host Integration Server 2004 (Client)
- Microsoft Host Integration Server 2004 Service Pack 1 (Client)
- Microsoft Host Integration Server 2006 for 32-bit Systems
- Microsoft Host Integration Server 2006 for 64-bit Systems

MS08-060: Vulnerability in Active Directory Could Allow Remote Code Execution (957280)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-060.mspx
เหตุผลในการปรับปรุง: อัพเดทตาราง Non-Affected Software
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 14 ตุลาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: ระดับวิกฤติ (Critical)
เวอร์ชัน: 1.1
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Active Directory บน Windows 2000 Server Service Pack 4

MS08-063: Vulnerability in SMB Could Allow Remote Code Execution (957095)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-063.mspx
เหตุผลในการปรับปรุง: อัพเดทรายละเอียดให้ชัดเจนว่าการติดตั้งอัพเดทบน Windows Vista และ Windows 2008 ไม่จำเป็นต้องทำการรีสตาร์ท และแก้ไขค่า registry key สำหรับ Windows XP
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 14 ตุลาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: ระดับสูง (Important)
เวอร์ชัน: 1.1
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Windows 2000 Service Pack 4
- Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition และ Windows 2003 Server x64 Edition Service Pack 2
- Windows Server 2003 with SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 ติดตั้ง SP2 สำหรับ Itanium based Systems
- Windows Vista และ Windows Vista Service Pack 1
- Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 สำหรับ 32-bit Systems (Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ x64-based Systems (Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ Itanium-based Systems

MS08-064: Vulnerability in Virtual Address Descriptor Manipulation Could Allow Elevation of Privilege (956841)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-064.mspx
เหตุผลในการปรับปรุง: แก้ไขลิงค์การอ้างอิง MSDN article ในส่วน FAQ สำหรับ Virtual Address Descriptor Elevation of Privilege Vulnerability - CVE-2008-4036
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 14 ตุลาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: ระดับสูง (Important)
เวอร์ชัน: 1.1
ผลกระทบ: Elevation of Privilege
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition และ Windows 2003 Server x64 Edition Service Pack 2
- Windows Server 2003 with SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 with SP2 สำหรับ Itanium based Systems
- Windows Vista และ Windows Vista Service Pack 1
- Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 สำหรับ 32-bit Systems(Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ x64-based Systems(Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ Itanium-based Systems

MS08-065: Vulnerability in Message Queuing Could Allow Remote Code Execution (951071)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-065.mspx
เหตุผลในการปรับปรุง: เพิ่มลิงค์อัพเดทหมายเลข MS07-065 (ซึ่งถูกแทนที่ด้วยอัพเดทนี้) ในตาราง Affected Software
การอัพเดทตัวนี้จะแทนการอัพเดทตัวเดิมที่ออกเมื่อ: 14 ตุลาคม 2551
วันที่ออกอัพเดท: 15 ตุลาคม 2551
ระดับความร้ายแรง: ระดับสูง (Important)
เวอร์ชัน: 1.1
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Windows 2000 Service Pack 4

ที่มา/แหล่งอ้างอิง/รายละเอียดเพิ่มเติม
• สามารถอ่านรายละเอียดเพิ่มเติมได้ที่เว็บไซต์ Microsoft Technet Security เว็บไซต์ (http://www.microsoft.com/technet/security/default.mspx)

ลิงค์ที่เกี่ยวข้อง
• Microsoft Security Bulletin Summary for October 2008 (http://www.microsoft.com/technet/security/bulletin/ms08-OCT.mspx)
• Microsoft Technet Security (http://www.microsoft.com/technet/security/default.mspx)
• Microsoft Security Center (http://www.microsoft.com/security/default.mspx)

Add to Technorati Favorites  Add to Google  Add to delicious.com  Add to digg.com
Keywords: MS08-041 MS08-057 MS08-058 MS08-059 MS08-060 MS08-063 MS08-064 MS08-065

© 2008 Thai Windows Administrator, All Rights Reserved.

Wednesday, October 15, 2008

Mozilla เปิดให้ดาวน์โหลด Firefox 3.1 Beta 1

Mozilla เปิดให้ดาวน์โหลด Firefox 3.1 Beta 1
มีความเคลื่อนไหวของ Mozilla Firefox เวอร์ชัน 3.1 โดยทาง Mozilla ได้ออกเวอร์ชัน Beta 1 ให้นักพัฒนาและผู้สนใจทำการดาวน์โหลดไปทดลองใช้งาน โดยดาวน์โหลดได้จากเว็บไซต์ ดาวน์โหลด Firefox 3.1 Beta 1 for Windows

Firefox 3.1 Beta 1 นั้น จะมีฟีเจอร์ใหม่ๆ หลายอย่างๆ ที่ช่วยให้การท่องอินเทอร์ทำได้ง่ายขึ้น เร็วขึ้น ดีขึ้น และปลอดภัยมากขึ้น โดยฟีเจอร์ใหม่ที่จะมีใน Firefox เวอร์ชัน 3.1 Beta 1 มีดังนี้

- Web standards improvements in the Gecko layout engine.
- Added support for CSS 2.1 and CSS 3 properties.
- A new tab-switching shortcut that shows previews of the tab you’re switching to.
- Improved control over the Smart Location Bar using special characters to restrict your search.
- Support for new web technologies such as the video and audio elements, the W3C Geolocation API, JavaScript query selectors, web worker threads, SVG transforms and offline applications.

การดาวน์โหลด
Mozilla Firefox 3.1 Beta 1 for Windows
Mozilla Firefox 3.1 Beta 1 for Linux
Mozilla Firefox 3.1 Beta 1 for MAC OS

ลิงค์ที่เกี่ยวข้อง
Mozilla Firefox 3.1 Beta 1 Release Notes

© 2008 Thai Windows Administrator, All Rights Reserved.

Security update summary for October 2008

ไมโครซอฟต์ซีเคียวริตี้อัพเดทของเดือนตุลาคม 2551
เมื่อวันที่ 14 ตุลาคม 2551 ที่ผ่านมา ไมโครซอฟท์ได้ออก "อัพเดทความปลอดภัยของเดือนตุลาคม (Microsoft Security Update for October 2008)" จำนวน 11 ตัว โดยอัพเดทที่มีความร้ายแรงระดับวิกฤติ (Critical) มีจำนวน 4 ตัวและ อัพเดทที่มีความร้ายแรงระดับสูง (Important) มีจำนวน 6 ตัว (เป็นอัพเดทความปลอดภัยของ Windows ทั้งหมด) และอัพเดทที่มีความร้ายแรงระดับกลาง (Moderate) จำนวน 1 ตัว โดยรายละเอียดการอัพเดท และรายชื่อโปรแกรมต่างๆ ที่ได้รับผลกระทบ มีดังนี้

การอัพเดทที่มีความร้ายแรงระดับวิกฤติ (Critical)
การอัพเดทที่มีความร้ายแรงระดับวิกฤติ จำนวน 4 ตัว ได้แก่

• MS08-060 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Active Directory Bulletin
• MS08-058 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Internet Explorer Bulletin
• MS08-059 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Internet Explorer Bulletin
• MS08-057 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Microsoft Office

Microsoft Security Bulletin 1: AD Bulletin
MS08-060: Vulnerability in Active Directory Could Allow Remote Code Execution (957280)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-060.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Active Directory บน Windows 2000 Server Service Pack 4
ผลกระทบ: Remote Code Execution

Microsoft Security Bulletin 2: IE Bulletin
MS08-058: Cumulative Security Update for Internet Explorer (956390)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-058.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Internet Explorer 5.01 Service Pack 4 บน Windows 2000 Service Pack 4
- Internet Explorer 6 Service Pack 1 เมื่อติดตั้งบน Windows 2000 Service Pack 4
- Internet Explorer 6 สำหรับ Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Internet Explorer 6 สำหรับ Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Internet Explorer 6 สำหรับ Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Internet Explorer 6 สำหรับ Windows Server 2003 x64 Edition และ Windows Server 2003 x64 Edition Service Pack 2
- Internet Explorer 6 สำหรับ Windows Server 2003 ติดตั้ง SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 ติดตั้ง SP2 สำหรับ Itanium-based Systems
- Internet Explorer 7 สำหรับ Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Internet Explorer 7 สำหรับ Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 x64 Edition และ Windows Server 2003 x64 Edition Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 ติดตั้ง SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 ติดตั้ง SP2 สำหรับ Itanium-based Systems
- Internet Explorer 7 ใน Windows Vista และ Windows Vista Service Pack 1
- Internet Explorer 7 ใน Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Internet Explorer 7 ใน Windows Server 2008 สำหรับ 32-bit Systems (Windows Server 2008 Server Core installation ไม่ได้รับผลกระทบ)
- Internet Explorer 7 ใน Windows Server 2008 สำหรับ x64-based Systems (Windows Server 2008 Server Core installation ไม่ได้รับผลกระทบ)
- Internet Explorer 7 ใน Windows Server 2008 สำหรับ Itanium-based Systems
ผลกระทบ: Remote Code Execution

Microsoft Security Bulletin 3: HIS Bulletin
MS08-059: Vulnerability in Host Integration Server RPC Service Could Allow Remote Code Execution (956695)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-059.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Host Integration Server 2000 Service Pack 2 (Server)
- Microsoft Host Integration Server 2000 Administrator Client
- Microsoft Host Integration Server 2004 (Server)
- Microsoft Host Integration Server 2004 Service Pack 1 (Server)
- Microsoft Host Integration Server 2004 (Client)
- Microsoft Host Integration Server 2004 Service Pack 1 (Client)
- Microsoft Host Integration Server 2006 for 32-bit Systems
- Microsoft Host Integration Server 2006 for 64-bit Systems
ผลกระทบ: Remote Code Execution

Microsoft Security Bulletin 4: Excel Bulletin
MS08-057: Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (956416)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-057.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Office Excel 2000 Service Pack 3
- Microsoft Office Excel 2002 Service Pack 3
- Microsoft Office Excel 2003 Service Pack 2
- Microsoft Office Excel 2003 Service Pack 3
- Microsoft Office Excel 2007
- Microsoft Office Excel 2007 Service Pack 1
- Microsoft Office 2004 สำหรับ Mac
- Microsoft Office 2008 สำหรับ Mac
- Open XML File Format Converter สำหรับ Mac
- Microsoft Office Excel Viewer 2003
- Microsoft Office Excel Viewer 2003 Service Pack 3
- Microsoft Office Excel Viewer
- Microsoft Office Compatibility Pack สำหรับ Word, Excel และ PowerPoint 2007 File Formats
- Microsoft Office Compatibility Pack สำหรับ Word, Excel และ PowerPoint 2007 File Formats Service Pack 1
- Microsoft Office SharePoint Server 2007
- Microsoft Office SharePoint Server 2007 Service Pack 1
- Microsoft Office SharePoint Server 2007 x64 Edition
- Microsoft Office SharePoint Server 2007 x64 Edition Service Pack 1
ผลกระทบ: Remote Code Execution

การอัพเดทที่มีความร้ายแรงระดับสูง (Important)
การอัพเดทที่มีความร้ายแรงระดับสูง จำนวน 6 ตัว ได้แก่

• MS08-066 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Windows
• MS08-061 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Windows
• MS08-062 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Windows
• MS08-063 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Windows
• MS08-064 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Windows
• MS08-065 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Windows

Microsoft Security Bulletin 5: Windows 1 Bulletin
MS08-066: Vulnerability in the Microsoft Ancillary Function Driver Could Allow Elevation of Privilege (956803)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-066.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition และ Windows 2003 Server x64 Edition Service Pack 2
- Windows Server 2003 with SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 with SP2 สำหรับ Itanium based Systems
ผลกระทบ: Elevation of Privilege

Microsoft Security Bulletin 6: Windows 2 Bulletin
MS08-061: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (954211)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-061.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Windows 2000 Service Pack 4
- Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition และ Windows 2003 Server x64 Edition Service Pack 2
- Windows Server 2003 with SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 ติดตั้ง SP2 สำหรับ Itanium based Systems
- Windows Vista และ Windows Vista Service Pack 1
- Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 for 32-bit Systems (Windows Server 2008 Server Core installation affected)
- Windows Server 2008 for x64-based Systems (Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ Itanium-based Systems
ผลกระทบ: Elevation of Privilege

Microsoft Security Bulletin 7: Windows 3 Bulletin
MS08-062: Vulnerability in Windows Internet Printing Service Could Allow Remote Code Execution (953155)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-062.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Windows 2000 Service Pack 4
- Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition และ Windows 2003 Server x64 Edition Service Pack 2
- Windows Server 2003 ติดตั้ง SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 with SP2 สำหรับ Itanium based Systems
- Windows Vista และ Windows Vista Service Pack 1
- Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 สำหรับ 32-bit Systems(Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ x64-based Systems (Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ Itanium-based Systems
ผลกระทบ: Remote Code Execution

Microsoft Security Bulletin 8: Windows 4 Bulletin
MS08-063: Vulnerability in SMB Could Allow Remote Code Execution (957095)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-063.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Windows 2000 Service Pack 4
- Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition และ Windows 2003 Server x64 Edition Service Pack 2
- Windows Server 2003 with SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 ติดตั้ง SP2 สำหรับ Itanium based Systems
- Windows Vista และ Windows Vista Service Pack 1
- Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 สำหรับ 32-bit Systems (Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ x64-based Systems (Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ Itanium-based Systems
ผลกระทบ: Remote Code Execution

Microsoft Security Bulletin 9: Windows 5 Bulletin
MS08-064: Vulnerability in Virtual Address Descriptor Manipulation Could Allow Elevation of Privilege (956841)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-064.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition และ Windows 2003 Server x64 Edition Service Pack 2
- Windows Server 2003 with SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 with SP2 สำหรับ Itanium based Systems
- Windows Vista และ Windows Vista Service Pack 1
- Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 สำหรับ 32-bit Systems(Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ x64-based Systems(Windows Server 2008 Server Core installation affected)
- Windows Server 2008 สำหรับ Itanium-based Systems
ผลกระทบ: Elevation of Privilege

Microsoft Security Bulletin 10: Windows 6 Bulletin
MS08-065: Vulnerability in Message Queuing Could Allow Remote Code Execution (951071)

อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-065.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Windows 2000 Service Pack 4
ผลกระทบ: Remote Code Execution

การอัพเดทที่มีความร้ายแรงระดับกลาง (Moderate)
การอัพเดทที่มีความร้ายแรงระดับกลาง จำนวน 1 ตัว ได้แก่

• MS08-056 - เกี่ยวกับช่องโหว่ความปลอดภัยของ Microsoft Office

Microsoft Security Bulletin 11: Office Bulletin
MS08-056: Vulnerability in Microsoft Office Could Allow Information Disclosure (957699)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms08-056.mspx
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Office XP Service Pack 3
ผลกระทบ: Remote Code Execution

การออกอัพเดทและการอัพเดทระบบ
ไมโครซอฟท์วางแผนที่จะออกอัพเดทของเดือนตุลาคม 2551 ในวันที่ 14 ที่จะถึงนี้ โดยผู้ใช้ทั่วไปสามารถทำการอัพเดทจากเว็บไซต์ไมโครซอฟท์อัพเดท (http://windowsupdate.microsoft.com/) ผ่านทางอินเทอร์เน็ต หรือทำการอัพเดทผ่านทาง WSUS สำหรับผู้ใช้ในองค์กรที่มีการใช้ระบบ Windows Server Update Services (WSUS) ตั้งแต่วันที่ 14 ตุลาคม 2551 เป็นต้นไป

แหล่งอ้างอิง/รายละเอียดเพิ่มเติม/ลิงค์ที่เกี่ยวข้อง
• Microsoft Security Bulletin Summary for October 2008 (http://www.microsoft.com/technet/security/bulletin/ms08-OCT.mspx)
• Microsoft Technet Security (http://www.microsoft.com/technet/security/default.mspx)
• Microsoft Security Center (http://www.microsoft.com/security/default.mspx)

Add to Technorati Favorites  Add to Google  Add to delicious.com  Add to digg.com
Keywords: Security Update MS08-056 MS08-057 MS08-058 MS08-059 MS08-060 MS08-061 MS08-062 MS08-063 MS08-064 MS08-065 MS08-066

© 2008 Thai Windows Administrator, All Rights Reserved.