Next Tuesday, March 8, Microsoft will release three security bulletins in their monthly patch cycle. One of the bulletins is rated as critical while the other two are rated important. This is a small update as compared to February in which there were a dozen updates.
The critical update affects Windows XP, Vista and Windows 7 while Windows Sever 2003 and Server 2008 are not affected. One of the important updates affects all Windows operating systems and we expect it to be for the MHTML Information Disclosure issue, which was left un-patched in last month’s patch cycle (2501696). The other important update patches the little known Office Groove 2007 software.
Overall we expect this month’s patch Tuesday to be easy for deployment for organizations and individuals.
-Amol Sarwate, Manager, Vulnerability Research Lab, for Qualys