<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Shavlik</title>
	
	<link>http://blog.shavlik.com</link>
	<description>Just another WordPress site</description>
	<lastBuildDate>Tue, 14 Feb 2012 22:39:13 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/Shavlik" /><feedburner:info uri="shavlik" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><image><link>http://blog.shavlik.com/</link><url>http://blog.shavlik.com/wp-content/uploads/2011/01/logo_shavlik-e1294331663313.jpg</url><title>Visit the Shavlik Blog</title></image><feedburner:emailServiceId>Shavlik</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><feedburner:feedFlare href="http://add.my.yahoo.com/rss?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://us.i1.yimg.com/us.yimg.com/i/us/my/addtomyyahoo4.gif">Subscribe with My Yahoo!</feedburner:feedFlare><feedburner:feedFlare href="http://www.newsgator.com/ngs/subscriber/subext.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://www.newsgator.com/images/ngsub1.gif">Subscribe with NewsGator</feedburner:feedFlare><feedburner:feedFlare href="http://feeds.my.aol.com/add.jsp?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://o.aolcdn.com/favorites.my.aol.com/webmaster/ffclient/webroot/locale/en-US/images/myAOLButtonSmall.gif">Subscribe with My AOL</feedburner:feedFlare><feedburner:feedFlare href="http://www.bloglines.com/sub/http://feeds.feedburner.com/Shavlik" src="http://www.bloglines.com/images/sub_modern11.gif">Subscribe with Bloglines</feedburner:feedFlare><feedburner:feedFlare href="http://www.netvibes.com/subscribe.php?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://www.netvibes.com/img/add2netvibes.gif">Subscribe with Netvibes</feedburner:feedFlare><feedburner:feedFlare href="http://fusion.google.com/add?feedurl=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://buttons.googlesyndication.com/fusion/add.gif">Subscribe with Google</feedburner:feedFlare><feedburner:feedFlare href="http://www.pageflakes.com/subscribe.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://www.pageflakes.com/ImageFile.ashx?instanceId=Static_4&amp;fileName=ATP_blu_91x17.gif">Subscribe with Pageflakes</feedburner:feedFlare><feedburner:feedFlare href="http://www.plusmo.com/add?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://plusmo.com/res/graphics/fbplusmo.gif">Subscribe with Plusmo</feedburner:feedFlare><feedburner:feedFlare href="http://www.thefreedictionary.com/_/hp/AddRSS.aspx?http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://img.tfd.com/hp/addToTheFreeDictionary.gif">Subscribe with The Free Dictionary</feedburner:feedFlare><feedburner:feedFlare href="http://www.bitty.com/manual/?contenttype=rssfeed&amp;contentvalue=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://www.bitty.com/img/bittychicklet_91x17.gif">Subscribe with Bitty Browser</feedburner:feedFlare><feedburner:feedFlare href="http://www.live.com/?add=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://tkfiles.storage.msn.com/x1piYkpqHC_35nIp1gLE68-wvzLZO8iXl_JMledmJQXP-XTBOLfmQv4zhj4MhcWEJh_GtoBIiAl1Mjh-ndp9k47If7hTaFno0mxW9_i3p_5qQw">Subscribe with Live.com</feedburner:feedFlare><feedburner:feedFlare href="http://mix.excite.eu/add?feedurl=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://image.excite.co.uk/mix/addtomix.gif">Subscribe with Excite MIX</feedburner:feedFlare><feedburner:feedFlare href="http://www.webwag.com/wwgthis.php?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://www.webwag.com/images/wwgthis.gif">Subscribe with Webwag</feedburner:feedFlare><feedburner:feedFlare href="http://www.podcastready.com/oneclick_bookmark.php?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://www.podcastready.com/images/podcastready_button.gif">Subscribe with Podcast Ready</feedburner:feedFlare><feedburner:feedFlare href="http://www.wikio.com/subscribe?url=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://www.wikio.com/shared/img/add2wikio.gif">Subscribe with Wikio</feedburner:feedFlare><feedburner:feedFlare href="http://www.dailyrotation.com/index.php?feed=http%3A%2F%2Ffeeds.feedburner.com%2FShavlik" src="http://www.dailyrotation.com/rss-dr2.gif">Subscribe with Daily Rotation</feedburner:feedFlare><feedburner:browserFriendly>This is an XML content feed of Shavlik’s blogs. It is intended to be viewed in a newsreader or syndicated to another site, subject to copyright and fair use.</feedburner:browserFriendly><item>
		<title>February 2012 Patch Tuesday Overview</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/DDv2EUSvJdg/</link>
		<comments>http://blog.shavlik.com/2012/02/14/february-2012-patch-tuesday-overview/#comments</comments>
		<pubDate>Tue, 14 Feb 2012 22:39:13 +0000</pubDate>
		<dc:creator>Jason Miller</dc:creator>
				<category><![CDATA[Patch Management]]></category>
		<category><![CDATA[Patch Patrol]]></category>
		<category><![CDATA[Adobe]]></category>
		<category><![CDATA[Patch]]></category>
		<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2614</guid>
		<description><![CDATA[<p>Microsoft has released nine new security bulletins for the <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-feb" target="_blank">February 2012 edition of Patch Tuesday</a>.  This Patch Tuesday is typically marked as a &#8216;heavy&#8217; release month and includes nine new security bulletins addressing 21 vulnerabilities.</p>
<p>There are two bulletins that administrators should look to patch immediately.  Both of these bulletins address vulnerabilties that have the potential for drive-by attack scenarios from websites.</p>
<p>First up is Microsoft security bulletin <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-010" target="_blank">MS12-010</a>.  This bulletin affects all supported Microsoft Internet Explorer browsers and addresses four vulnerabilities in the browser.  As is the case with most, if not all Internet Browsers, it is &#8230;]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released nine new security bulletins for the <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-feb" target="_blank">February 2012 edition of Patch Tuesday</a>.  This Patch Tuesday is typically marked as a &#8216;heavy&#8217; release month and includes nine new security bulletins addressing 21 vulnerabilities.</p>
<p>There are two bulletins that administrators should look to patch immediately.  Both of these bulletins address vulnerabilties that have the potential for drive-by attack scenarios from websites.</p>
<p>First up is Microsoft security bulletin <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-010" target="_blank">MS12-010</a>.  This bulletin affects all supported Microsoft Internet Explorer browsers and addresses four vulnerabilities in the browser.  As is the case with most, if not all Internet Browsers, it is extremely important to patch as soon as possible as browsers are one of the most attacked pieces of software.  The vulnerabilities addressed in this patch could allow an attacker to exploit the browser through malicious websites.</p>
<p>Similarly, <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-013" target="_blank">MS12-013</a> also has a possible drive-by attack vector.  This bulletin addresses one vulnerability in the C Run-Time Library.  If an attacker can entice a user to open a malicious media file, the attacker can gain full access to a system.  In this new media and social media age, media file attack vectors are just as important as browser attack vectors when it comes to patching security vulnerabilities.</p>
<p>Our old friend, the DLL preload vulnerability, is making a return after a one-month hiatus.  Two bulletins this month fix the DLL preload vulnerability in Microsoft applications.</p>
<p><a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-012" target="_blank">MS12-012</a> &#8211; Color Control Panel<br />
<a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-014" target="_blank">MS12-014</a> &#8211; Indeo Codec</p>
<p>Since releasing the Security Advisory for this issue in November 2010, Microsoft has patched different programs affected by this vulnerability 22 times.  It is safe to say we will continue to see the DLL preload vulnerability being addressed by Microsoft in the coming months.</p>
<p>On the non-Microsoft front, there is already one vendor joining Patch Tuesday.  Adobe released two new security bulletins today affecting two Adobe products.  Security bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb12-02.html" target="_blank">APSB12-02</a> affects Adobe Shockwave and fixes nine vulnerabilities.  Adobe Security bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb12-04.html" target="_blank">APSB12-04</a> affects Adobe RoboHelp for Word and fixes one vulnerability.</p>
<p>This has been quite a busy month with multiple non-Microsoft vendors releasing security updates for their software.  After a very quiet December and January, it appears the non-Microsoft vendors are getting back to a normal cadence for releasing security updates for their software application.  The following vendors have released security updates since January 2012 Patch Tuesday:</p>
<p>Opera<br />
Google Chrome (twice)<br />
Yahoo Messenger<br />
Mozilla Firefox (twice)<br />
Mozilla Thunderbird (twice)<br />
Mozilla SeaMonkey (twice)<br />
Real Player<br />
Skype</p>
<p>For those administrators who wait for a monthly maintenance window for their patching needs, this month is going to be quite a large month combining all of the Microsoft and non-Microsoft security bulletins released since the last Patch Tuesday.</p>
<p>I will be talking about these patches along with the latest non-Microsoft patches that have been recently released tomorrow, February 15th at 11:00am CT as part of our monthly Patch Tuesday webinar.  Click <a href="https://vmwareevents.webex.com/vmwareevents/onstage/g.php?t=a&amp;d=664550674" target="_blank">here</a> to register for the webinar.</p>
<p>- Jason Miller</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=DDv2EUSvJdg:YBduPgw0TgM:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=DDv2EUSvJdg:YBduPgw0TgM:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=DDv2EUSvJdg:YBduPgw0TgM:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=DDv2EUSvJdg:YBduPgw0TgM:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=DDv2EUSvJdg:YBduPgw0TgM:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=DDv2EUSvJdg:YBduPgw0TgM:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/DDv2EUSvJdg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2012/02/14/february-2012-patch-tuesday-overview/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2012/02/14/february-2012-patch-tuesday-overview/</feedburner:origLink></item>
		<item>
		<title>February 2012 Patch Tuesday Advanced Notification</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/j-Pl3gdDbWg/</link>
		<comments>http://blog.shavlik.com/2012/02/09/february-2012-patch-tuesday-advanced-notification/#comments</comments>
		<pubDate>Thu, 09 Feb 2012 23:55:42 +0000</pubDate>
		<dc:creator>Jason Miller</dc:creator>
				<category><![CDATA[Patch Management]]></category>
		<category><![CDATA[Patch]]></category>
		<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2607</guid>
		<description><![CDATA[<p>Microsoft has announced their <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-feb" target="_blank">February 2012 Advanced Notification</a> for the upcoming Patch Tuesday.  Microsoft is planning to release nine security bulletins fixing 21 vulnerabilities.</p>
<p>Security Bulletin Breakdown:</p>

4 bulletins are rated as Critical
5 bulletins are rated as Important
7 vulnerabilities could lead to Remote Code Execution
2 vulnerabilities could lead to Elevation of Privilege

<p>Affected Products:</p>

All supported Microsoft Operating systems
All supported Internet Explorer browsers
Visio Viewer 2010
SharePoint Server 2010
SharePoint Foundation 2010
Silverlight 4

<p>There has been no word of other vendors planning to release new security bulletins, but we are constantly monitoring to find any other vendors planning on joining Microsoft&#8217;s Patch Tuesday.</p>
<p>I will be talking &#8230;]]></description>
			<content:encoded><![CDATA[<p>Microsoft has announced their <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-feb" target="_blank">February 2012 Advanced Notification</a> for the upcoming Patch Tuesday.  Microsoft is planning to release nine security bulletins fixing 21 vulnerabilities.</p>
<p>Security Bulletin Breakdown:</p>
<ul>
<li>4 bulletins are rated as Critical</li>
<li>5 bulletins are rated as Important</li>
<li>7 vulnerabilities could lead to Remote Code Execution</li>
<li>2 vulnerabilities could lead to Elevation of Privilege</li>
</ul>
<p>Affected Products:</p>
<ul>
<li>All supported Microsoft Operating systems</li>
<li>All supported Internet Explorer browsers</li>
<li>Visio Viewer 2010</li>
<li>SharePoint Server 2010</li>
<li>SharePoint Foundation 2010</li>
<li>Silverlight 4</li>
</ul>
<p>There has been no word of other vendors planning to release new security bulletins, but we are constantly monitoring to find any other vendors planning on joining Microsoft&#8217;s Patch Tuesday.</p>
<p>I will be talking about these patches along with the latest non-Microsoft patches that have been recently released next Wednesday, February 15th at 11:00am CST in part of our monthly Patch Tuesday webinar.  Click <a title="February Patch Tuesday Webinar" href="ttps://vmwareevents.webex.com/vmwareevents/onstage/g.php?t=a&amp;d=664550674" target="_blank">here</a> to register for the webinar.</p>
<p>- Jason Miller</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=j-Pl3gdDbWg:D-77CENF7aA:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=j-Pl3gdDbWg:D-77CENF7aA:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=j-Pl3gdDbWg:D-77CENF7aA:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=j-Pl3gdDbWg:D-77CENF7aA:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=j-Pl3gdDbWg:D-77CENF7aA:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=j-Pl3gdDbWg:D-77CENF7aA:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/j-Pl3gdDbWg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2012/02/09/february-2012-patch-tuesday-advanced-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2012/02/09/february-2012-patch-tuesday-advanced-notification/</feedburner:origLink></item>
		<item>
		<title>PowerShell is an Expected Skill for IT Admins Today</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/Y0RbMsYKp68/</link>
		<comments>http://blog.shavlik.com/2012/02/08/powershell-is-an-expected-skill-for-it-admins-today/#comments</comments>
		<pubDate>Wed, 08 Feb 2012 15:18:56 +0000</pubDate>
		<dc:creator>Chris Goettl</dc:creator>
				<category><![CDATA[Corporate Blog]]></category>
		<category><![CDATA[Product Blog]]></category>
		<category><![CDATA[IT Management]]></category>
		<category><![CDATA[ITScripts]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2600</guid>
		<description><![CDATA[<p>I found an interesting <a href="http://redmondmag.com/articles/2012/02/01/powershell-skills-in-the-workplace.aspx" target="_blank">blog post</a> by industry veteran Don Jones for Redmond Magazine that I wanted to share.  It leads well into our recent ITScripts Catalog update.  Mr. Jones talks about a recent survey he performed on how much emphasis was placed on scripting (specifically with PowerShell) for different IT job titles.  Of the 600 respondents 80 percent require PowerShell in some, if not all, positions within IT.  None of the job titles were specific to PowerShell Scripter either, so it is an indication that this is one of many skills expected of IT Admins.</p>
<p>The survey also found &#8230;]]></description>
			<content:encoded><![CDATA[<p>I found an interesting <a href="http://redmondmag.com/articles/2012/02/01/powershell-skills-in-the-workplace.aspx" target="_blank">blog post</a> by industry veteran Don Jones for <em>Redmond Magazine</em> that I wanted to share.  It leads well into our recent ITScripts Catalog update.  Mr. Jones talks about a recent survey he performed on how much emphasis was placed on scripting (specifically with PowerShell) for different IT job titles.  Of the 600 respondents 80 percent require PowerShell in some, if not all, positions within IT.  None of the job titles were specific to PowerShell Scripter either, so it is an indication that this is one of many skills expected of IT Admins.</p>
<p>The survey also found that 90 percent of respondents believe there is value in automating repetitive tasks, and 92 percent felt it can provide a quick ROI if done properly.</p>
<p>VMware vCenter Protect Essentials customers all have access to the ITScripts feature which released in 8.0 and integrates with Microsoft PowerShell.  VMware vCenter Protect Essentials Plus customers have access to additional scripts and have the ability to import their own scripts into vCenter Protect.  If you want to talk about automating repetitive tasks you are really talking about how to take the script you have written to solve a problem for one machine and replicate the solution to all machines.  How do you do that?  GPO, login scripts, through PowerShell&#8217;s RM feature?  Does the script require some form of authentication to run?  How do you secure the credentials in a case like that?</p>
<p>With the ITScripts feature in vCenter Protect Essentials you take advantage of our machine discovery and management features as well as our credentials management.  If you can scan it with vCenter Protect Essentials you can run the script against the machine.  Most scripts run remotely so PowerShell is not required on every machine which would be a limitation if you are trying to run the script on every machine in your environment.</p>
<p>How about having confidence in the script you download from a scripting community?  Our scripts are run through our development and QA teams.  This will save time by not having to verify that the script will do what you expect and test to ensure it will work.  Just approve the script and go.</p>
<p>How about scripts that you need that you have not found yet?  Our scripting feature has only been in production since November so we haven&#8217;t seen much request traffic yet, but if you go to our community you will find that our first request, which came in last week, has already been fulfilled.</p>
<p>You can find details about the scripts available in the ITScripts Catalog on the <a href="http://communities.vmware.com/community/vmtn/server/vcenter/protect-itscripts" target="_blank">ITScripts Community</a>, but here are the two new scripts we released.</p>
<p>- <a href="http://communities.vmware.com/docs/DOC-18181" target="_blank">Added Disable Java Updates</a> (version 1.0.0.9) which will turn off the pesky updater (and notification) that you do not need as you are patching the Java Runtime with vCenter Protect.  It also reduces end user frustration with the overall user experience on their machine as they have one less annoyance to deal with on a regular basis.</p>
<p>- <a href="http://communities.vmware.com/docs/DOC-18182" target="_blank">Added Get Remote Users Last Login Time</a> (version 1.0.0.3) which will query a remote machine to identify all user accounts on the target and return last login time for each.  There are a few common applications to this script like trying to identify which user a machine may belong to if the machine name is either not correct or is some generic format that does not include a reference to the user who it may be assigned to.  Another common use for this script would be to identify what accounts (and their data) could be removed from a system so you can cleanup space if the system is running low.</p>
<p>Both scripts are available to vCenter Protect Essentials and vCenter Protect Essentials Plus customers.  If you go to Manage &gt; ITScripts you can view all scripts available in the catalog and approve the scripts you desire for use in vCenter Protect Essentials.</p>
<p>Regards,</p>
<p><a href="http://www.linkedin.com/pub/chris-goettl/1/8b0/758" target="_blank">Chris Goettl</a><br />
Customer-Product Owner<br />
SMB Management Solutions<br />
VMware</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=Y0RbMsYKp68:bIayrZNn86s:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=Y0RbMsYKp68:bIayrZNn86s:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=Y0RbMsYKp68:bIayrZNn86s:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=Y0RbMsYKp68:bIayrZNn86s:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=Y0RbMsYKp68:bIayrZNn86s:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=Y0RbMsYKp68:bIayrZNn86s:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/Y0RbMsYKp68" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2012/02/08/powershell-is-an-expected-skill-for-it-admins-today/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2012/02/08/powershell-is-an-expected-skill-for-it-admins-today/</feedburner:origLink></item>
		<item>
		<title>January 2012 Patch Tuesday Overview</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/e0js2UT1Sfc/</link>
		<comments>http://blog.shavlik.com/2012/01/10/january-2012-patch-tuesday-overview/#comments</comments>
		<pubDate>Tue, 10 Jan 2012 23:39:42 +0000</pubDate>
		<dc:creator>Jason Miller</dc:creator>
				<category><![CDATA[Patch Management]]></category>
		<category><![CDATA[Patch Patrol]]></category>
		<category><![CDATA[Adobe]]></category>
		<category><![CDATA[Patch]]></category>
		<category><![CDATA[Patch Tuesday]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2594</guid>
		<description><![CDATA[<p>Microsoft is starting off the new year with seven new security bulletins released for the <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-jan" target="_blank">January 2012 Patch Tuesday</a>.  These seven new security bulletins address eight vulnerabilities.</p>
<p>The primary bulletin administrators should patch first is <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-004" target="_blank">MS12-004</a>.  This security bulletin addresses two vulnerabilities with Windows Media types.  Opening a malicious media or MIDI file on an unpatched system could allow an attacker to gain full control of the system.  As media files are extremely popular for viewing and sharing, administrators should patch this bulletin on their workstation machines as soon as possible.  It is important to note that &#8230;]]></description>
			<content:encoded><![CDATA[<p>Microsoft is starting off the new year with seven new security bulletins released for the <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-jan" target="_blank">January 2012 Patch Tuesday</a>.  These seven new security bulletins address eight vulnerabilities.</p>
<p>The primary bulletin administrators should patch first is <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-004" target="_blank">MS12-004</a>.  This security bulletin addresses two vulnerabilities with Windows Media types.  Opening a malicious media or MIDI file on an unpatched system could allow an attacker to gain full control of the system.  As media files are extremely popular for viewing and sharing, administrators should patch this bulletin on their workstation machines as soon as possible.  It is important to note that newer operating systems (Windows 7, Windows 2008 R2) are not affected by one of the vulnerabilities.  These machines will only show one patch missing whereas older Microsoft operating systems (Windows XP, Vista, 2003, 2008) will require two patches to fully fix the vulnerabilities in this security bulletin.</p>
<p>Administrators were given a last minute 2011 holiday surprise with an out-of-band security bulletin release from Microsoft.  On December 29th, Microsoft released <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-100" target="_blank">MS11-100</a> to address a critical zero-day vulnerability with the Microsoft .NET program.  This vulnerability had the exploit code published and the bulletin could not wait until the regularly scheduled Patch Tuesday for release.  The vulnerability had a particularly nasty affect on web servers running ASP.NET web pages.  If successfully exploited, an attacker could create a denial of service attack on any web site running the vulnerable code.  Most administrators patched their web servers immediately with this security bulletin but chose to wait to patch all desktops and non-public facing web servers until the next scheduled Patch Tuesday.</p>
<p>On the non-Microsoft front, Adobe is planning to release their quarterly security bulletin update today with security bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb12-01.html" target="_blank">APSB12-01</a>.  This security update will apply to Adobe Acrobat/Reader versions 9 and 10.  The update for Adobe Reader/Acrobat 10 will contain the fixes for a previously released security bulletin for Adobe Acrobat/Reader 9.</p>
<p>On December 16, 2011, Adobe released a security bulletin (<a href="http://www.adobe.com/support/security/bulletins/apsb11-30.html" target="_blank">APSB11-30</a>) that patched a critical security vulnerability in the Adobe Acrobat/Reader version 9 program.  This vulnerability was a zero-day vulnerability that Adobe had received reported active attacks against the vulnerability.  Adobe has waited until today to patch version 10 of their products as this version contains a Protected Mode that will prevent the vulnerability from being exploited.</p>
<p>- Jason Miller</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=e0js2UT1Sfc:_7A7Fd3lpew:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=e0js2UT1Sfc:_7A7Fd3lpew:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=e0js2UT1Sfc:_7A7Fd3lpew:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=e0js2UT1Sfc:_7A7Fd3lpew:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=e0js2UT1Sfc:_7A7Fd3lpew:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=e0js2UT1Sfc:_7A7Fd3lpew:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/e0js2UT1Sfc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2012/01/10/january-2012-patch-tuesday-overview/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2012/01/10/january-2012-patch-tuesday-overview/</feedburner:origLink></item>
		<item>
		<title>January 2012 Patch Tuesday Advanced Notification</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/7pDL63fvzLU/</link>
		<comments>http://blog.shavlik.com/2012/01/05/january-2012-patch-tuesday-advanced-notification/#comments</comments>
		<pubDate>Thu, 05 Jan 2012 20:03:51 +0000</pubDate>
		<dc:creator>Jason Miller</dc:creator>
				<category><![CDATA[Patch Management]]></category>
		<category><![CDATA[Patch Patrol]]></category>
		<category><![CDATA[Adobe]]></category>
		<category><![CDATA[Patch]]></category>
		<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2590</guid>
		<description><![CDATA[<p>Microsoft is kicking off the 2012 year with seven new Microsoft Security Bulletins.  Just announced in their <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-jan" target="_blank">advanced notification for the January 2012 Patch Tuesday</a>, these seven security bulletins will address eight vulnerabilities.</p>
<p>Security Bulletin Breakdown:</p>

1 bulletin is rated as Critical
6 bulletins are rated as Important
3 vulnerabilities could lead to Remote Code Execution
1 vulnerability could lead to Security Feature Bypass
2 vulnerabilities could lead to Information Disclosure
1 vulnerability could lead to Elevation of Privilege

<p>Affected Products:</p>

All supported Microsoft Operating Systems
Microsoft Developer Tools and Software

<p> </p>
<p>This Tuesday will also be a good chance to install the out-of-band security update (<a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-100" target="_blank">MS11-100</a>) on &#8230;]]></description>
			<content:encoded><![CDATA[<p>Microsoft is kicking off the 2012 year with seven new Microsoft Security Bulletins.  Just announced in their <a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-jan" target="_blank">advanced notification for the January 2012 Patch Tuesday</a>, these seven security bulletins will address eight vulnerabilities.</p>
<p>Security Bulletin Breakdown:</p>
<ul>
<li>1 bulletin is rated as Critical</li>
<li>6 bulletins are rated as Important</li>
<li>3 vulnerabilities could lead to Remote Code Execution</li>
<li>1 vulnerability could lead to Security Feature Bypass</li>
<li>2 vulnerabilities could lead to Information Disclosure</li>
<li>1 vulnerability could lead to Elevation of Privilege</li>
</ul>
<p>Affected Products:</p>
<ul>
<li>All supported Microsoft Operating Systems</li>
<li>Microsoft Developer Tools and Software</li>
</ul>
<p> </p>
<p>This Tuesday will also be a good chance to install the out-of-band security update (<a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-100" target="_blank">MS11-100</a>) on your desktop systems.  This out-of-band security update was released last Thursday (12/29/11) and should already be applied to your public facing web servers.</p>
<p>This January Patch Tuesday will also mark the Adobe Quarterly Security update release.  Adobe has already stated they will be releasing security udpates for their Adobe Reader and Acrobat 10 product lines.  We will have to wait to see what other security patches Adobe may be releasing on Patch Tuesday.</p>
<p>As this marks a light Patch Tuesday, you can see that a lot of work will be greeting administrators from their holiday vacation season.</p>
<p>- Jason Miller</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=7pDL63fvzLU:D-kNDCA4jDQ:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=7pDL63fvzLU:D-kNDCA4jDQ:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=7pDL63fvzLU:D-kNDCA4jDQ:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=7pDL63fvzLU:D-kNDCA4jDQ:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=7pDL63fvzLU:D-kNDCA4jDQ:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=7pDL63fvzLU:D-kNDCA4jDQ:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/7pDL63fvzLU" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2012/01/05/january-2012-patch-tuesday-advanced-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2012/01/05/january-2012-patch-tuesday-advanced-notification/</feedburner:origLink></item>
		<item>
		<title>Patches Make for Good Gifts</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/9IpKgxNTPCo/</link>
		<comments>http://blog.shavlik.com/2011/12/13/patches-make-for-good-gifts/#comments</comments>
		<pubDate>Tue, 13 Dec 2011 21:37:46 +0000</pubDate>
		<dc:creator>Jason Miller</dc:creator>
				<category><![CDATA[Patch Management]]></category>
		<category><![CDATA[Patch Patrol]]></category>
		<category><![CDATA[Adobe]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[Google Chrome]]></category>
		<category><![CDATA[Patch]]></category>
		<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[vulnerability management]]></category>
		<category><![CDATA[Zero-Day]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2580</guid>
		<description><![CDATA[<p>Tis the season of good friends, good food, good conversation and of course patching your network.  Today marks the final <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-dec" target="_blank">Patch Tuesday of 2011</a>, and it’s a big one. Microsoft is giving the gift of 13 security bulletins addressing 19 vulnerabilities to add to the stress of this holiday season.  Not to be outdone by Microsoft, other software vendors such as Google and Adobe are also joining in on the season of giving by releasing updates of their own.  This combination of Microsoft and non-Microsoft patch releases will definitely keep us busy this season.</p>
<p>On the Microsoft side, there &#8230;]]></description>
			<content:encoded><![CDATA[<p>Tis the season of good friends, good food, good conversation and of course patching your network.  Today marks the final <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-dec" target="_blank">Patch Tuesday of 2011</a>, and it’s a big one. Microsoft is giving the gift of 13 security bulletins addressing 19 vulnerabilities to add to the stress of this holiday season.  Not to be outdone by Microsoft, other software vendors such as Google and Adobe are also joining in on the season of giving by releasing updates of their own.  This combination of Microsoft and non-Microsoft patch releases will definitely keep us busy this season.</p>
<p>On the Microsoft side, there are two bulletins administrators should look to patch immediately.  <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-087" target="_blank">MS11-087</a> fixes a zero-day vulnerability in the Windows Kernel-Mode Drivers.  Microsoft released <a href="http://technet.microsoft.com/en-us/security/advisory/2639658" target="_blank">Security Advisory 2639658</a> on November 3, 2011 for this vulnerability.  This Security Advisory was released just before the November 2011 Patch Tuesday.  There was speculation at the time that Microsoft would patch this vulnerability in the November 2011 Patch Tuesday release.  Exploit code for this vulnerability was published and Microsoft received reports of limited attacks against this vulnerability.  But, Microsoft did not see wide spread attacks against the zero-day vulnerability and this patch did not make it into the November release cycle.  This allowed Microsoft to release the corresponding Security Bulletin during today&#8217;s Patch Tuesday.  As with any zero-day vulnerability, it is critical to patch your systems as soon as possible.  To date the vulnerability has  been exploited a limited numbers times, but the possibility of a wide spread attack is always greater with zero-day vulnerabilities.</p>
<p>With MS11-087, administrators may have applied a workaround as stated in the Security Advisory released last month.  This workaround denied all access to a specific vulnerable DLL on the system.  You do not need to unapply the workaround to apply the patch.  But, it is advised that you unapply the workaround after applying the patch to restore functionality to the system.  If the workaround is left in place, users may not be able to see all fonts on a system, and this could lead to an uptick in support calls.</p>
<p>The next bulletin administrators should look at patching as soon as possible is the bi-monthly cumulative update for Internet Explorer.  <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-099" target="_blank">MS11-099</a> fixes multiple vulnerabilities in the browser.  Although none of the vulnerabilities are publicly known or actively being attacked, any browser is a prime target for attackers.</p>
<p>There is an important note regarding Security Bulletin <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-088" target="_blank">MS11-088</a> that administrators should be aware of.  This bulletin is only available on the Microsoft Download Center.  This means administrators must manually find the affected product on their network and manually apply the patch.  This bulletin affects IME for Chinese Office installations.  The Office installation must be Chinese.  Any other installation of Office in a language other than Chinese is not affected unless they have been installed with the Chinese Pinyin IME component.</p>
<p>As a final holiday gift from Microsoft, their Advanced Notification for this Patch Tuesday stated there would be 14 bulletins released this month, but they have only released 13 bulletins.  Obviously one of the bulletins needed to be pulled from release due to quality issues.  We will continue to monitor Microsoft to see why one bulletin is missing from today&#8217;s release.</p>
<p>On the non-Microsoft side, Google has released a new version of their Chrome browser.  <a href="http://googlechromereleases.blogspot.com/2011/12/stable-channel-update.html" target="_blank">This security update</a> addresses 15 vulnerabilities as well as new features.</p>
<p>Adobe is releasing multiple bulletins for their products.  Adobe security bulletin <a href="http://www.adobe.com/support/security/bulletins/apsb11-29.html" target="_blank">APSB11-29</a> addresses two vulnerabilities in their ColdFusion product.  In addition, Adobe is patching their Adobe Reader/Acrobat version 9 products today.  Adobe announced last week they would be addressing a zero-day vulnerability in Reader and Acrobat today in version 9 only.  Adobe Acrobat and Reader version 10 also contain the software vulnerability.  But due to a protected mode in Acrobat and Reader version 10, an attacker cannot exploit the vulnerability.  Adobe will patch this version of Reader and Acrobat during their regularly scheduled quarterly update during the January 2012 Patch Tuesday.</p>
<p>Apple has released a new version of their iTunes product with <a href="http://support.apple.com/kb/DL1426" target="_blank">iTunes 10.5.2</a>.  This update is a non-security update.</p>
<p>VMware is also releasing a new version of their MozyPro backup software.  <a href="http://mozy.com/pro/download" target="_blank">MozyPro 2.10.7.96</a> is a non-security update.</p>
<p>And Oracle has joined the list of other software vendors providing updates today by releasing a new version of their Java product. <a href="http://www.oracle.com/technetwork/java/javase/6u30-relnotes-1394870.html" target="_blank"> Java 6 update 30</a> is a non-security update.  This update is currently only available for JDK download.  We will have to see if Oracle makes this version available to the public on the java.com webpage later today.</p>
<p>I will be reviewing the November 2011 in depth during my monthly Patch Tuesday webinar tomorrow at 11am CDT. You can register to attend the live webinar <a title="Patch Tuesday Registration" href="https://www302.livemeeting.com/lrs/8000541617/Registration.aspx?pageName=xb0nqngt2v32bcn1" target="_blank">here</a>.</p>
<p>- Jason Miller</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=9IpKgxNTPCo:R1WCrR_9-d0:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=9IpKgxNTPCo:R1WCrR_9-d0:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=9IpKgxNTPCo:R1WCrR_9-d0:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=9IpKgxNTPCo:R1WCrR_9-d0:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=9IpKgxNTPCo:R1WCrR_9-d0:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=9IpKgxNTPCo:R1WCrR_9-d0:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/9IpKgxNTPCo" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2011/12/13/patches-make-for-good-gifts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2011/12/13/patches-make-for-good-gifts/</feedburner:origLink></item>
		<item>
		<title>Microsoft: We Won’t Update Others’ Windows Apps</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/KsWYX3whUCw/</link>
		<comments>http://blog.shavlik.com/2011/12/09/microsoft-we-wont-update-others-windows-apps/#comments</comments>
		<pubDate>Fri, 09 Dec 2011 15:15:38 +0000</pubDate>
		<dc:creator>Mike Bleakmore</dc:creator>
				<category><![CDATA[Corporate Blog]]></category>
		<category><![CDATA[3rd Party Applications]]></category>
		<category><![CDATA[IT Management]]></category>
		<category><![CDATA[IT Security]]></category>
		<category><![CDATA[Patch Management]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2576</guid>
		<description><![CDATA[<p>In a recent blog post by Farzana Rahman, Microsoft&#8217;s group program manager of the Windows Update group, she <a href="http://blogs.msdn.com/b/b8/archive/2011/11/14/minimizing-restarts-after-automatic-updating-in-windows-update.aspx" target="_blank">wrote </a>that Microsoft has no plans to support third party patching now or in the future. She writes:</p>
<p>Lastly but not the least, I want to address the feedback from users who would like WU to update their 3rd-party applications. People clearly find the experience with multiple updaters on the system less than optimal (and we agree!) Each application updater gives you a different experience, you have to remember to go visit each updater to install updates, you never know when or &#8230;]]></description>
			<content:encoded><![CDATA[<p>In a recent blog post by Farzana Rahman, Microsoft&#8217;s group program manager of the Windows Update group, she <a href="http://blogs.msdn.com/b/b8/archive/2011/11/14/minimizing-restarts-after-automatic-updating-in-windows-update.aspx" target="_blank">wrote </a>that Microsoft has no plans to support third party patching now or in the future. She writes:</p>
<p><em>Lastly but not the least, I want to address the feedback from users who would like WU to update their 3rd-party applications. People clearly find the experience with multiple updaters on the system less than optimal (and we agree!) Each application updater gives you a different experience, you have to remember to go visit each updater to install updates, you never know when or how updaters will run and what they might do, and so on. People would like one updater for the entire system.</em></p>
<p>This comes as no surprise to those of us at Shavilk, now part of VMware, who have offered just such a service since the 1990&#8242;s. Our flagship product <a href="http://www.vmware.com/products/datacenter-virtualization/vcenter-protect/overview.html" target="_blank">VMware vCenter Protect Essentials Plus</a> (formerly NetChk Protect), delivers a one-stop-shop for all third party applications (and some legacy Microsoft applications, too). All of the complexity that Farzana describes in her post is addressed in a simple easy-to-use interface for organizations of all sizes to keep their networks secure and up to date.</p>
<p>In fact, we offer <a href="https://labs.shavlik.com/securityadvisor" target="_blank">Security Advisor</a>, a free service that performs a thorough scan of your network and delivers a report on all of the applications installed on machines (whether physical or virtual) on your network. Most companies we talk to are surprised by the number of titles, versions and publishers installed on machines across their networks. What&#8217;s worse is that critical updates to these applications are missing, opening the network&#8211;and therefore the business&#8211;to unnecessary risk.</p>
<p>So, vCenter Protect Essentials Plus is the &#8220;one updater for the entire system.&#8221; Problem solved.</p>
<p>- Mike Bleakmore</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=KsWYX3whUCw:X4sIxyN7A3g:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=KsWYX3whUCw:X4sIxyN7A3g:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=KsWYX3whUCw:X4sIxyN7A3g:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=KsWYX3whUCw:X4sIxyN7A3g:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=KsWYX3whUCw:X4sIxyN7A3g:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=KsWYX3whUCw:X4sIxyN7A3g:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/KsWYX3whUCw" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2011/12/09/microsoft-we-wont-update-others-windows-apps/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2011/12/09/microsoft-we-wont-update-others-windows-apps/</feedburner:origLink></item>
		<item>
		<title>December 2011 Patch Tuesday Advanced Notification</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/KAKzrIyXC1g/</link>
		<comments>http://blog.shavlik.com/2011/12/08/december-2011-patch-tuesday-advanced-notification/#comments</comments>
		<pubDate>Thu, 08 Dec 2011 21:04:12 +0000</pubDate>
		<dc:creator>Jason Miller</dc:creator>
				<category><![CDATA[Patch Management]]></category>
		<category><![CDATA[Patch Patrol]]></category>
		<category><![CDATA[Adobe]]></category>
		<category><![CDATA[Patch]]></category>
		<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[Zero-Day]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2570</guid>
		<description><![CDATA[<p>Microsoft has released their <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-dec" target="_blank">advanced notification for the December 2011</a> edition of Patch Tuesday.  Microsoft is giving the gift of 14 security bulletins addressing 20 vulnerabilities this holiday season.</p>
<p>Security Bulletin Breakdown:</p>

3 bulletins rated as Critical
11 bulletins rated as Important
10 vulnerabilities could lead to Remote Code Execution
1 vulnerability could lead to Information Disclosure
3 vulnerabilities could lead to Elevation of Privilege

<p> </p>
<p>Affected Products:</p>

All supported Microsoft Operating systems
Publisher 2003, 2007
Excel 2003
PowerPoint 2007, 2010
Office 2007, 2010
PowerPoint Viewer 2007
Office Compatibility Pack 2007

<p> </p>
<p>On the non-Microsoft front, Adobe released a security advisory (<a href="http://www.adobe.com/support/security/advisories/apsa11-04.html" target="_blank">APSA11-04</a>) for a zero-day vulnerability affecting Adobe Acrobat/Reader 9/10 on December 6th.  &#8230;]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released their <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-dec" target="_blank">advanced notification for the December 2011</a> edition of Patch Tuesday.  Microsoft is giving the gift of 14 security bulletins addressing 20 vulnerabilities this holiday season.</p>
<p>Security Bulletin Breakdown:</p>
<ul>
<li>3 bulletins rated as Critical</li>
<li>11 bulletins rated as Important</li>
<li>10 vulnerabilities could lead to Remote Code Execution</li>
<li>1 vulnerability could lead to Information Disclosure</li>
<li>3 vulnerabilities could lead to Elevation of Privilege</li>
</ul>
<p> </p>
<p>Affected Products:</p>
<ul>
<li>All supported Microsoft Operating systems</li>
<li>Publisher 2003, 2007</li>
<li>Excel 2003</li>
<li>PowerPoint 2007, 2010</li>
<li>Office 2007, 2010</li>
<li>PowerPoint Viewer 2007</li>
<li>Office Compatibility Pack 2007</li>
</ul>
<p> </p>
<p>On the non-Microsoft front, Adobe released a security advisory (<a href="http://www.adobe.com/support/security/advisories/apsa11-04.html" target="_blank">APSA11-04</a>) for a zero-day vulnerability affecting Adobe Acrobat/Reader 9/10 on December 6th.  Adobe is planning to release a patch for Adobe Acrobat and Reader version 9 during the week of December 12, 2011.  In other words, Adobe will be joining Microsoft&#8217;s Patch Tuesday this month.  Adobe Acrobat and Reader 10 are also affected by this vulnerability, but Adobe&#8217;s Protected View prevents the exploitation of the vulnerability.  For Adobe Acrobat and Reader 10, Adobe will release a patch during the January 2012 Patch Tuesday.</p>
<p>With administrators commonly taking vacations this time of year, the large number of security bulletins Microsoft is planning to release may seem a bit unfair.  However, this is in line with past typical Microsoft December Patch Tuesdays.</p>
<p>Last year, Microsoft released 17 security bulletins during the December 2010 Patch Tuesday.  This brought the total number of security bulletins released by Microsoft in 2010 to 106.  With the December 2011 Patch Tuesday security bulletins, the grand total for released security bulletins for 2011 will bring us to 100.</p>
<p>Stay tuned for more 2011 year in review information.  Later this month I will be releasing &#8220;Patching Year in Review&#8221; information.</p>
<p>I will be talking about December&#8217;s Patch Tuesday next Wednesday, December 14th at 11:00am CST in part of our monthly Patch Tuesday webinar.  Click <a href="https://www302.livemeeting.com/lrs/8000541617/Registration.aspx?pageName=xb0nqngt2v32bcn1" target="_blank">here</a> to register for the webinar.</p>
<p>- Jason Miller</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=KAKzrIyXC1g:7XWuddezrts:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=KAKzrIyXC1g:7XWuddezrts:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=KAKzrIyXC1g:7XWuddezrts:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=KAKzrIyXC1g:7XWuddezrts:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=KAKzrIyXC1g:7XWuddezrts:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=KAKzrIyXC1g:7XWuddezrts:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/KAKzrIyXC1g" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2011/12/08/december-2011-patch-tuesday-advanced-notification/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2011/12/08/december-2011-patch-tuesday-advanced-notification/</feedburner:origLink></item>
		<item>
		<title>New ITScripts Available</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/O7DqHYXruC4/</link>
		<comments>http://blog.shavlik.com/2011/12/02/new-itscripts-available/#comments</comments>
		<pubDate>Fri, 02 Dec 2011 20:16:56 +0000</pubDate>
		<dc:creator>Chris Goettl</dc:creator>
				<category><![CDATA[IT Management]]></category>
		<category><![CDATA[Product Blog]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[ITScripts]]></category>
		<category><![CDATA[Protect]]></category>
		<category><![CDATA[vCenter Protect]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2560</guid>
		<description><![CDATA[<p>Hey Everybody,</p>
<p>Just a quick update on the latest XML release for VMware vCenter Protect Essentials Plus as you will notice some new items have been released.  As many of you know, vCenter Protect Essentials Plus 8.0 offers a new feature called ITScripts.   This integration with Microsoft Powershell  delivers powerful scripting capabilities through vCenter Protect Essentials Plus.  In the XML release yesterday we did release three new script into the VMware Script Catalog.</p>
<p>A little about <a href="http://www.shavlik.com/support/xmlsubscribe.aspx" target="_blank">XML Announcements </a>for those who may not be familiar.  vCenter Protect Essentials Plus has regular data releases to update patch data.  Typically you will &#8230;]]></description>
			<content:encoded><![CDATA[<p>Hey Everybody,</p>
<p>Just a quick update on the latest XML release for VMware vCenter Protect Essentials Plus as you will notice some new items have been released.  As many of you know, vCenter Protect Essentials Plus 8.0 offers a new feature called ITScripts.   This integration with Microsoft Powershell  delivers powerful scripting capabilities through vCenter Protect Essentials Plus.  In the XML release yesterday we did release three new script into the VMware Script Catalog.</p>
<p>A little about <a href="http://www.shavlik.com/support/xmlsubscribe.aspx" target="_blank">XML Announcements </a>for those who may not be familiar.  vCenter Protect Essentials Plus has regular data releases to update patch data.  Typically you will see a release every Tuesday and Thursday, but it can vary.  ITScripts is now driven by the same data releases.  Although scripts will not be releasing nearly as often as patch data, you will be able to keep up on what is releasing through the <a href="http://www.shavlik.com/support/xmlsubscribe.aspx" target="_blank">XML Announcements</a>.   In the announcment you will see <strong>[Patch-ITScripts] </strong><strong>in the subject line indicating this release includes additions or changes to the script catalog. </strong></p>
<p>So in yesterday&#8217;s release we included three new scripts.</p>
<ul>
<li>Disable Adobe Reader and Acrobat Updater (version 1.0.0.5)</li>
<li>Get Security Center Status (version 1.0.0.40)</li>
<li>Local Administrator Password Change (version 1.0.0.6)</li>
</ul>
<p>These new scripts are available in vCenter Protect Essentials Plus 8.0 today and can be approved by going to Manage &gt; ITScripts.  From there you can approve the scripts for use in vCenter Protect Essentials Plus.  Depending on your license and if you are a vCenter Protect Essentials or Essentials Plus customer you will see the scripts available to you.</p>
<p>For more details you can go to the <a href="http://communities.vmware.com/community/vmtn/server/vcenter/protect-itscripts" target="_self">ITScripts Community Site</a>.  Here you can find a write up on each of the scripts in the VMware Script Catalog. You can also find answers to common questions and post questions relating to the scripts as well.  One specific thing that customers have asked is which scripts should I see as a vCenter Protect Essentials or Essentials Plus customer.  Each script is tagged with Essentials or Essentials Plus to show what license level you need to see them.  vCenter Protect Essentials Plus customers see all Essentials scripts with the addition of the Essentials Plus scripts.</p>
<p>Regards,</p>
<p>Chris Goettl<br />
Customer-Product Owner<br />
SMB Management Solutions<br />
VMware</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=O7DqHYXruC4:Df71cbfKGTE:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=O7DqHYXruC4:Df71cbfKGTE:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=O7DqHYXruC4:Df71cbfKGTE:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=O7DqHYXruC4:Df71cbfKGTE:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=O7DqHYXruC4:Df71cbfKGTE:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=O7DqHYXruC4:Df71cbfKGTE:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/O7DqHYXruC4" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2011/12/02/new-itscripts-available/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2011/12/02/new-itscripts-available/</feedburner:origLink></item>
		<item>
		<title>November 2011 Patch Tuesday Overview</title>
		<link>http://feedproxy.google.com/~r/Shavlik/~3/Io7TjZKIwTY/</link>
		<comments>http://blog.shavlik.com/2011/11/08/november-2011-patch-tuesday-overview/#comments</comments>
		<pubDate>Tue, 08 Nov 2011 19:54:31 +0000</pubDate>
		<dc:creator>Jason Miller</dc:creator>
				<category><![CDATA[Patch Management]]></category>
		<category><![CDATA[Patch Patrol]]></category>
		<category><![CDATA[Adobe]]></category>
		<category><![CDATA[Mozilla]]></category>
		<category><![CDATA[Patch]]></category>
		<category><![CDATA[Patch Tuesday]]></category>

		<guid isPermaLink="false">http://blog.shavlik.com/?p=2555</guid>
		<description><![CDATA[<p>Microsoft has released four new security bulletins for this edition of <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-nov" target="_blank">Patch Tuesday</a>.  These four security bulletins address four vulnerabilities.</p>
<p>The first bulletin administrators should address is <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-083" target="_blank">MS11-083</a>.  This bulletin addresses one vulnerability in Windows TCP/IP.  If an attacker sends a stream of malicious User Datagram Protocol (UDP) network packets to an unpatched machine, the attacker could gain control over the affected system.  With this type of an attack scenario, alarms could be raised about the potential of a vulnerability that is used in a worm.  However, there are a few items that will make it difficult &#8230;]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released four new security bulletins for this edition of <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-nov" target="_blank">Patch Tuesday</a>.  These four security bulletins address four vulnerabilities.</p>
<p>The first bulletin administrators should address is <a href="http://technet.microsoft.com/en-us/security/bulletin/ms11-083" target="_blank">MS11-083</a>.  This bulletin addresses one vulnerability in Windows TCP/IP.  If an attacker sends a stream of malicious User Datagram Protocol (UDP) network packets to an unpatched machine, the attacker could gain control over the affected system.  With this type of an attack scenario, alarms could be raised about the potential of a vulnerability that is used in a worm.  However, there are a few items that will make it difficult for an attacker to use this exploit in a worm.  First, the network port attacked on the target machine must be closed.  Second, a normal UDP packet streamed to a vulnerable machine will not allow the attacker to gain access to the system.  The UDP packet must be &#8220;specially&#8221; crafted.  An attacker will need to figure out the type of packet to send to a vulnerable machine.  Finally, this vulnerability was privately disclosed to Microsoft so there is no known code out in the wild at this time and Microsoft has not received any reports of attacks against this vulnerability.</p>
<p>On the non-Microsoft front, a couple of vendors will be a part of this Patch Tuesday.  Adobe released a<a href="http://www.adobe.com/support/security/bulletins/apsb11-27.html" target="_blank"> new security bulletin</a> for their Shockwave player today.  This security bulletin addresses four vulnerabilities and is rated as Critical.  Mozilla is planning to release new versions to the Firefox, Thunderbird and SeaMonkey product families.</p>
<p>Patch Tuesday is no longer just about Microsoft releasing new security bulletins.  Many other vendors can sneak in with their own security releases that can be just as or more important than Microsoft releases.  Given the history of non-Microsoft vendors releasing on Patch Tuesday, administrators should plan for the unexpected during the monthly patch maintenance window.</p>
<p>I will be reviewing the November 2011 in depth during my monthly Patch Tuesday webinar tomorrow at 11am CDT. You can register to attend the live webinar <a href="https://www302.livemeeting.com/lrs/8000541617/Registration.aspx?pageName=xb0nqngt2v32bcn1" target="_blank">here</a>.</p>
<p>- Jason Miller</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Shavlik?a=Io7TjZKIwTY:X6nbhVvG9bc:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=Io7TjZKIwTY:X6nbhVvG9bc:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=Io7TjZKIwTY:X6nbhVvG9bc:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=Io7TjZKIwTY:X6nbhVvG9bc:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Shavlik?i=Io7TjZKIwTY:X6nbhVvG9bc:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Shavlik?a=Io7TjZKIwTY:X6nbhVvG9bc:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Shavlik?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Shavlik/~4/Io7TjZKIwTY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blog.shavlik.com/2011/11/08/november-2011-patch-tuesday-overview/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blog.shavlik.com/2011/11/08/november-2011-patch-tuesday-overview/</feedburner:origLink></item>
	</channel>
</rss>

