New MSSECURE.XML and EST Version 2006.08.08.00 Available

New MSSECURE.XML and EST Version 2006.08.08.00 Available

Post by Charles We » Thu, 10 Aug 2006 03:06:05


SSECURE.XML Data Version 2006.08.08.0 (for use by MBSA 1.2 and SMS SUS
Feature Pack) was last modified today, August 08, 2006, and is now available
for all supported languages (English, French, German and Japanese). Today's
release contains 12 new bulletins, 11 of which are fully supported by MBSA.
The standalone EST tool is required to support detection for MS06-043
(Outlook Express).



August EST Release:



MS06-043 - KB 920214 - Outlook Express: This bulletin is supported with the
EST tool and affects Outlook Express on Windows XP SP2 and Windows 2003 SP1.



What is the Enterprise Update Scanning Tool (EST)? As part of an ongoing
commitment to provide detection tools for complex updates for bulletin-class
issues that are not supported by MBSA 1.2, a stand-alone tool may be
provided for certain bulletins. Microsoft will evaluate the detection and
deployment complexity of each bulletin, and provide detection support based
on the specifics of each release. When a detection tool is created for a
specific bulletin, customers will be able to script running the tool from a
command line interface, and process the results using an XML output file.
Detailed documentation will be provided with the tool to ensure customers
can leverage it quickly. See the following link for details
http://support.microsoft.com/default.aspx?id=894193

NOTE: The EST tool is only for use with MBSA 1.2 to support limitations in
the MBSA 1.2 scan tool to ensure complete security update detection support
for all bulletins released this month.



MSSECURE.XML (MBSA 1.2.1):



MS06-040 - KB 921883 - Vulnerability in Server Service Could Allow Remote
Code Execution: This bulletin is supported with the MSSECURE.XML file and
affects Microsoft Windows 2000 SP4, Microsoft Windows XP Service Pack 1 and
Microsoft Windows XP Service Pack 2 and Microsoft Windows Server 2003 and
Microsoft Windows Server 2003 Service Pack 1.



MS06-041 - KB 920683 - Vulnerability in DNS Resolution Could Allow Remote
Code Execution: This bulletin is supported with the MSSECURE.XML file and
affects Microsoft Windows 2000 Service Pack 4, Microsoft Windows XP Service
Pack 1 and Microsoft Windows XP Service Pack 2, and Microsoft Windows Server
2003 and Microsoft Windows Server 2003 Service Pack 1.



MS06-042 - KB 918899 - Cumulative Security Update for Internet Explorer:
This bulletin is supported with the MSSECURE.XML file and affects Microsoft
Windows 2000 Service Pack 4, Microsoft Windows XP Service Pack 1 and
Microsoft Windows XP Service Pack 2, Microsoft Windows Server 2003 and
Microsoft Windows Server 2003 Service Pack 1. This bulletin replaces
MS06-021.



MS06-044 - KB 917008 - Vulnerability in Microsoft Management Console Could
Allow Remote Code Execution: This bulletin is supported with the
MSSECURE.XML file and affects Microsoft Windows 2000 Service Pack 4.



MS06-045 - KB 921398 - Vulnerability in Windows Explorer Could Allow Remote
Code Execution: This bulletin is supported with the MSSECURE.XML file and
affects Microsoft Windows 2000 Service Pack 4, and Microsoft Windows Server
2003 and Microsoft Windows Server 2003 Service Pack 1. This bulletin
replaces MS05-008 for Windows 2000, MS05-016 for Windows XP SP1/SP2, and
Windows 2003.



MS06-046 - KB 922616 - Vulnerability in HTML Help Could Allow Remote Code
Execution: This bulletin is supported with the MS