Microsoft released 2 bulletins this tuesday to address 2 vulnerabilities. The Patch Assesment Team at Desktop Central have tested all the patches that are relevant to the application supported by Desktop Central and have updated the Central Patch Repository. This means customers can synchronize their patch database and deploy all of these new patches.  Given below is the quick snapshot of the bulletins/patches:


Bulletin ID Vulnerability Title CVE ID Exploitability Index Assessment

MS10-030

Outlook Express and Windows Mail Integer Overflow Vulnerability

CVE-2010-0816

 2 – Inconsistent exploit code likely

MS10-031

VBE6.DLL Stack Memory Corruption Vulnerability

CVE-2010-0815

2 – Inconsistent exploit code likely

* – Patches for Outlook Express 5.5 SP 2 and Microsoft Visual Basic for Applications are yet to be supported by Desktop Central. The assessment for these patches are in progress and will get updated once the assessment is complete.

Deployment Priority (Courtesy: MSRC Blog )

May 2010 Deployment Priority 

May 2010 Risk and Impact

For any assistance on patching feel free to contact desktopcentral-support@manageengine.com

Happy Patching. 

cheers,