Microsoft has fixed a critical security holed in DirectShow and Video ActiveX that have been targeted in attacks, along with fixes for holes in Embedded OpenType Font Engine and Microsoft Published that could allow someone to remotely take control of the PC.
6 patches has been issued by Microsoft and 9 vulnerabilities in Windows, Microsoft Office, Internet Security and Acceleration Server, Virtual PC and Virtual Server.
What could DiretShow security hole do? It can allow an attacker to run code on the machine if a user opened a specially crafter QuickTime file.
And How about ActiveX control? It can allow the attacker to run code execution if someone viewed a malicious web page through Internet Explorer using the ActiveX control.
Softwares which need these updates are Windows 2000, Windows XP, Windows Vista and Windows Server 2003 & 2008. And for DirectX its DirectX 7.0, 8.1, and 9.0.
2007 Microsoft Office System Service Pack 1, Microsoft Internet Security and Acceleration Server 2006, Microsoft Virtual PC 2004 and 2007, and Microsoft Virtual Server 2005 R2 are the non critical updates which are rated important.
Malicious Software Removal Tool to remove the Win32/FakeSpypro rogue security program——- Click here
Read More on Fix issues on Microsoft Office Web components control——— Click Here
Related posts:

