Below is more detailed information about these security bulletins:
MS06-002
Vulnerability in Embedded Web Fonts Could Allow Remote Code Execution
Severity: Critical
CVE-2006-0010
This vulnerability can allow an attacker to execute arbitrary code on a
user's system with the permission levels of the currently logged in user.
The attacker would need to persuade the user to visit a malicious web site
or open a specially formed email in order to exploit this vulnerability.
Shavlik recommends customers test and deploy this patch as soon as possible.
MS06-003
Vulnerability in TNEF Decoding in Microsoft Outlook and Microsoft Exchange
Could Allow Remote Code Execution
Severity: Critical
CVE-2006-0002
Shavlik recommends customers deploy this patch carefully in their network
environments. During testing, this bulletin required access to the Office
original installation media to install successfully in our test environment.
Such access may be required in your network environment, depending how
Office has been installed.
More information on these new security patches can be found on Microsoft's
Web site at:
www.microsoft.com/technet/security/Bulletin/ms06-Jan.mspx.
For more information about how Shavlik Technologies can help you secure your
network, or to download a free version of our security solutions, please
visit www.shavlik.com, call your Shavlik representative at (800) 690-6911 or
+1 (612) 331-6737 (international), or email sales@shavlik.com.
Get Patched, Stay Secure and Never Miss a Beat.
The Shavlik Team
(800) 690-6911
info@shavlik.com.
Stay up to date with patch management topics, subscribe to
www.patchmanagement.org, or watch the discussion via our RSS feeds.
For more information about available Shavlik RSS, please visit this site:
www.shavlik.com/support/rss.aspx
We would also like to invite you to join our XML update notification
service. Please sign up at www.shavlik.com/support/xmlsubscribe.aspx
and be automatically notified when new critical patches or XML file updates
are available.
Please visit Shavlik's new Forum to access our KnowledgeBase at
http://forum.shavlik.com/.