New
#1
Microsoft's 2012 kick-off features 7 security bulletins
http://www.theregister.co.uk/2012/01...lert_jan_2012/Microsoft plans to start 2012 with a surprisingly large Patch Tuesday that covers seven security bulletins which collectively address eight separate vulnerabilities. Previous January releases have normally featured only one or two bulletins.
The solitary critical bulletin in the batch fixes a remote code execution issue in Media Player. The remaining six "important" bulletins due next Tuesday handle the BEAST SSL issue and various information disclosure bugs, escalation of privilege issues and an update to Microsoft’s SEHOP (Structured Exception Handler Overwrite Protection) technology to enhance the defence-in-depth capability that it can offers to legacy applications. The "important" rather than critical status for the Beast SSL issue is at least debatable.
January 2012 Patch Tuesday Preview - The Laws of Vulnerabilities
Microsoft Security Bulletin Advance Notification for January 2012