Hi. i have come across similar posts in the past, but none answered the exact issue i have here.
i ran a Nessus vulnerability scan on one of my offices and found some patches missing, one of which was KB3054834.
when looking in the Bigfix console i did not see it in the results. however, googling for it brought this up from the Bigfix website: Content Released in Patching sites - June 2015 Security Bulletins
inside it was the missing KB, listed as “Major”: [Major] MS15-046: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution - Office 2010 SP2 - KB3054834 (x64) (ID: 1504665)
so, why cant i see it in the Bigfix console? it is not hidden, and i marked to show non-relevant content.
Content in the Patches for Windows site that are superseded for more than a year are moved out of the site.
These fixlets are still available in an archive site which you can obtain through your BigFix contact. Is there some reason you cannot apply the latest patch that supersedes it?
no reason at all… but security scanning software (like Nessus or Rapid7) who report missing patches often report the Oldest missing patch, and “neglect” the updated patches who replace it.
so in our case we got a report that KB3054834 was missing, when in fact KB3115197 (who was the last update) is the missing patch (BTW - KB3115197’s severity is “unspecified”, which is why it wasn’t applied).