MS12-001 Relevance

(imported topic written by sinucus)

On 9/16/2013 the relevance was modified for most of the MS12-001 fixlets. The details claims the following,

Note: This patch has been superseded by MS13-063.

From my research I cannot validate this statement.

http://support.microsoft.com/default.aspx?scid=kb;en-us;2644615

  • Bulletin info, including versioning

http://www.microsoft.com/en-us/download/details.aspx?id=36982

  • MS Security Bulletin Spreadsheet. No info about 12-001 being superseded

I did a custom filter to search for Fixlet with Relevance that contains “ntdll.dll” and subsorted on “server 2003” - MS12-001 is the latest fixlet.

MBSA also claims that the patch is required.

Can someone weigh in on this? thanks

(imported comment written by sylviabeing)

MS12-001 fixlets were superseded because Microsoft has stated the replacement information in MS13-063 bulletin page (See attached screen shot.).

technet.microsoft.com/en-us/security/bulletin/MS13-063

Not sure the supersedence relationship is not present in other info source such as MS Security Bulletin Spreadsheet.

(imported comment written by sylviabeing)

We verified the concerned patches against Microsoft update catalog and it shows MS12-001 fixlets (for win 2003) are not superseded.

We have updated the content accordingly.

Published site version:

Patches for Windows (English), version 1897.