ms13-036 - kb2823324

(imported topic written by gcibirch91)

Hi

I understand Microsoft have pulled the patch above, is this correct? and if so have BigFix set this patch to Corrupt or Superseeded.

see attached link:

https://support.microsoft.com/kb/2839011

Currently says affecting Win 7 and Win 2008 but not sure if it is affecting all systems.

Thanks

(imported comment written by liuhoting)

Actually if you take a look at the MS13-036 bulletin page basically anywhere they have KB2823324 Microsoft have pulled down the download link, which includes the WinVista, Win2008, Win7, and Win2008R2 OSes. For now we have added an additional false relevance clause to each of those affected fixlets so people don’t try to run actions that no longer work. Once Microsoft comes out with a re-release for MS13-036, we’ll go ahead and supersede the stuff we have now as well as publish the re-released version.

(imported comment written by gcibirch91)

Hi

Ok thanks for the heads up.

(imported comment written by gcibirch91)

Hi

I believe Microsoft have re-released the patch above, is this correct? and when we will be getting the fixlet from Tivoli?

(imported comment written by liuhoting)

Hmmm I just double checked the MS13-036 bulletin. All of the KB2823324 download links are still unavailable, and all of Microsoft’s material is still saying to uninstall KB2823324 if you have it anywhere.

Where are you seeing that KB2823324 v2 got released?

If we see KB2823324 becoming available we’re giving it the same priority as a Patch Tuesday release, which means the turnaround time should be same day.

(imported comment written by gcibirch91)

Hi

I run the MBSA scanner and it was on that so presumed it had been re-released. If it hasnt then that is fine with me.

Lee

(imported comment written by liuhoting)

Thanks for the heads up. I’m going to have to try to give that a shot and see exactly what’s going on.

(imported comment written by gcibirch91)

Ok thanks

(imported comment written by liuhoting)

This should be published now under Patches for Windows (English), version 1766

(imported comment written by gcibirch91)

will the foreign patches becoming soon?

(imported comment written by liuhoting)

Yes those are going to get mirrored out to all the non-English sites as well. I’d expect them in the console tomorrow.

(imported comment written by gcibirch91)

will the old ones be seen as Corrupted or Superseeded?

(imported comment written by Hardison1)

Microsoft has now re-published this update as KB2840149. But when I see KB2840149 in my patches it shows a Source Release Date of 04/09/2013 instead of yesterdays date. Why is the date showing 04/09 instead of the date Microsoft released it?

(imported comment written by TerryWeiChao)

Content in the Patches for Windows (English) has been modified:

Fully Superseded Fixlet Messages:

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows 7 Gold/SP1 (KB2823324) (Superseded) (ID: 1303627)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows 7 Gold/SP1 (x64) (KB2823324) (Superseded) (ID: 1303631)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Server 2008 R2 Gold/SP1 (x64) (KB2823324) (Superseded) (ID: 1303635)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Server 2008 SP2 (KB2823324) (Superseded) (ID: 1303619)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Server 2008 SP2 (x64) (KB2823324) (Superseded) (ID: 1303623)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Vista SP2 (KB2823324) (Superseded) (ID: 1303611)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Vista SP2 (x64) (KB2823324) (Superseded) (ID: 1303615)

Modified Fixlet Messages:

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows 7 Gold/SP1 (KB2840149) (ID: 1303665)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows 7 Gold/SP1 (x64) (KB2840149) (ID: 1303667)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Server 2008 R2 Gold/SP1 (x64) (KB2840149) (ID: 1303669)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Server 2008 SP2 (KB2840149) (ID: 1303661)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Server 2008 SP2 (x64) (KB2840149) (ID: 1303663)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Vista SP2 (KB2840149) (ID: 1303657)

MS13-036: Vulnerabilities in Kernel-Mode Driver Could Allow Elevation Of Privilege - Windows Vista SP2 (x64) (KB2840149) (ID: 1303659)

Reason for Update:

KB2823324 has been superseded by KB2840149.

Fixlet Message field “Source Release Date” was updated for KB2840149. Information changes only.

Actions to Take:

None

Published site version:

Patches for Windows (English), version 1767

Additional links:

None

Application Engineering Team

Tivoli Endpoint Manager

(imported comment written by gcibirch91)

Hi

Will the foreign patches be affected to?

(imported comment written by liuhoting)

Yes. The foreign patches will also get the superseded treatment in a little bit.

(imported comment written by gcibirch91)

thanks