Home / bulletins MS09-054 - Critical: Cumulative Security Update for Internet Explorer (974455) - Version:2.0
Posted on 02 November 2009
There is an newer version: MS09-054 - Version: 1.0
CriticalSeverity Rating: Critical - Revision Note: V2.0 (November 2, 2009): Revised to announce the availability of a hotfix to address application compatibility issues. Customers who have already applied this update may install the hotfix from Microsoft Knowledge Base Article 976749. Also corrected the log file names, spuninst folder names, and registry key values for Microsoft Windows 2000.Summary: This security update resolves three privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. Firefox users who are running the Windows Presentation Foundation (WPF) plug-in and do not have it disabled should also apply this security update. For more information regarding this issue, please see the FAQ section for HTML Component Handling Vulnerability – CVE-2009-2529.
Other versions
- MS09-054 - Version: 1.2
- MS09-054 - Version: 2.0
- MS09-054 - Version: 1.1
- MS09-054 - Version: 1.0