Microsoft announced February Win10/Win8.1/Win7 patch update details A total of 13 security updates

  

Microsoft pushed the February 2016 security update to users on the morning of February 10, and has announced the details of this month's update. In February 2016, there were 13 security updates, of which the first six were serious and the remaining seven were important. The following small series will give you details in detail, friends in need can come and find out!

Affected operating systems and components include: Windows Vista, Win7, Win8, Win8.1, Win10, Windows Server 2008/2012 (R2), and Windows RT and Windows RT 8.1 for tablet devices. Includes software and services such as Microsoft Office 2007/2010/2013/2013 RT.

It is recommended that users download and install updates from Windows Update in a timely manner.

Features of February 2016 Security Update:

Cumulative Security Update for Internet Explorer (3134220)

This security update fixes in Internet Explorer Multiple vulnerabilities. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted web page using Internet Explorer. An attacker who successfully exploited this vulnerability could gain the same user rights as the current user. An attacker who successfully exploited this vulnerability could take control of an affected system if the current user is logged in with administrative user rights. An attacker can then install programs; view, change, or delete data; or create new accounts with full user rights.

Cumulative Security Update for Microsoft Edge (3134225)

This security update resolves vulnerabilities in Microsoft Edge. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted web page using Microsoft Edge. An attacker who successfully exploited these vulnerabilities could gain the same user rights as the current user. Customers with accounts configured to have fewer system user rights are less affected than customers with administrative user rights.

Microsoft Windows PDF Library Security Update for Remote Code Execution Vulnerability (3138938)

This security update resolves vulnerabilities in Microsoft Windows. A more serious vulnerability could allow remote code execution if the Microsoft Windows PDF library handles improper application programming interface (API) calls, allowing an attacker to run arbitrary code on the user's system. An attacker who successfully exploited these vulnerabilities could gain the same user rights as the current user. Customers with accounts configured to have fewer system user rights are less affected than customers with administrative user rights. However, an attacker cannot force a user to download or open a malicious PDF document.

Windows Journal Security Update for Remote Code Execution (3134811)

This security update fixes a vulnerability in Microsoft Windows. This vulnerability could allow remote code execution if a user opens a specially crafted journal file. Users who are configured to have fewer system user rights are less affected than users with administrative user rights.

Microsoft Windows Security Update for Remote Code Execution Vulnerability (3134228)

This security update resolves vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow remote code execution if an attacker could log in to the target system and run a specially crafted application.

Microsoft Office Security Update for Remote Code Execution Vulnerability (3134226)

This security update resolves vulnerabilities in Microsoft Office. The most severe of these vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file. An attacker who successfully exploited these vulnerabilities could run arbitrary code in the context of the current user. Customers with accounts configured to have fewer system user rights are less affected than customers with administrative user rights.

WebDAV Security Update for Fixing Elevation of Privilege Vulnerability (3136041)

This security update fixes a vulnerability in Microsoft Windows. This vulnerability could allow elevation of privilege if an attacker uses Microsoft Web Distributed Authoring and Versioning (WebDAV) clients to send specially crafted input to the server.

Remote Desktop Display Driver Security Update for Fixing Elevation of Privilege Vulnerability (3134700)

This security update fixes a vulnerability in Microsoft Windows. This vulnerability could allow elevation of privilege if an authenticated attacker uses RDP to log in to the target system and send specially crafted data over the connection. By default, RDP is not enabled on all Windows operating systems. This risk does not exist for systems that do not have RDP enabled.

Windows Kernel-Mode Driver Security Update for Fixing Elevation of Privilege Vulnerability (3136082)

This security update fixes a vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application.

.NET Framework Security Update for Remediation of Denial of Service Vulnerabilities (3137893)

This security update resolves vulnerabilities in the Microsoft .NET Framework. If an attacker implants a specific XSLT into the client XML Web Part, these vulnerabilities may cause the server to recursively compile XSLT transformations, causing the server to denial of service.

Security Update for Active Directory Federation Services to Fix Denial of Service Vulnerability (3134222)

This security update resolves a vulnerability in Active Directory Federation Services (ADFS) . If an attacker sends specific input data to an ADFS server during forms-based authentication, the vulnerability could cause a denial of service and cause the server to become unresponsive.

NPS RADIUS Server Security Update for Remediation of Denial of Service Vulnerability (3133043)

This security update resolves vulnerabilities in Microsoft Windows. If an attacker sends a specially crafted username string to NPS, the vulnerability could cause Network Policy Server (NPS) to deny the service and deny RADIUS authentication on NPS.

Security Update for Adobe Flash Player (3135782)

This security update fixes all supported versions of Windows Server 2012, Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows Adobe Flash Player vulnerability on 10.

Microsoft's KB3135173 cumulative update for Windows 10 includes several of the above updates. For details, see "Win10 official version 10586.104 updated? Win10 official version 10586.104 update content summary (continuously updated)."

Copyright © Windows knowledge All Rights Reserved