Lucene search

K
mskbMicrosoftKB4025331
HistoryJul 11, 2017 - 7:00 a.m.

July 11, 2017—KB4025331 (Monthly Rollup)

2017-07-1107:00:00
Microsoft
support.microsoft.com
211

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.3

Confidence

Low

EPSS

0.94

Percentile

99.2%

July 11, 2017—KB4025331 (Monthly Rollup)

Improvements and fixes

This security update includes improvements and fixes that were a part of update KB4022721 (released June 27, 2017) and resolves the following issues:

  • Addressed issue called out in KB4022721 where Internet Explorer 10 may close unexpectedly when you visit some websites.

  • Security updates to Datacenter Networking, Windows Search, Windows Virtualization, Windows Server, Windows Storage and File Systems, Windows shell, Microsoft Graphics Component, Windows kernel-mode drivers, Windows kernel, Microsoft PowerShell, Microsoft NTFS, Internet Explorer 10, and ASP.NET.
    For more information about the security vulnerabilities resolved, please refer to the Security Update Guide.More InformationImportant

  • After installing the security updates for CVE-2017-8563, administrators need to set registry key LdapEnforceChannelBinding to enable the fix for the CVE. For more information about setting the registry key, see Microsoft Knowledge Base article 4034879.

Known issues in this update

Symptom Workaround
IME may hang in certain scenarios. Install KB2960837
The WordPad application can sometimes crash on launch after installing KB4025331. Microsoft is working on a resolution and will provide an update in an upcoming release.

How to get this update

This update will be downloaded and installed automatically from Windows Update. To get the standalone package for this update, go to the Microsoft Update Catalog website. File informationFor a list of the files that are provided in this update, download the file information for update 4025331.

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.3

Confidence

Low

EPSS

0.94

Percentile

99.2%