Hi, Folks!
It’s Patch Tuesday.
This month brings some downright scary news in the security world.
Intel announced they made a “minor coding error” in their CPUs designed for Enterprise deployment, which allows unauthenticated third parties to control pretty much every aspect of their computers. Oops.
Microsoft released a critical out-of-band security update yesterday, the day before Patch Tuesday, due to the severity of the bug in the Microsoft Malware Protection Engine (a component used by Microsoft firewalls, Windows Defender, Microsoft Security Essentials and other Microsoft security products). If you’re running Windows 10 the update should be have been installed automatically for you during the definition update process. If running an older version of Windows, it’ll be installed for you today when you install the rest of Windows Updates. You are going to install updates today, right?
Have I Been Pwned announced that another billion (with a B) accounts have been released on the web. If nothing else, consider this a reminder that if you haven’t started using a password manager yet, you’re really only hurting yourself.
The Windows 10 Creators Update (aka 1703, aka TH4) has been out about a month now and is remarkably stable. This major upgrade takes a few hours to install but improves responsiveness and corrects the app reinstall bug that has plagued previous builds of Windows 10. Windows 10 version 1507 (aka 10240) is now End-of-Life, which means that it will no longer receive important security updates. If you’re still running this version of Windows you must upgrade to at least version 1511 (10586) to continue to receive security updates. Use the installer here to get the most current version:
https://12pd.com/click?win10upgrade
Like Win10 1507, Windows Vista is dead. Really. It won’t be missed. If you’re still running Vista, take the machine off the Internet (forever) or switch to Fedora or any other supported operating system:
https://getfedora.org/
If you need help, contact me.
Now back to our regularly scheduled program.
The typical computer should see roughly 1gb in updates today. Let’s get started.
Microsoft released updates to Windows, .NET, Windows Defender, Internet Explorer, Edge, WEPOS, and MSRT (~800mb). This includes security updates. A reboot is required.
Google Chrome OS 58.0.3029.89 is a security update. Use Menu, Help, About to install the most current version. A reboot is required.
Adobe Flash Player 25.0.0.171 is a security update. Flash is being actively replaced with HTML5 on most sites and services, however, so unless you’re 110% positive you need it for critical functions, you should remove it instead. And, within those browsers that have it embedded (Chrome, Edge, Internet Explorer 11+) your best option is to disable it. It’s just not worth the risk.
Win: https://12pd.com/click?flash
Win: https://12pd.com/click?flashie
Mac: https://12pd.com/click?flashmac
Don’t forget to check your mobile devices, too! Many updates will also apply to your tablet, phone, kindle or television – so check your device-appropriate App Store and install updates.
Important Notes
Everything above this section should be checked by everyone on every computer. Chances are good that close to every single computer you touch will be affected by those updates. This is not the case with the items below, though you should still check each line item below to see if it applies to software you have installed.
Please remember that while I list many different applications within these updates, most people should ONLY install updates for a program if they already have a previous version of that program installed.
It is essential to maintain all the applications you have installed on your computer, but often you can minimize the time investment and the potential for exploitation simply by uninstalling software you do not need.
Also note that using the applications own “check for updates” function, when available, will best preserve your current settings, and often avoid any crapware that might come with a fresh installer. Use this option if it’s available to you.
Finally, if you’re sick of doing this all yourself, let me! Call or email me any time, and we can set you up with subscription SaferPC updates which will be installed each month whenever necessary. Click, call or email for more details:
https://saferpc.info/updates/
209-565-12PD
shawn@12pointdesign.com
Driver Updates
If you’re using this hardware – these updates are for you.
Display Driver Uninstaller 17.0.6.4 improves update checking, and is now digitally signed. This should be treated as a security update.
http://www.wagnardsoft.com/display-driver-uninstaller-ddu
Browser Updates
One or more of these are likely to be of interest to everyone.
Google Chrome 58.0.3029.96 is a security update. Use Menu, Help, About to install the most current version.
Firefox 53.0.2 is a security update. Use Menu, Help, About to install the most current version.
Email Updates
One or more of these are likely to be of interest to everyone.
Thunderbird 52.1.0 is a security update. Use Menu, Help, About to install the most current version.
Internet Updates
One or more of these are likely to be of interest to everyone.
.NET Framework 4.7 is a major feature update. This should be treated as a security update. Use Windows Update to get the most current version.
Adobe Shockwave 12.2.8.198 is a security update. Shockwave is not required for most users, so you’re better off removing it than updating. If you find that you do require it later on, you can always install the update then.
https://12pd.com/click?shockwave
Silverlight 5.1.50906 is a security update.
http://www.microsoft.com/getsilverlight/Get-Started/Install/Default.aspx
Java 8u131 is a security update. Java is *not* JavaScript, and most computers do not require it. You’re better off removing it unless you are 100% sure you do require it. You can always install it later if you discover an application requires Java.
http://www.java.com/en/download/manual.jsp
Skype 7.35.0.102 improves stability and reliability. This is not a security update.
https://12pd.com/click?skype
Line 7.3.0 adds Ladder Shuffle and Relay. This is not a security update.
http://line.me/update
WinSCP 5.9.5 is a security update.
http://winscp.net/eng/index.php
Evernote 6.5.4.4720 fixes several bugs. This is not a security update.
http://www.evernote.com/
Nmap 7.40 adds several new scripts, updates libraries, and adds new features. This is a security update.
http://nmap.org/
uTorrent 3.5.0 Build 43580 is a security update.
http://www.utorrent.com/downloads
FileZilla 3.25.2 is a security update.
http://filezilla-project.org/
MaxMind GeoIP Data 201705 is a data refresh.
http://dev.maxmind.com/geoip/
Media Updates
These are unlikely to be of interest to most people.
CDBurnerXP 4.5.7.6623 resolves several bugs. This is not a security update.
http://cdburnerxp.se/
MusicBrainz Picard 1.4.2 resolves several bugs. This is not a security update.
http://musicbrainz.org/doc/MusicBrainz_Picard
Game Updates
These are unlikely to be of interest to most people.
EA Origin 10.4.9.38188 updates the interface and resolves several bugs. This is not a security update.
https://www.origin.com/en-us/download
Office Updates
One or more of these are likely to be of interest to most people.
Paint.net 4.0.16 resolves a crash bug. This is not a security update.
http://www.getpaint.net/
IcoFX 3.0.3 fixes scaling issues on high-DPI displays. This is not a security update.
http://icofx.ro/
Kindle for PC 1.20.1 Build 47037 does not provide a changelog, so should be treated as a security update.
https://12pd.com/click?kindle4pc
Security Software Updates
One or more of these is likely to be of interest to most people.
Tails 2.12 is a security update.
https://tails.boum.org/install/index.en.html
Norton Power Eraser 20170412 is a security update.
https://support.norton.com/sp/en/us/home/current/solutions/kb20100824120155EN_EndUserProfile_en_us
Avast! Home Edition 17.4.2294 resolves several bugs and updates the GUI. This is a security update.
http://www.avast.com/free-antivirus-download
KeePass 1.32 improves several features, fixes bugs and updates libraries. This is a security update.
http://keepass.sourceforge.net/
Wireshark 2.2.6 is a security update.
http://www.wireshark.org/
DNSQuerySniffer 1.61 adds ability to show only failed DNS queries. This is not a security update.
http://www.nirsoft.net/utils/dns_query_sniffer.html
MSRT 5.48 is a security update.
http://www.microsoft.com/en-us/download/malicious-software-removal-tool-details.aspx
Wireless Network Watcher 2.11 updates the internal MAC databae. This is not a security update.
http://www.nirsoft.net/utils/wireless_network_watcher.html
RogueKiller 12.10.8 is a security update.
http://www.adlice.com/softwares/roguekiller/
TDSSKiller 3.1.0.15 is a security update.
http://support.kaspersky.com/viruses/utility#TDSSKiller
Capture Updates
These are unlikely to be of interest to most people.
XSplit Broadcaster 2.9.1701.1640 improves stability on Windows 10 Creators Update. This is not a securty update.
http://www.xsplit.com/get/
XSplit Gamecaster 2.9.1701.1621 improves stability on Windows 10 Creators Update. This is not a securty update.
http://www.xsplit.com/get/
Converter Updates
These are unlikely to be of interest to most people.
FFmpeg 3.3 doesn’t provide a changelog, so should be treated as a security update.
http://ffmpeg.org/ffmpeg.html
DVDFab 10.0.3.6 improves stability and compatibility. This is not a security update.
http://www.dvdfab.cn/download.htm
Utility Updates
These are unlikely to be of interest to most people.
NTLite 1.3.0.5024 improves compatibility with Windows 10 Creators Update. This is not a security update.
https://www.ntlite.com/download/
GoodSync 10.4.4 improves stability and compatibility. This is not a security update.
https://12pd.com/click?goodsync
RoboForm 8.3.3 improves stability. This is not a security update.
https://12pd.com/click?rf
Bitcoin 0.14.1 improves performance, fixes several bugs and stability issues. This is not a security update.
http://bitcoin.org/en/download
CintaNotes 3.7 adds drag & drop from any application, improves printing and stability, and resolves several bugs. This is not a security update.
http://cintanotes.com/download
DesktopOK 4.69 improves compatibility. This is not a security update.
http://www.softwareok.com/?seite=Freeware/DesktopOK
AS SSD Benchmark 1.9.5986 improves stability and compatibility within Windows 10. This is not a security update.
http://alex-is.de/PHP/fusion/downloads.php?cat_id=4&download_id=9
LessMSI 1.6.1 improves stability. This is not a security update.
http://lessmsi.activescott.com/
NetworkTrafficView 2.06 adds ability to map source IP address. This is not a security update.
http://www.nirsoft.net/utils/network_traffic_view.html
SearchMyFiles 2.82 adds ability to exclude folders by name without path. This is not a security update.
http://www.nirsoft.net/utils/search_my_files.html
USBDeview 2.66 adds the ability to start the remote registry service even if it’s disabled. This is not a security update.
http://www.nirsoft.net/utils/usb_devices_view.html
WakeMeOnLan 1.79 adds a 64-bit version and updates the MAC address list. This is not a security update.
http://www.nirsoft.net/utils/wake_on_lan.html
WifiChannelMonitor 1.48 updates the internal MAC address list. This is not a security update.
http://www.nirsoft.net/utils/wifi_channel_monitor.html
TaskSchedulerView 1.30 adds quick-filter capability. This is not a security update.
http://www.nirsoft.net/utils/task_scheduler_view.html
CCleaner 5.29.6033 improves compatibility and application support. This is not a security update.
https://12pd.com/click?ccleaner
RapidEE 9.1 build 936 updates translations. This is not a security update.
http://www.rapidee.com/en/download
TeamViewer 12.0.77242 resolves several bugs. This is not a security update.
https://www.teamviewer.com/en-us/download/windows/
WinScan2PDF 3.43 improves compatibility with Windows 10 Creators Update. This is not a security update.
http://www.softwareok.com/?seite=Microsoft/WinScan2PDF
Developer Updates
These are unlikely to be of interest to most people.
Redemption 5.14.0.4776 adds several new objects, and resolves several bugs. This is not a security update.
http://www.dimastr.com/redemption/
Virtual Machine Updates
These are unlikely to be of interest to most people.
VMware Player 12.5.5 is a security update.
http://www.vmware.com/products/player/
VirtualBox 5.1.22-115126 resolves several bugs. This is not a security update.
http://www.virtualbox.org/wiki/Downloads
Web Package Updates
These are likely to be of interest only to web developers.
Adminer 4.3.1 resolves several bugs. This is not a security update.
http://www.adminer.org/en/
Piwigo 2.9.0 is a major update that adds several new features. This is not a security update.
http://piwigo.org/
TinyMCE 4.6.0 adds several features and fixes several bugs. This is not a security update.
http://www.tinymce.com/download/
Drupal 8.3.2 resolves dozens of bugs. This is not a security update.
http://drupal.org/download
HumHub 1.2.0 resolves several bugs. This is not a security update.
https://www.humhub.org/en/download
MailEnable 9.74 resolves several bugs. This is not a security update.
http://www.mailenable.com/
ownCloud Client 2.3.2 resolves several stability and reliability bugs. This is not a security update.
https://owncloud.org/install/
ScreenConnect 6.2.12963.6312 resolves several bugs, and improves compatibility. This is not a security update.
http://www.screenconnect.com/Download
WordPress 4.7.4 resolves dozens of bugs. This is not a security update.
http://wordpress.org/
YOURLS 1.7.2 improves stability and GUI, updates libraries, resolves several bugs. This is not a security update.
http://yourls.org/
That’s all for now folks. Keep it clean out there. 😉
Regards,
Shawn K. Hall
https://SaferPC.info/
https://12PointDesign.com/