Microsoft August Patch Tuesday update offers nine updates
The fixes address Internet Explorer, Windows, Office, SQL Server, and Sharepoint vulnerabilities


Microsoft has posted nine bulletins in its August Patch Tuesday update, covering Internet Explorer, Windows, Office, SQL Server, and Sharepoint.
Two of its bulletins are rated critical and the updates should be applied immediately because they relate to Remote Code Execution vulnerabilities, while the others are ranked important.
Bulletin #1 relates to all versions of Internet Explorer - from IE 6 up to IE 11 on both Windows RT and Windows 8.1. It fixes bugs that could allow hackers to use Remote Code Execution through malicious web pages opened using the browser.
Wolfgang Kandek CTO of Qualys said: "These pages can be on sites that are either set up specifically for this purpose, requiring him or her to attract your users to the site or are on sites that are already under control of the attacker with an established user community, such as blogs and forums."
Bulletin #2 is a critical update for Windows affecting Windows 8 and Windows 8.1 plus the Media Center TV pack for Windows Vista. The update will fix bugs relating to the graphics processing pipeline that could allow a hacker to trick users into opening a malicious file.
Bulletin #3 affects OneNote in Office 2007 and targets a vulnerability relating to the file format and Remote Code Execution. Not applying the update could result in an attacker leading you to open a malicious file sent via Outlook. Newer versions of OneNote are not affected.
Bulletin #4 addresses vulnerabilities in SQL Server 2008, 2012 and 2014. It's ranked important because although it could mean a hacker could elevate their privileges, they would already need to have an account on the machine to exploit the vulnerability.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Bulletins #5 and Bulletin #6 relate to the Windows core operating system and like Bulletin #4, involve elevation of privilege vulnerabilities for existing users on the machine. A hacker could use the local network to achieve code execution remotely.
Kandek added: "Exploits for these types of vulnerabilities are part of the toolkit of any attacker as they are extremely useful, when the attackers gets an account on the machine, say through stolen credentials."
Bulletins #7 is a vulnerability in SharePoint Server 2013, while Bulletin #8 and Bulletin #9 are Security Feature Bypass bugs in .NET and newer versions of Windows.
Microsoft's Patch Tuesday update will be rolled out on August 12 (Tuesday). Anyone using the software and systems affected are advised to run Microsoft Baseline Security Analyzer, Windows Server Update Services (WSUS), Systems Management Server (SMS), and System Center Configuration Manager to detect and install the updates.

Clare is the founder of Blue Cactus Digital, a digital marketing company that helps ethical and sustainability-focused businesses grow their customer base.
Prior to becoming a marketer, Clare was a journalist, working at a range of mobile device-focused outlets including Know Your Mobile before moving into freelance life.
As a freelance writer, she drew on her expertise in mobility to write features and guides for ITPro, as well as regularly writing news stories on a wide range of topics.
-
Should AI PCs be part of your next hardware refresh?
AI PCs are fast becoming a business staple and a surefire way to future-proof your business
By Bobby Hellard
-
Westcon-Comstor and Vectra AI launch brace of new channel initiatives
News Westcon-Comstor and Vectra AI have announced the launch of two new channel growth initiatives focused on the managed security service provider (MSSP) space and AWS Marketplace.
By Daniel Todd
-
Windows 10 vs Windows 8.1: Which was the best operating system?
Vs We rate Windows 10 vs Windows 8.1 in a number of key categories for professional use
By Barry Collins
-
Windows 10 vs Windows 8.1 vs Windows 7 - Microsoft OS head-to-head
Vs We pit Microsoft's most popular operating systems against each other to see which is the greatest of all time
By Mike Passingham
-
Surface Pro 3 review: Everything you need to know
Reviews Microsoft may have just fixed Surface Pro 3 battery issue
By Joe Curtis
-
Dell Latitude 12 Rugged Tablet review
Reviews Dell's military-grade tablet wasn't rugged enough to survive IT Pro's Adam Shepherd
By Adam Shepherd
-
Top 10 Windows 8.1 and Windows 10 apps for 2015
Best Our collection of the best and most popular Windows 8.1and Windows 10 apps to download in 2015
By Caroline Preece
-
Windows 10 vs Windows 8.1: What’s new?
Vs Windows 10 brings back the Start Button, adds multiple desktops & an adaptable interface
By Khidr Suleman
-
Gov ends £5.5m XP custom support contract
News But the Met and NHS are still using XP, leaving them potentially exposed to hackers
By Joe Curtis
-
Windows 8.1 vs. Windows 7 – Which is best for you?
Vs As Windows 10 draws nearer and Microsoft distances itself from older OS, we look at the best option for your PC
By Kyle Nazario