Microsoft's Security Bulletins for January report the release of two patches rated "critical" and one rated "important". Details of the vulnerabilities these patches pertain to are published in Microsoft's technical summary of January's Security Bulletins.
Microsoft Security Bulletin MS05-001 - [KB890175] reports the release of a patch against a serious vulnerability in HTML Help that could allow for remote code execution on an affected system. This patch is rated "critical" by Microsoft
The following software is affected by this vulnerability:
Microsoft Security Bulletin MS05-002 - [KB891711] reports the release of a patch against a serious vulnerability in cursor and icon format handling that could allow for remote code execution on an affected system. This patch is rated "critical" by Microsoft
The following software is affected by this vulnerability:
Microsoft Security Bulletin MS05-003 - [KB871250] reports the release of a patch against a vulnerability in the indexing service that could allow for remote code execution on an affected system. This patch is rated "important" by Microsoft
The following software is affected by this vulnerability:
Users are advised to patch their systems against these vulnerabilities immediately. Patches can be downloaded via links posted within the appropriate Security Bulletin or by visiting Windows Update.
Relevant links: