MS14-027: Description of the security update for Windows systems that do not have update 2919355 installed: May 13, 2014

Applies To
Windows 8.1 Windows 8.1 Enterprise Windows 8.1 Pro Windows Server 2012 R2 Standard Windows Server 2012 R2 Foundation Windows Server 2012 R2 Datacenter Windows Server 2012 R2 Essentials Windows RT 8.1

Introduction

This security update resolves a vulnerability in Windows that could allow elevation of privilege if an attacker runs a specially crafted application that uses ShellExecute.

Summary

Microsoft has released security bulletin MS14-027. To learn more about this security bulletin:

How to obtain help and support for this security update

Help installing updates: Support for Microsoft Update

Security solutions for IT professionals:
TechNet Security Support and Troubleshooting

Help protect your Windows-based computer from viruses and malware: Virus and Security Solution Center

Local support according to your country:
International Support

FILE INFORMATION

The English (United States) version of this software update installs files that have the attributes that are listed in the following tables. The dates and times for these files are listed in Coordinated Universal Time (UTC). The dates and times for these files on your local computer are displayed in your local time and with your current daylight saving time (DST) bias. Additionally, the dates and times may change when you perform certain operations on the files.

Windows 8.1 and Windows Server 2012 R2 file information

For all supported x86-based versions of Windows 8.1

File name File version File size Date Time Platform
Shell32.dll 6.3.9600.16660 18,644,072 19-Apr-2014 06:49 x86

For all supported x64-based versions of Windows 8.1 and Windows Server 2012 R2

File name File version File size Date Time Platform
Shell32.dll 6.3.9600.16660 21,186,352 19-Apr-2014 11:15 x64
Shell32.dll 6.3.9600.16660 18,644,072 19-Apr-2014 06:49 x86