MS12-007: Vulnerability in Anti-XSS Library could allow information disclosure: January 10, 2012

Microsoft has released security bulletin MS12-007. To view the complete security bulletin, visit one of the following Microsoft websites:

How to obtain help and support for this security update

Help installing updates:
Support for Microsoft Update

Security solutions for IT professionals:
TechNet Security Troubleshooting and Support

Help protect your computer that is running Windows from viruses and malware:
Virus Solution and Security Center

Local support according to your country/region:
International Support

INTRODUCTION

The English (United States) version of this software update installs files that have the attributes that are listed in the following tables. The dates and times for these files are listed in Coordinated Universal Time (UTC). The dates and times for these files on your local computer are displayed in your local time and with your current daylight saving time (DST) bias. Additionally, the dates and times may change when you perform certain operations on the files.

File name File version File size Date Time
AntiXSS.CHM 207815 12/14/2011 12:21
Eula.rtf 36507 12/9/2011 10:16
NET20\AntiXSSLibrary.dll 4.2.0.0 63784 12/14/2011 13:07
NET20\AntiXSSLibrary.xml 196230 12/15/2011 11:30
NET35\AntiXSSLibrary.dll 4.2.0.0 62760 12/14/2011 13:07
NET35\AntiXSSLibrary.xml 196230 12/14/2011 13:00
NET40\AntiXSSLibrary.dll 4.2.0.0 63784 12/14/2011 13:07
NET40\AntiXSSLibrary.xml 196230 12/14/2011 13:00
SANITIZER\HtmlSanitizationLibrary.dll 4.2.0.0 421160 12/14/2011 13:07
SANITIZER\HtmlSanitizationLibrary.xml 169252 12/14/2011 13:00

        
This security bulletin applies to the following Microsoft Anti-Cross Site Scripting libraries:

  • Microsoft Anti-Cross Site Scripting Library V4.0
  • Microsoft Anti-Cross Site Scripting Library V3.1

For more information, visit the following Microsoft webpage:

Microsoft Anti-Cross Site Scripting Library V4.2

FILE INFORMATION