MS15-123: Description of the security update for Lync 2010 Attendee (admin level install): November 10, 2015



Summary
This update resolves a vulnerability in Skype for Business and Microsoft Lync. The vulnerability could allow information disclosure if an attacker invites a user to an instant message session and then sends that user a message that contains specially crafted JavaScript content. To learn more about this vulnerability, see Microsoft Security Bulletin MS15-123.

How to obtain and install this update

Method 1: Windows Update

This update is available through Windows Update. When you turn on automatic updating, this update will be downloaded and installed automatically. For more information about how to turn on automatic updating, see Get security updates automatically.

Method 2: Microsoft Download Center

You can obtain the stand-alone update package through the Microsoft Download Center. To install this update, follow the installation instructions on the download page.

DownloadDownload security update 3096738

Update deployment information

For deployment information about this update, see Microsoft Knowledge Base Article 3105872.

Update removal information

Note We do not recommend that you remove any security update.

To remove this update, use the Add or Remove Programs item or use the Programs and Features item in Control Panel.

Update restart information

This update does not require a system restart after you apply it unless files that are being updated are locked or are being used.

Update replacement information

This update replaces previously released update 3081089.

File information

The English (United States) version of this update installs files that have the attributes that are listed in the following tables. The dates and the times for these files are listed in Coordinated Universal Time (UTC). The dates and the times for these files on your local computer are displayed in your local time together with your current daylight saving time (DST) bias. Additionally, the dates and the times may change when you perform certain operations on the files.

File nameFile versionFile sizeDateTimePlatform
Appshapi.dll4.0.7577.44091,141,92025-Sep-201321:01x86
Appshcom.dll4.0.7577.4409282,27225-Sep-201321:01x86
Appshvw.dll4.0.7577.43881,896,60011-Apr-201322:27x86
File_attendeecommunicator.exe.manifestNot Applicable1,19324-May-201306:22Not Applicable
File_cures.dll4.0.7577.4456686,37628-Oct-201402:35x86
File_meetingjoinaxaoc4.0.7577.448452,05625-Oct-201507:56Not Applicable
File_npmeetingjoinpluginaoc.dll4.0.7577.448432,61625-Oct-201507:56x86
Ocpptview.dll4.0.7577.44462,072,37602-May-201403:50x86
Ocrecdll4.0.7577.4403791,70420-Jul-201302:05x86
Ogl.dll4.0.7577.44781,708,33621-Jul-201523:50x86
Privacystatement.rtfNot Applicable4701-Apr-201108:44Not Applicable
Programexe4.0.7577.448412,007,77625-Oct-201507:56x86
Rtmpltfm_dll4.0.7577.44846,417,70425-Oct-201507:56x86
Saext.dll4.0.7577.253319,75231-Mar-201109:43x86
Sqmapidll6.0.6000.16386141,06410-Feb-201112:28x86
Uccp_dll4.0.7577.44565,958,95228-Oct-201402:38x86
Ucdll4.0.7577.448413,333,79225-Oct-201508:15x86
Xceedzip.dll6.5.10316.0634,56016-May-201219:39x86

How to obtain help and support for this security update

Help for installing updates: Support for Microsoft Update

Security solutions for IT professionals: TechNet Security Troubleshooting and Support

Help for protecting your Windows-based computer from viruses and malware: Virus Solution and Security Center

Local support according to your country: International Support
Properties

Article ID: 3096738 - Last Review: 11/10/2015 18:10:00 - Revision: 1.0

Microsoft Lync 2010 Attendee

  • kbsecvulnerability kbsecurity kbsecbulletin kbfix kbexpertiseinter kbbug atdownload KB3096738
Feedback