Notice: This website is an unofficial Microsoft Knowledge Base (hereinafter KB) archive and is intended to provide a reliable access to deleted content from Microsoft KB. All KB articles are owned by Microsoft Corporation. Read full disclaimer for more details.

MS17-013: Description of the security update for Microsoft Graphics Component on Microsoft Silverlight 5: March 14, 2017


View products that this article applies to.

Summary

This security update resolves a vulnerability in Microsoft Silverlight. The vulnerability could allow remote code execution if a user visits a compromised website that contains a specially crafted Silverlight application. An attacker would have no way to force a user to visit a compromised website. Instead, an attacker would have to convince the user to visit the website, typically by enticing the user to click a link in either an email message or instant message that takes the user to the attacker's website.
To learn more about this vulnerability, see Microsoft Security Bulletin MS17-013.

↑ Back to the top


Important

  • All future security and nonsecurity updates for Windows RT 8.1, Windows 8.1, and Windows Server 2012 R2 require update 2919355 to be installed. We recommend that you install update 2919355 on your Windows RT 8.1-based, Windows 8.1-based, or Windows Server 2012 R2-based computer so that you receive future updates.
  • If you install a language pack after you install this update, you must reinstall this update. Therefore, we recommend that you install any language packs that you need before you install this update. For more information, see Add language packs to Windows.

↑ Back to the top


How to obtain and install the update

Method 1: Windows Update

This update is available through Windows Update. When you turn on automatic updating, this update will be downloaded and installed automatically. For more information about how to get security updates automatically, see Windows Update: FAQ.

Note For Windows RT 8.1, this update is available through Windows Update only.

Method 2: Microsoft Update Catalog

To get the stand-alone package for this update, go to the Microsoft Update Catalog.

Method 3: Microsoft Download Center

You can get the stand-alone update package through the Microsoft Download Center. Follow the installation instructions on the download page to install the update.
 

Click the download link in Microsoft Security Bulletin MS17-013 that corresponds to the version of Windows that you are running.

 

↑ Back to the top


Security update deployment information

Silverlight 5 for Windows (all supported releases)

Silverlight 5 for Windows (all supported releases)

Reference table

The following table contains the security update information for this software.

Security update file names

For Microsoft Silverlight 5 when installed on all supported 32-bit releases of Microsoft Windows:
silverlight.exe

 

For Microsoft Silverlight 5 Developer Runtime when installed on all supported 32-bit releases of Microsoft Windows:
silverlight_developer.exe

 

For Microsoft Silverlight 5 when installed on all supported 64-bit releases of Microsoft Windows:
silverlight_x64.exe

 

For Microsoft Silverlight 5 Developer Runtime when installed on all supported 64-bit releases of Microsoft Windows:
silverlight_developer_x64.exe

Installation switches

See the Silverlight Enterprise Deployment Guide

Restart requirement

This update does not require a restart.

Removal information

Use Add or Remove Programs item in Control Panel. (Note that the update cannot be removed without removing Silverlight.)

File information

See Microsoft Knowledge Base article 3193713

Registry key verification

For 32-bit installations of Microsoft Silverlight 5:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Silverlight "Version" = "5.1. 50905.0"

 

For 64-bit installations of Microsoft Silverlight 5:
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Silverlight "Version" = "5.1.50901.0"
and
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Silverlight "Version" = "5.1. 50905.0"

 

↑ Back to the top


File information

File hash
Package namePackage hash SHA 1Package Hash SHA 2
Silverlight.exe97B56D4E390241AE1BAABE65D41E4080270BCB1B6B846ECD6964515870AA10A58889204D05CEBB0B993C1B03ED4A3E4713E167EB
Silverlight_Developer.exeCD97A5D8F516D9E69B2BD4118EDD1D13ACB96EC37C312CEE79D3A77533B2F46A2A0A212A72CE804C7ACAF1614E38282D87AAA2E1
Silverlight_Developer_x64.exe37EBA3B1F5A710F45AFDD1968BDBD3BCFE562DA33F22C8210C96BB9FEBE1C1A57705B5FF3C8CF40F9BCD4AB4D3B5D084871343DA
Silverlight_x64.exe16712886955BAB475549184015D425E3091A635740EF19A61C23EE3D6BFCADBE7F87A56FD7ABCE44E305BAB68164B64D77FF30EC

 

 

↑ Back to the top


How to obtain help and support for this security update

How to get help and support for this security update
Help for installing updates: Windows Update: FAQ

Security solutions for IT professionals: TechNet Security Support and Troubleshooting

Help for protecting your Windows-based computer from viruses and malware: Microsoft Secure

Local support according to your country: International Support

↑ Back to the top


Keywords: kbsurveynew, kbsecvulnerability, kbsecurity, kbsecreview, kbsecbulletin, kbexpertiseinter, kblangall, kbfix, kb, kbbug, atdownload, kbmustloc

↑ Back to the top

Article Info
Article ID : 4013867
Revision : 24
Created on : 3/13/2017
Published on : 3/14/2017
Exists online : False
Views : 227