Notice: This website is an unofficial Microsoft Knowledge Base (hereinafter KB) archive and is intended to provide a reliable access to deleted content from Microsoft KB. All KB articles are owned by Microsoft Corporation. Read full disclaimer for more details.

Description of the security update for the elevation of privilege vulnerabilities in Windows Embedded POSReady 2009 and Windows Embedded Standard 2009: December 11, 2018


View products that this article applies to.

Summary

Windows elevation of privilege vulnerabilities exist in the following scenarios:
  • When Windows incorrectly handles calls to Win32k.sys.
  • When the Win32k component does not correctly handle objects in memory.
  • When the Windows kernel mode driver does not correctly handle objects in memory.
To learn more about these vulnerabilities, go to the following Common Vulnerabilities and Exposures (CVE). 

↑ Back to the top


How to get and install the update

Method 1: Windows Update

This update is available through Windows Update. When you turn on automatic updating, this update will be downloaded and installed automatically. For more information about how to turn on automatic updating, see Windows Update: FAQ.

Method 2: Microsoft Update Catalog

To get the standalone package for this update, go to the Microsoft Update Catalog website.

Important

If you install a language pack after you install this update, you must reinstall this update. Therefore, we recommend that you install any language packs that you need before you install this update. For more information, see Add language packs to Windows.

↑ Back to the top


Update information

Security update deployment information
For deployment details for this security update, go to the following article in the Microsoft Knowledge Base: 

↑ Back to the top


File information

File hash information
File nameSHA1 hashSHA256 hash
WindowsXP-KB4473078-x86-Embedded-ENU.exe2858CA4706ADD3D7AA39B20C931B2E1409EA90BEF3986A262432F7AD31C0A6DB8706E08437377CB120D417A677CAD132BA946519
File information
The English (United States) version of this software update installs files that have the attributes that are listed in the following tables. The dates and the times for these files are listed in Coordinated Universal Time (UTC). The dates and the times for these files on your local computer are displayed in your local time together with your current daylight saving time (DST) bias. Additionally, the dates and the times may change when you perform certain operations on the files.

Windows XP file information
For all supported x86-based versions
File nameFile versionFile sizeDateTimePlatform
Win32k.sys5.1.2600.76101,914,24013-Nov-201805:28x86
Updspapi.dll6.3.13.0382,84001-Feb-201821:28x86

↑ Back to the top


How to get help and support for this security update

Help for installing updates: Protect yourself online 

Help for protecting your Windows-based computer from viruses and malware: Microsoft Secure 

Local support according to your country: International Support

↑ Back to the top


Keywords: kbHotfixAuto, kb, kbsurveynew, kbsecvulnerability, kbsecurity, kbsecreview, kbfix, kbmustloc, kblangall, CI94689, kbexpertiseinter, kbbug, atdownload, kbsecbulletin

↑ Back to the top

Article Info
Article ID : 4473078
Revision : 14
Created on : 12/11/2018
Published on : 12/11/2018
Exists online : False
Views : 305