MS17-SEP: Security Only Quality Update - Security Only - Windows Server 2012 R2 - .NET Framework 3.5 - KB4040967 (x64)
Log In or Register to download the BES file, and more.

0 Votes

Description

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

Note: Affected computers may report back as 'Pending Restart' once the update has run successfully, but will not report back their final status until the computer has been restarted.

Note: To deploy this Fixlet, ensure that Windows Update service is not disabled.

Note: This security update is also referenced under KB4041092.

File Size:

308.5 KB

Property Details

ID24844
StatusAlpha - Code that was just developed
TitleMS17-SEP: Security Only Quality Update - Security Only - Windows Server 2012 R2 - .NET Framework 3.5 - KB4040967 (x64)
CategorySecurity Update
Download Size315855
SourceMicrosoft
Source IDKB4041092
Source SeverityImportant
Source Release Date9/12/2017 12:00:00 AM
CVENamesCVE-2017-8759
KeywordsTesting multiple Fixlets
Added by on 10/5/2017 3:50:32 AM
Last Modified by on 10/5/2017 3:50:32 AM
Counters 8420 Views / 0 Downloads
User Rating 1 star 2 star 3 star 4 star 5 star * Average over 0 ratings. ** Log In or Register to add your rating.

Relevance

Used in 365 fixlets   * Results in a true/false
Show indented relevance
(if( name of operating system starts with "Win" ) then platform id of operating system != 3 else false) AND (if exists property "in proxy agent context" then ( not in proxy agent context ) else true )
Used in 380 fixlets and 2 analyses   * Results in a true/false
Show indented relevance
x64 of operating system
Used in 127 fixlets   * Results in a true/false
Show indented relevance
not ia64 of operating system
Used in 1 fixlet   * Results in a true/false
Show indented relevance
(name of it = "Win2012R2" OR (name of it = "Win2012" AND (value "CurrentVersion" of it as string is "6.3" AND value "ProductName" of it as string does not contain "2016") of key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion" of native registry)) of operating system
Used in 1 fixlet   * Results in a true/false
Show indented relevance
(name of it = "Win2012R2" OR name of it = "Win2012" AND (value "CurrentVersion" of it as string is "6.3" AND value "ProductName" of it as string does not contain "2016") of key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion" of native registry) of operating system
Used in 1 fixlet   * Results in a true/false
Show indented relevance
exists key "HKLM\Software\Microsoft\NET Framework Setup\NDP" whose (exists keys whose (name of it starts with "v3.5") of it) of registry
Used in 1 fixlet   * Results in a true/false
Show indented relevance
if (exists key "ApplicabilityEvaluationCache\Package_for_KB4040967~31bf3856ad364e35~amd64~~6.3.1.0" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing" of native registry) then ((set of (7;112) contains item 0 of it AND set of (4294967264;4294967232;0;2;4;32;64;101) contains item 1 of it) of (value "ApplicabilityState" of it as string as integer, value "CurrentState" of it as string as integer) of key "ApplicabilityEvaluationCache\Package_for_KB4040967~31bf3856ad364e35~amd64~~6.3.1.0" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing" of native registry) else ((exists keys ("Package_for_KB2919355~31bf3856ad364e35~amd64~~6.3.1.14") whose ((it = 6 OR it = 7 OR it = 96 OR it = 112) of (value "CurrentState" of it as integer)) of item 0 of it AND ((exists keys ("Microsoft-Windows-NetFx2-OC-Package~31bf3856ad364e35~amd64~~6.3.9600.16384";"Microsoft-Windows-NetFx2-ServerCore-OC-Package~31bf3856ad364e35~amd64~~6.3.9600.16384") whose ((it = 6 OR it = 7 OR it = 96 OR it = 112) of (value "CurrentState" of it as integer)) of it) of item 0 of it AND (exists key "amd64_netfx-system.runtime.remoting_b03f5f7f11d50a3a_none_fbd59514607707be" whose (exists key (if (exists default value of it) then default value of it as string else "6.3") whose ((it >= "6.3.9600" AND it < "6.3.9600.21032") of (default value of it as string as version)) of it) of it) of item 1 of it OR (exists keys ("Microsoft-Windows-NetFx2-OC-Package~31bf3856ad364e35~amd64~~6.3.9600.16384";"Microsoft-Windows-NetFx2-ServerCore-OC-Package~31bf3856ad364e35~amd64~~6.3.9600.16384";"Microsoft-Windows-NetFx2-ServerCore-OC-WOW64-Package~31bf3856ad364e35~amd64~~6.3.9600.16384") whose ((it = 6 OR it = 7 OR it = 96 OR it = 112) of (value "CurrentState" of it as integer)) of it) of item 0 of it AND (exists key "msil_system.runtime.remoting_b77a5c561934e089_none_ed91333e2a38b0a5" whose (exists key (if (exists default value of it) then default value of it as string else "6.3") whose ((it >= "6.3.9600" AND it < "6.3.9600.21032") of (default value of it as string as version)) of it) of it) of item 1 of it)) of (key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages" of it, key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners" of it) of native registry)
Used in 1 fixlet   * Results in a true/false
Show indented relevance
exists (files ("system.security.dll"; "system.dll") of (folders ("Microsoft.NET\Framework\v2.0.50727"; "Microsoft.NET\Framework64\v2.0.50727") of windows folder; (folder (value "All Assemblies In" of it as string)) of keys whose (exists value "All Assemblies In" of it) of keys "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\AssemblyFolders" of (x32 registries; x64 registries); system folder; system x64 folders)) whose (version of it < "2.0.50727.8770")
Used in 1 fixlet   * Results in a true/false
Show indented relevance
not pending restart "4fef8d9dd4c6101a01eac7fb7eb8f14bc2dac70e"

Actions

Action 1 (default)

Action Link Click here to initiate the deployment process.
Script Type BigFix Action Script
prefetch windows8.1-kb4040967-x64_4fef8d9dd4c6101a01eac7fb7eb8f14bc2dac70e.msu sha1:4fef8d9dd4c6101a01eac7fb7eb8f14bc2dac70e size:315855 http://download.windowsupdate.com/c/msdownload/update/software/secu/2017/09/windows8.1-kb4040967-x64_4fef8d9dd4c6101a01eac7fb7eb8f14bc2dac70e.msu sha256:fedc4c722d67e3a5f18752c9eab2c6933e68b370e259f0e408e9bf0ef4391c4f

// Is Windows Update service running?
continue if {exists running service "wuauserv" OR NOT exists service "wuauserv" whose (start type of it = "disabled")}

waithidden "{pathname of system folder & "\wusa.exe"}" "{pathname of client folder of current site & "\__Download\windows8.1-kb4040967-x64_4fef8d9dd4c6101a01eac7fb7eb8f14bc2dac70e.msu"}" /quiet /norestart

action requires restart "4fef8d9dd4c6101a01eac7fb7eb8f14bc2dac70e"
Success Criteria

This action will be considered successful when the applicability relevance evaluates to false.

Action 2

Action Link Click here to see the Knowledge Base Article for this update.
Script Type URL
https://support.microsoft.com/kb/4041092
    

Sharing

Social Media:
Share this page on Yammer

Comments

Log In or Register to leave comments!