Blended Threat Vulnerability in SearchPath Could Allow Elevation of Privilege
Description:This security update resolves a publicly disclosed vulnerability in the Windows SearchPath function that could allow elevation of privilege if a user downloaded a specially crafted file to a specific location, then opened an application that could load the file under certain circumstances. The security update addresses the vulnerability by modifying the way that Windows loads files from the desktop.
Update type: Moderate
Release date: April 14, 2009
Applies to: All versions
Knowledge base: support.microsoft.com/kb/959426
Download link: 32-bit | 64-bit
Comments:Here are the specifics on the vulnerabilities covered by this update:
- Blended Threat Elevation of Privilege Vulnerability – CVE-2008-2540
For more information on this issue, including potential causes, workarounds, and resolutions, see: Microsoft KB Article KB959426.

Start
About
FAQ
Blogroll
Shop
Tips and Tricks
Windows Updates
Hotfixes
Fix It
Keyboard Shortcuts
Vista's Services
Vista's Commands
Product Reviews
Glossary
Videos
Web Links

Comments
nev schulz
Apr 15, 2009 at 6:44 pm
why can’t I install security update KB 959426 with windows XP
stavkol
Apr 22, 2009 at 4:22 am
Causes some functions of the Personalize menu become inaccessible throwing the exception that shell32.dll in System32 is locked even having admin rights. Restoring function fixes the problem.
Leave a Comment