After a series of pushed-then-pulled buggy fixes to the admittedly buggy patches, we’re still waiting for updated versions. Article coming in Computer
[See the full post at: Where are the fixes to the botched June Office security patches?]
![]() |
Patch reliability is unclear, but widespread attacks make patching prudent. Go ahead and patch, but watch out for potential problems. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Where are the fixes to the botched June Office security patches?
Home » Forums » Newsletter and Homepage topics » Where are the fixes to the botched June Office security patches?
- This topic has 18 replies, 12 voices, and was last updated 7 years, 9 months ago.
Tags: KB 3191849 KB 3191898 KB 3191932 KB 3191938 KB 3203467 KB 3213654 KB 401104 they June 2017 Black Tuesday
AuthorTopicViewing 7 reply threadsAuthorReplies-
Anonymous
Inactive -
Noel Carboni
AskWoody_MVPJuly 23, 2017 at 12:10 pm #126101I don’t find it hard to believe.
It’s easy to hack a small patch in. And sometimes a little change is all that’s needed – for example a buffer length check is added. That may even be a majority of the patch cases.
However, in the case of a software design flaw allowing someone to compromise the system, it’s WAY harder to re-design just enough of the system internals so that the original problem is actually resolved, without destabilizing it, ruining performance, or just spending way too much time and money at the work.
In software engineering circles, it’s known as “going down the rabbit hole”.
Thinking about extremes, at some point you could imagine an engineer having to re-design a great deal of the system – then lo and behold you’d have a whole new version of the OS, redesigned from the inside out. Such things can surely get out of hand.
In these kinds of cases the only good solution is either to design it better to start with (i.e., so there’s no vulnerability in the first place), or to bring very experienced, very smart people in who know the system well to redesign just enough so that the vulnerability is eliminated, but without breaking a bunch of other things or making the system much less efficient.
Trouble is, the original designers may be gone. Heck, Windows is old enough that they may even be dead of old age. They may not have documented it well, and the people tasked with working on the patch might not know enough to fix it. Without a test organization, we know who gets to find the botched patches.
There may actually be things they will NEVER be able to fix.
-Noel
-
anonymous
Guest-
woody
Manager
anonymous
GuestJuly 21, 2017 at 9:16 am #125874This would appear to be another example of how the degradation of the QA testing at MS is hurting users and MS. Time and again, we see update patches pushed out by MS with issues that would likely have been caught with more rigorous QA testing pre-release. The idea of coopting users as uncompensated beta testers will never be a substitute for real in-house testing.
-
anonymous
Guest -
lurks about
AskWoody LoungerJuly 21, 2017 at 5:30 pm #125955To date, not much. But it is at best a short term play to save some money. The longer MS does not have proper testing the more likely they release a real nightmare of a patch. When this patch hits it will be not only in the tech press but in the regular media and all over Facebook. The howling will be loud and fingers will be pointing. As Woody noted on the recent Atom dust up, this will be a foreseeable consequence of poor testing.
As a programmer I respect my testing colleagues because they have save my hindquarters many times from a dumb mistake I made and never caught. And yes, I test my code.
3 users thanked author for this post.
-
Seff
AskWoody Plus-
woody
Manager -
Seff
AskWoody PlusJuly 21, 2017 at 11:02 am #125908No problem Woody, thanks for fixing the link.
I’ve read the article. The only one of the updates that I was offered in June is KB3203467 which I didn’t install as it became unchecked and was known to be buggy. It’s still being offered today but remains unchecked.
1 user thanked author for this post.
-
le_clandestin
AskWoody PlusJuly 21, 2017 at 12:09 pm #125909At work we received that email from Microsoft Premier last Monday concerning security patches for Outlook to be released on Tuesday. Then Wednesday, a new email came telling us that they postponed the updates for at least one week. At least they didn’t released them and use us as guinea pigs.
Excerpt from the email:
This alert is notification that we have postponed the release of new security updates for Outlook that address known functional issues, previously scheduled for July 18, 2017.
Answers to anticipated questions
Q: When can we expect the Outlook updates to be released?
A: The release is postponed for at least one week. When we have a new target date for the release, we will send a notification in a new alert.Q: Why was the update release postponed?
A: Quality of updates is a top priority. We identified an issue that requires additional code changes and testing before release.Q: Where can I find more information about the status of functional issues affecting Outlook from the June release?
A: When more information is available, it will be added to the Office Support Article Outlook known issues in the June 2017 security updates.Q: How can I be notified whenever Microsoft releases new security updates or revisions to existing security updates?
A: You can receive automatic notifications whenever Microsoft releases new or revised security updates by subscribing to Microsoft Technical Security Notifications.-
anonymous
GuestJuly 21, 2017 at 6:58 pm #125964“Q: Why was the update release postponed?
A: Quality of updates is a top priority. We identified an issue that requires additional code changes and testing before release.”Perhaps it would have been more accurate to say –
A. Because this release was just as broken as its predecessors.
In any event, I haven’t stopped laughing yet. 🙂
2 users thanked author for this post.
zero2dash
AskWoody LoungerJuly 21, 2017 at 12:13 pm #125916HiFlyer
AskWoody Loungerabbodi86
AskWoody_MVPJuly 21, 2017 at 9:58 pm #125979These new interim patches aren’t cumulative. In other words, in order to get Outlook 2016 patched, for example, you had to install the June 13 patch, then install the June 30 patch.
This is not accurate 🙂
the “pulled” patches were enough on their own and completely replace current bad June patches
3 users thanked author for this post.
-
HiFlyer
AskWoody LoungerJuly 22, 2017 at 4:33 am #125987These new interim patches aren’t cumulative. In other words, in order to get Outlook 2016 patched, for example, you had to install the June 13 patch, then install the June 30 patch.
This is not accurate 🙂
the “pulled” patches were enough on their own and completely replace current bad June patches
@abbodi86 Which post# are you quoting please?1 user thanked author for this post.
Viewing 7 reply threads -

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Logitech MK850 Keyboard issues
by
Rush2112
1 hour, 6 minutes ago -
We live in a simulation
by
Alex5723
8 hours, 36 minutes ago -
Netplwiz not working
by
RetiredGeek
7 hours, 57 minutes ago -
Windows 11 24H2 is broadly available
by
Alex5723
21 hours, 3 minutes ago -
Microsoft is killing Authenticator
by
Alex5723
4 hours, 33 minutes ago -
Downloads folder location
by
CWBillow
1 day, 3 hours ago -
Remove a User from Login screen
by
CWBillow
6 hours, 41 minutes ago -
TikTok fined €530 million for sending European user data to China
by
Nibbled To Death By Ducks
18 hours, 36 minutes ago -
Microsoft Speech Recognition Service Error Code 1002
by
stanhutchings
18 hours, 38 minutes ago -
Is it a bug or is it expected?
by
Susan Bradley
23 hours, 16 minutes ago -
Image for Windows TBwinRE image not enough space on target location
by
bobolink
17 hours, 47 minutes ago -
Start menu jump lists for some apps might not work as expected on Windows 10
by
Susan Bradley
1 day, 17 hours ago -
Malicious Go Modules disk-wiping malware
by
Alex5723
1 day, 7 hours ago -
Multiple Partitions?
by
CWBillow
1 day, 8 hours ago -
World Passkey Day 2025
by
Alex5723
2 days, 1 hour ago -
Add serial device in Windows 11
by
Theodore Dawson
2 days, 16 hours ago -
Windows 11 users reportedly losing data due forced BitLocker encryption
by
Alex5723
17 hours, 29 minutes ago -
Cached credentials is not a new bug
by
Susan Bradley
2 days, 21 hours ago -
Win11 24H4 Slow!
by
Bob Bible
2 days, 21 hours ago -
Microsoft hiking XBox prices starting today due to Trump’s tariffs
by
Alex5723
2 days, 18 hours ago -
Asus adds “movement sensor” to their Graphics cards
by
n0ads
2 days, 23 hours ago -
‘Minority Report’ coming to NYC
by
Alex5723
2 days, 19 hours ago -
Apple notifies new victims of spyware attacks across the world
by
Alex5723
3 days, 8 hours ago -
Tracking content block list GONE in Firefox 138
by
Bob99
3 days, 7 hours ago -
How do I migrate Password Managers
by
Rush2112
2 days, 15 hours ago -
Orb : how fast is my Internet connection
by
Alex5723
2 days, 17 hours ago -
Solid color background slows Windows 7 login
by
Alex5723
3 days, 19 hours ago -
Windows 11, version 24H2 might not download via Windows Server Updates Services
by
Alex5723
3 days, 18 hours ago -
Security fixes for Firefox
by
Susan Bradley
19 hours, 38 minutes ago -
Notice on termination of services of LG Mobile Phone Software Updates
by
Alex5723
4 days, 6 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.