Post coming in Computerworld.
[See the full post at: Microsoft releases KB 3213643, 2956078, 4011078, 4011052 to fix June Outlook security bugs]
![]() |
Patch reliability is unclear, but widespread attacks make patching prudent. Go ahead and patch, but watch out for potential problems. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Microsoft releases KB 3213643, 2956078, 4011078, 4011052 to fix June Outlook security bugs
Home » Forums » Newsletter and Homepage topics » Microsoft releases KB 3213643, 2956078, 4011078, 4011052 to fix June Outlook security bugs
- This topic has 24 replies, 12 voices, and was last updated 7 years, 8 months ago.
Tags: KB 3213643
AuthorTopicViewing 14 reply threadsAuthorReplies-
EstherD
AskWoody LoungerJuly 27, 2017 at 5:04 pm #126753Yup. KB2956078 wasn’t there yesterday when I updated one of my two Win7 laptops. But it was there early this afternoon when I went to do the other one.
When I checked initially, the documentation page for KB2956078 was 404. But an hour or so later, it appeared as if by magic. You’d think MS could get its act together and release the docs simultaneously with the release of the patch files in WU. Nah.
Decided to install both KB3203467 and KB2956078 on both machines. So far, no problems. But then we don’t use Outlook, so I would expect (hope?) not to see any issues elsewhere in the system.
So why install any Outlook patches? Because the miscreants and ne’er-do-wells are much more clever than the MS engineers, and I don’t want to risk them finding a way to leverage Outlook bugs in ways that MS engineers failed to anticipate. Hence, I patch. Religiously. Ditto for Internet Explorer, which we also do not use.
Patching Group A*. Because I reserve the right not to install things I do not want, no matter how MS rates them, and I also install things that others in Group A might not install at all, or not as early as I do, e.g. the Outlook security patches.
-
anonymous
Guest -
EstherD
AskWoody LoungerJuly 27, 2017 at 8:26 pm #126785Can’t speak to WSUS, but it sure didn’t look that way in WU earlier this afternoon, despite what it says on the KB2956078 documentation page.
Both patches were listed in the WU “Important section”, with KB3203467 unchecked and KB2956078 checked. And both patches were apparently installed when I asked WU to install the two of them together in a single batch. (Which is to say that WU did not give me the “1 patches installed; 1 patches unneeded” message that typically appears if one patch really is superseded by another one in the same install batch.)
However, now that I check more carefully, I find a VERY curious anomaly.
Both KB3203467 and KB2956078 are listed as successfully installed on the WU “Review your update history” page, with KB3203467 listed first and KB2956078 listed second.
BUT on the “Programs and Features” -> “View installed updates” page, KB2956078 appears TWICE, while KB3203467 does not appear at all!
So let me be the first (but probably not the last) to say: This does NOT give me great confidence in the current MS patch control process!
1 user thanked author for this post.
-
Bill C.
AskWoody PlusJuly 27, 2017 at 11:08 pm #126806I installed the Outlook patch KB2956078, for Outlook 2010 (32bit) and KB3203467, the old bad patch for Outlook 2010 (32bit) using Windows Update. Both were shown as Important, but only the KB2956078 was pre-checked. Both downloaded, but KB2956078 started initializing and installing first. What was interesting was the original patch KB3203467 never initialized or installed. The green Successful screen appeared. I checked the View Update history and it showed todays patch as successful, but did not show the earlier patch. Using Control Panel, installed updates also did not show the original patch as installed, but today’s was there. A reboot and new run of WU did not show either patch, and the History and Control panel applet was the same.
A check with Belarc Advisor shows 2 missing updates. KB3203467 is one.
The other is KB 3212642. What is interesting is back in January 2017 when the Security Only Patch KB3212642 for Win7-64, a very small patch of 6.3MB was released I installed it at Defcon 3. It appears in both the history and in the Control panel applet, and it was not labeled as missing in Belarc. As we remember, there were no patches for February due to the Shadowbroker dump. However after the install of the March 2017 Security Only Patch KB4012212 Belarc began showing KB3212642 as missing. It still appears in the WU history and Control panel as installed.
I suspect todays patch does supercede the bad patch, as some others say, and it seems to support what abbodi86 said in Post #125979 back on July 21 about the Outlook 2016 patches.
Call it wishful thinking, but Outlook 2010 seems snappier.
1 user thanked author for this post.
-
Bill C.
AskWoody PlusJuly 28, 2017 at 9:54 am #126869One thing I just remembered when I looked back at my patching log notebook.
When I originally saw that Belarc was saying that the January 2017 Security Only patch KB3212642 was missing after the March install, I tried to install it again.
As the Group B patches are NOT supposed to be cumulative it should have been able to be installed. However, it said it was “not applicable.” This may be due to the urgency of the March patches possibly repatched the vulnerabilities addressed by the January patch.
I do not know and this is only conjecture on my non-expert part.
I suspect ch100 is on the right track with his post #126857 below.
-
-
-
EstherD
AskWoody LoungerJuly 28, 2017 at 12:07 am #126820Interesting… I also use Belarc, but it gives me a clean bill of health… ALL security patches installed (based on defs version 2017.7.19.2)… despite the anomaly I described earlier.
Curiouser and curiouser. And less and less confidence that MS knows what it’s doing with patch control these days. Which is really BAD, because I have NO good way to test for most of these security flaws. So TRUST is the only thing I have to go on. And that’s evaporating faster than a puddle on a hot July day.
1 user thanked author for this post.
-
Ed
AskWoody LoungerJuly 28, 2017 at 5:04 am #126849Am I missing something here? Is it necessary to install the known “bad patch” (which is still NOT checked) along with the “fix-all” patch (which IS checked)?
We’ve been relentlessly advised to NEVER install Important updates that are not already checked but from what I’m seeing in these previous posts it appears many are manually checking the unchecked “bad patch” for installation.
I do realize it’s still a bit early to know exactly what’s going on here so I’m holding off on the latest miracle patch for a while. I’m confident somebody here will share the PROPER technique for getting this long overdue Outlook patch screw-up straightened out.
1 user thanked author for this post.
-
PKCano
ManagerJuly 28, 2017 at 5:34 am #126854An unchecked patch in the “important updates” list usually means MS may deem it “recommended” but not “important” or “critical.” It usually implies that it not be installed.
If you have to have the fix now because it is causing problems, I would leave the old patch unchecked and install the checked one. The old patch may disappear (become unnecessary) after the fix is installed. If the fix says “not applicable” than you may have to install the other first.
At any rate, if you can live without the fix, it may be worthwhile to hold off for a couple of days to see if it creates any problems of its own .
1 user thanked author for this post.
-
ch100
AskWoody_MVPJuly 28, 2017 at 6:05 am #126857This is more subtle than it appears to be at first sight.
I have seen patches which are unchecked when scanning from the Never check for updates setting and unchecked when scanning from Download but do not install while the log says that they are throttled due to regulation (which does not mean that they should not be installed, but that the servers are overloaded for the moment).
In a different context or order of installation, the same patches would be checked under Download but do not install or install Auto and unchecked under Never check.
A typical one is KB3021917 for Windows 7.
What is the conclusion after all those facts? My conclusion is that KB3021917 is provided for install but not in all contexts. A bug in the Microsoft WU?
-
-
-
anonymous
Guest -
PKCano
ManagerJuly 28, 2017 at 5:18 am #126852If you are having severe problems because of the previous bugs, it might be a good idea to go ahead and install the patches – you can always uninstall them.
But if the bugs are not “bugging” you, it might be a good idea to wait a few days and see if there are others problems caused by the new patches..
-
-
b
AskWoody_MVP -
BryanP
AskWoody Lounger -
anonymous
GuestJuly 29, 2017 at 4:22 pm #127083 -
PKCano
Manager
-
-
anonymous
Guest -
anonymous
Guest -
TJ
AskWoody Plus -
L95
AskWoody PlusAugust 1, 2017 at 9:13 am #127420I have Outlook 2010, and in the June list of patches KB3203467 appeared as an “Important” Security update but the box wasn’t checked. In early July, when Woody gave the go-ahead to install the June patches, I sent a message to PKCano (AskWoody MVP) and I asked whether I should check the box for KB3203467. He replied by telling me to leave it unchecked. So that’s what I did. He also said Microsoft will probably roll out the fixes later in July. Then on July 27, Woody’s article in PC World came out stating that Microsoft released four patches to fix the June Outlook Security bugs. However for some reason, KB3203467 wasn’t discussed in his article. On July 31, when I checked for available updates, KB3203467 was still listed as an Important Security update, and the box was still unchecked. But it also listed KB2956078 as an Important Security Update for Outlook 2010. and for this one, the box was checked. So I went ahead and installed KB2956078, but I continued to leave the box for KB3203467 unchecked. Then after that, I did another check for updates, and now KB3203467 no longer appears as an available update. The KB3203467 eventually disappeared from the list but I had to wait until KB2956078 to be installed for that to happen. So it looks like PKCano’s advice to me from early July is correct (and likewise also his advice in the July 29 posting shown above). Thanks to PKCano for the advice.
-
-
anonymous
Guest -
anonymous
GuestAugust 2, 2017 at 4:22 pm #127788I’ve been holding off installing any of the June MS Office updates (running Outlook 2010).
In the past I have been offered the unchecked Outlook KB3203467, then recently the checked KB2956078.
Today I checked and without having done anything the KB3203467 was gone.
I installed all offered and checked MS Office updates (8 total).
Hope all will be well.
-
PKCano
Manager
-
-
anonymous
GuestAugust 3, 2017 at 12:26 pm #127891 -
DMK
AskWoody Lounger
Viewing 14 reply threads -

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Return of the brain dead FF sidebar
by
EricB
6 minutes ago -
windows settings managed by your organization
by
WSDavidO61
22 minutes ago -
Securing Laptop for Trustee Administrattor
by
PeachesP
3 hours, 11 minutes ago -
The local account tax
by
Susan Bradley
2 hours, 22 minutes ago -
Recall is back with KB5055627(OS Build 26100.3915) Preview
by
Alex5723
5 hours, 43 minutes ago -
Digital TV Antenna Recommendation
by
Win7and10
5 hours, 19 minutes ago -
Server 2019 Domain Controllers broken by updates
by
MP Support
17 hours, 36 minutes ago -
Google won’t remove 3rd party cookies in Chrome as promised
by
Alex5723
19 hours, 14 minutes ago -
Microsoft Manager Says macOS Is Better Than Windows 11
by
Alex5723
22 hours, 27 minutes ago -
Outlook (NEW) Getting really Pushy
by
RetiredGeek
52 minutes ago -
Steps to take before updating to 24H2
by
Susan Bradley
22 minutes ago -
Which Web browser is the most secure for 2025?
by
B. Livingston
5 hours, 19 minutes ago -
Replacing Skype
by
Peter Deegan
12 hours, 49 minutes ago -
FileOptimizer — Over 90 tools working together to squish your files
by
Deanna McElveen
16 hours, 18 minutes ago -
Excel Macro — ask for filename to be saved
by
nhsj
1 day ago -
Trying to backup Win 10 computer to iCloud
by
SheltieMom
3 hours, 43 minutes ago -
Windows 11 Insider Preview build 26200.5570 released to DEV
by
joep517
2 days, 22 hours ago -
Windows 11 Insider Preview build 26120.3941 (24H2) released to BETA
by
joep517
3 days ago -
Windows 11 Insider Preview Build 22635.5305 (23H2) released to BETA
by
joep517
3 days ago -
No April cumulative update for Win 11 23H2?
by
Peobody
1 day, 12 hours ago -
AugLoop.All (TEST Augmentation Loop MSIT)
by
LarryK
3 days ago -
Boot Sequence for Dell Optiplex 7070 Tower
by
Serge Carniol
3 days, 15 hours ago -
OTT Upgrade Windows 11 to 24H2 on Unsupported Hardware
by
bbearren
3 days, 19 hours ago -
Inetpub can be tricked
by
Susan Bradley
2 days, 2 hours ago -
How merge Outlook 2016 .pst file w/into newly created Outlook 2024 install .pst?
by
Tex265
2 days, 13 hours ago -
FBI 2024 Internet Crime Report
by
Alex5723
3 days, 23 hours ago -
Perplexity CEO says its browser will track everything users do online
by
Alex5723
1 day, 8 hours ago -
Login issues with Windows Hello
by
CWBillow
4 days, 10 hours ago -
How to get into a manual setup screen in 2024 Outlook classic?
by
Tex265
3 days, 22 hours ago -
Linux : ARMO rootkit “Curing”
by
Alex5723
4 days, 21 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.