- Download Administrative Templates (.admx) for Windows 10 April 2018 Update (1803) from Official Microsoft Download Center. Surface Book 2. Powerhouse performance in the ultimate laptop. Transform data into actionable insights with dashboards and reports.
- When the Windows 10 May 2019 Update is ready for your device, it will be available to download from the Windows Update page in Settings. Choose a time that works best for you to download the update.
- April 2018 Calendar. April 2018 Calendar. Free download blank templates for april 2018 calendar including week number. There are 3 templates for april 2018 calendar: blank template without holidays, blank template including federal holidays, blank template with space for notes.
- December 2018 Downloads; November 2018 Downloads; October 2018 Downloads; September 2018 Downloads; August 2018 Downloads; July 2018 Downloads; June 2018 Downloads; May 2018 Downloads; April 2018 Downloads; March 2018 Downloads; February 2018 Downloads; January 2018 Downloads.
Microsoft has now officially released the Windows 10 April 2018 Update, so read on to find out how to manually download and install the April 2018 Update.Microsoft has started the automatic.
This page lists announcements of security fixes made in Critical Patch Update Advisories, Security Alerts and Bulletins, and it is updated when new Critical Patch Update Advisories, Security Alerts and Bulletins are released.
Instructions for subscribing to email notifications of Critical Patch Update Advisories and Security Alerts.
Oracle Corporate Security Blog
Guidelines for reporting security vulnerabilities
This page contains the following sections:
Critical Patch Updates
Critical Patch Updates are collections of security fixes for Oracle products. They are available to customers with valid support contracts. They are released on the Tuesday closest to the 17th day of January, April, July and October. The next four dates are:
Download April 2018 Windows Update
- 15 October 2019
- 14 January 2020
- 14 April 2020
- 14 July 2020
A pre-release announcement will be published on the Thursday preceding each Critical Patch Update release.
The Critical Patch Updates released since 2015 are listed in the following table. Critical Patch Updates released before 2015 are available here.
Critical Patch Update | Latest Version/Date |
---|---|
Critical Patch Update - July 2019 | Rev 5, 16 August 2019 |
Critical Patch Update - April 2019 | Rev 6, 28 May 2019 |
Critical Patch Update - January 2019 | Rev 6, 18 April 2019 |
Critical Patch Update - October 2018 | Rev 6, 18 December 2018 |
Critical Patch Update - July 2018 | Rev 8, 12 October 2018 |
Critical Patch Update - April 2018 | Rev 4, 10 December 2018 |
Critical Patch Update - January 2018 | Rev 8, 20 March 2018 |
Critical Patch Update - October 2017 | Rev 10, 15 February 2018 |
Critical Patch Update - July 2017 | Rev 6, 20 March 2018 |
Critical Patch Update - April 2017 | Rev 5, 20 June 2017 |
Critical Patch Update - January 2017 | Rev 5, 18 May 2017 |
Critical Patch Update - October 2016 | Rev 5, 16 May 2019 |
Critical Patch Update - July 2016 | Rev 2, 18 October 2016 |
Critical Patch Update - April 2016 | Rev 3, 20 December 2016 |
Critical Patch Update - January 2016 | Rev 2, 12 February 2016 |
Critical Patch Update - October 2015 | Rev 6, 27 October 2015 |
Critical Patch Update - July 2015 | Rev 4, 30 July 2015 |
Critical Patch Update - April 2015 | Rev 3, 28 April 2015 |
Critical Patch Update - January 2015 | Rev 2, 10 March 2015 |
Security Alerts
Oracle will issue Security Alerts for vulnerability fixes deemed too critical to wait for distribution in the next Critical Patch Update. The Security Alerts released since 2015 are listed in the following table. Security Alerts released before 2015 are available here.
Security Alert Number And Description | Latest Version/Date |
---|---|
Alert for CVE-2019-2729 | Rev 4, 11 July 2019 |
Alert for CVE-2019-2725 | Rev 4, 29 May 2019 |
Alert for CVE-2018-11776 | Rev 1, 31 August 2018 |
Alert for CVE-2018-3110 | Rev 1, 10 August 2018 |
Alert for CVE-2017-10269 | Rev 2, 16 November 2017 |
Alert for CVE-2017-10151 | Rev 3, 04 November 2017 |
Alert for CVE-2017-9805 | Rev 1, 22 September 2017 |
Alert for CVE-2017-3629 | Rev 2, 20 June 2017 |
Alert for CVE-2016-0636 | Rev 1, 23 March 2016 |
Alert for CVE-2016-0603 | Rev 1, 05 February 2016 |
Alert for CVE-2015-4852 | Rev 2, 12 November 2015 |
Alert for CVE-2015-3456 QEMU 'Venom' | Rev 1, 15 May 2015 |
Solaris Third Party Bulletins
Solaris Third Party Bulletins are used to announce security fixes for third party software distributed with Oracle Solaris. Solaris Third Party Bulletins are published on the same day as Oracle Critical Patch Updates are released. These bulletins are be updated on the Tuesday closest to the 17th of the following two months after their release (i.e., the two months between the normal quarterly Critical Patch Update publication dates). In addition, Solaris Third Party Bulletins may also be updated for vulnerability fixes deemed too critical to wait for the next scheduled publication date. Bulletins published before January 20, 2015 are available here.
Solaris Third Party Bulletin | Latest Version/Date |
---|---|
Solaris Third Party Bulletin - July 2019 | Rev 3, 17 September 2019 |
Solaris Third Party Bulletin - April 2019 | Rev 3, 25 June 2019 |
Solaris Third Party Bulletin - January 2019 | Rev 4, 16 April 2019 |
Solaris Third Party Bulletin - October 2018 | Rev 3, 14 December 2018 |
Solaris Third Party Bulletin - July 2018 | Rev 3, 24 September 2018 |
Solaris Third Party Bulletin - April 2018 | Rev 3, 15 June 2018 |
Solaris Third Party Bulletin - January 2018 | Rev 3, 20 March 2018 |
Solaris Third Party Bulletin - October 2017 | Rev 3, 18 December 2017 |
Solaris Third Party Bulletin - July 2017 | Rev 4, 18 September 2017 |
Solaris Third Party Bulletin - April 2017 | Rev 4, 19 June 2017 |
Solaris Third Party Bulletin - January 2017 | Rev 4, 28 March 2017 |
Solaris Third Party Bulletin - October 2016 | Rev 5, 11 January 2017 |
Solaris Third Party Bulletin - July 2016 | Rev 6, 10 April 2017 |
Solaris Third Party Bulletin - April 2016 | Rev 8, 16 October 2017 |
Solaris Third Party Bulletin - January 2016 | Rev 5, 12 April 2016 |
Solaris Third Party Bulletin - October 2015 | Rev 5, 14 January 2016 |
Solaris Third Party Bulletin - July 2015 | Rev 6, 15 September 2015 |
Solaris Third Party Bulletin - April 2015 | Rev 3, 15 June 2015 |
Solaris Third Party Bulletin - January 2015 | Rev 5, 01 April 2015 |
Oracle Linux Bulletins
Oracle releases security advisories for Oracle Linux as patches become available. Security advisories (ELSA) are published at https://linux.oracle.com/security/.
Starting October 20, 2015, Oracle will also publish Oracle Linux Bulletins which list all CVEs that had been resolved and announced in Oracle Linux Security Advisories in the last one month prior to the release of the bulletin. The Oracle Linux Bulletin will be published on the same day as Oracle Critical Patch Updates are released. These bulletins will also be updated for following two months after their release (i.e., the two months between the normal quarterly Critical Patch Update publication dates) to cover all CVEs that had been resolved in those two months following the bulletin's publication. In addition, Oracle Linux Bulletins may also be updated for vulnerability fixes deemed too critical to wait for the next scheduled bulletin publication date.
Oracle Linux Bulletin | Latest Version/Date |
---|---|
Oracle Linux Bulletin - July 2019 | Rev 3, 19 September 2019 |
Oracle Linux Bulletin - April 2019 | Rev 3, 18 June 2019 |
Oracle Linux Bulletin - January 2019 | Rev 3, 18 March 2019 |
Oracle Linux Bulletin - October 2018 | Rev 3, 17 December 2018 |
Oracle Linux Bulletin - July 2018 | Rev 3, 18 September 2018 |
Oracle Linux Bulletin - April 2018 | Rev 3, 18 June 2018 |
Oracle Linux Bulletin - January 2018 | Rev 3, 16 March 2018 |
Oracle Linux Bulletin - October 2017 | Rev 3, 18 December 2017 |
Oracle Linux Bulletin - July 2017 | Rev 3, 18 September 2017 |
Oracle Linux Bulletin - April 2017 | Rev 3, 19 June 2017 |
Oracle Linux Bulletin - January 2017 | Rev 3, 17 March 2017 |
Oracle Linux Bulletin - October 2016 | Rev 3, 19 December 2016 |
Oracle Linux Bulletin - July 2016 | Rev 3, 19 September 2016 |
Oracle Linux Bulletin - April 2016 | Rev 3, 20 June 2016 |
Oracle Linux Bulletin - January 2016 | Rev 3, 21 March 2016 |
Oracle Linux Bulletin - October 2015 | Rev 3, 21 December 2015 |
Oracle VM Server for x86 Bulletins
Oracle releases security advisories for Oracle VM Server for x86 as patches become available. Security advisories (OVMSA) are published at https://linux.oracle.com/errata/.
Starting July 19, 2016, Oracle will also publish Oracle VM Server for x86 Bulletins which will list all CVEs that had been resolved and announced in Oracle VM Server for x86 Security Advisories in the last one month prior to the release of the bulletin. The Oracle VM Server for x86 Bulletin will be published on the same day as Oracle Critical Patch Updates are released. These bulletins will also be updated for following two months after their release (i.e., the two months between the normal quarterly Critical Patch Update publication dates) to cover all CVEs that had been resolved in those two months following the bulletin's publication. In addition, Oracle VM Server for x86 Bulletins may also be updated for vulnerability fixes deemed too critical to wait for the next scheduled bulletin publication date.
Oracle VM Server for x86 Bulletin | Latest Version/Date |
---|---|
Oracle VM Server for x86 Bulletin - July 2019 | Rev 2, 16 August 2019 |
Oracle VM Server for x86 Bulletin - April 2019 | Rev 3, 18 June 2019 |
Oracle VM Server for x86 Bulletin - January 2019 | Rev 3, 18 March 2019 |
Oracle VM Server for x86 Bulletin - October 2018 | Rev 3, 17 December 2018 |
Oracle VM Server for x86 Bulletin - July 2018 | Rev 3, 18 September 2018 |
Oracle VM Server for x86 Bulletin - April 2018 | Rev 3, 18 June 2018 |
Oracle VM Server for x86 Bulletin - January 2018 | Rev 3, 16 March 2018 |
Oracle VM Server for x86 Bulletin - October 2017 | Rev 3, 18 December 2017 |
Oracle VM Server for x86 Bulletin - July 2017 | Rev 3, 18 September 2017 |
Oracle VM Server for x86 Bulletin - April 2017 | Rev 3, 19 June 2017 |
Oracle VM Server for x86 Bulletin - January 2017 | Rev 3, 17 March 2017 |
Oracle VM Server for x86 Bulletin - October 2016 | Rev 3, 19 December 2016 |
Oracle VM Server for x86 Bulletin - July 2016 | Rev 3, 19 September 2016 |
Map of CVE to Advisory
The Map of CVE to Advisory/Alert indicates which CVEs are fixed in each Critical Patch Update and Security Alert. The Map of CVE to Solaris Third Party Bulletin indicates which CVEs are fixed in each Solaris Third Party Bulletin.
Policy on Information Provided in Critical Patch Updates and Security Alerts
As a matter of policy, Oracle will not provide additional information about the specifics of vulnerabilities beyond what is provided in the Critical Patch Update or Security Alert notification, the pre-installation notes, the readme files, and FAQs. Oracle provides all customers with the same information in order to protect all customers equally. Oracle will not provide advance notification or 'insider information' on Critical Patch Update or Security Alerts to individual customers. Finally, Oracle does not develop or distribute active exploit code (or 'proof of concept code') for vulnerabilities in our products.
Applicability of Critical Patch Updates and Security Alerts to Oracle Cloud
The Oracle Cloud operations and security teams regularly evaluate Oracle’s Critical Patch Updates and Security Alert fixes as well as relevant third-party fixes as they become available and apply the relevant patches in accordance with applicable change management processes.
Customers requiring additional information that is not addressed in the Critical Patch Update Advisory may obtain additional information as follows:
- Oracle Cloud (IaaS, PaaS, and SaaS) customers should submit a SR within their designated support system
- Oracle Managed Cloud Services (OMCS) customers should contact their Service Delivery Manager (SDM). CRM On Demand customers should request status via a Service Request (SR).
- Global Business Units/Industry Cloud Services and Micros Cloud customers should submit a SR within their designated support system or, if applicable, contact their Customer Success Manager.
- Oracle Data Cloud (ODC) customers should contact their Client Partner.
- Oracle NetSuite customers should submit an Oracle NetSuite Support Case from within their Oracle NetSuite account.
References
Last week, Yusuf Mehdi announced the Windows 10 April 2018 Update, our latest feature update for Windows 10. Today, we’re excited to share that the update is available to customers. This post will provide details on the April 2018 Update rollout plan, including information on our new machine-learning approach. We’ll also detail how you can get the update today. As with prior rollouts, our goal is to deliver the April 2018 Update as quickly and as broadly possible, while maintaining the best possible update experience for our customers.
The April 2018 Update is available today if you go to Windows Update and manually check for updates. We will begin the global rollout out via Windows Update on May 8. As with previous rollouts, we will use real-time quality feedback to smartly update your device when we have data that shows your device is ready and will have a great experience. You don’t have to do anything to get the update; it will roll out automatically to you through Windows Update if you’ve chosen to have updates installed automatically on your device. Once the download is complete and the update is ready to install, we’ll notify you, so you can pick the right time to finish the installation and reboot, so the update does not disrupt you.
The adoption rate of the Windows 10 Fall Creators Update was the fastest of any version of Windows 10, making it the most widely used version of Windows 10. During the Fall Creators Update roll out we pilot tested machine learning (ML) to intelligently select devices that our feedback data indicated would have a great update experience. The results from the pilot were promising, and we consistently saw a higher rate of positive update experiences for devices identified using ML. For the April 2018 Update rollout, we will expand our use of ML to identify the devices ready to update, incorporating things like additional compatibility data. This will allow us to deliver updates to devices as fast as possible while providing even better customer experiences. With the April 2018 Update, we have also further shortened the amount of time your device is offline during updates up to 63% compared to the Windows 10 Creators Update. The April 2018 Update will follow the same phased rollout approach of proactively monitoring all available feedback and update experience data and making the appropriate product updates during the rollout.
While we encourage you to wait until the update is offered to your device, if you’re an advanced user on an actively serviced version of Windows 10 and would like to install the Windows 10 April 2018 update now, you can do so by manually checking for updates. In the Search tab, type “Settings”. On the Settings page, navigate to Update & security > Windows Update.
Once there, simply click “Check for updates” to begin the download and installation process. You can also watch this video that outlines how to get the April 2018 Update.
If you’re using a Windows 10 PC at work, you will need to check with your IT administrator for details on your organization’s specific plans to update.
Download The Best Music 2018
For our commercial customers, the release of the Windows 10, version 1803 on April 30, 2018 marks the start of the Semi-Annual Channel and begins the 18-month servicing timeline. Just as we’re rolling out the April 2018 Update in phases to consumers, we recommend IT administrators do the same within their organizations. Start with targeted deployments to validate that apps, devices, and infrastructure used by your organization work well with the new release. Then continue your deployment to more and more devices based on the results from your initial targeted deployments. Just as we use data to guide our consumer rollout, commercial customers are encouraged to use our Windows Analytics offering to improve and facilitate their own rollout. Devices configured to take advantage of Windows Update for Business (WUfB) will be automatically migrated to this Semi-Annual Channel feature update based on your WUfB configurations, starting today. The update is now available through both Windows Server Update Services (WSUS) and WUfB. For an overview of what’s new and what’s changed, please see What’s new for IT pros in Windows 10, version 1803.
Being on the latest version of Windows 10, the April 2018 Update, provides you with the latest features and provides the latest security protections to help keep you safer. As I’ve noted before, we continue to improve Windows 10 mitigations to protect against unwanted threats and vulnerabilities. To know which version of Windows your device is running, check here.
The April 2018 Update also includes changes to the set-up experience for privacy settings. This new design conveys focused information to help our customers make informed choices about their privacy and offers two new settings for Inking & Typing and Find my device. Not everyone will experience the same set up, however. For example, some will review their settings through a single screen set up and others will review their settings via a multiple screen set up where required by law. Some users may be required to review and choose their privacy settings before they can finish installing the April 2018 Update. All customers can review and update their privacy settings at any time in Start > Settings > Privacy. You can find out more about the new Privacy settings experience in this March blog.
We hope you enjoy the April 2018 Update and encourage you to tell us about your experience by providing comments or suggestions via the Feedback Hub app.
How to get the Windows 10 April 2018 Update