Monday November 24, 2008 3:36 AM AEST
Latest Comments
"it's good one "
by khanbhai | Nov 22, 2008 9:00 PM
 
"when i login to face book it tells me i am cookies enabled what does this mean"
by celeste | Nov 21, 2008 5:15 PM
 
"Hi this is the mail I received Brett Karpman show details Nov 17 (3 days ago) Reply Atten..."
by Rodney Churchyard | Nov 20, 2008 6:13 PM
 
"security through obscurity...shows how detached HIPAA is from reality."
by priceOfFishInChina | Nov 20, 2008 1:19 PM
 
"Umm. no. The 6.5 product is mounting the offline VM image and performing a scan for patch ..."
by eric | Nov 20, 2008 8:15 AM

Microsoft delivering a dozen patches

  • Email a Friend
  • Print Page
By Dan Kaplan
Feb 8, 2008 9:53 AM
Tags: "microsoft" | "patch | tuesday" | "patches | for | feb" | "feb | patch | tuesday" | "microsoft | release | patches"
Redmond is slated to release seven bulletins affecting “critical” vulnerabilities and five fixes to remedy bugs labeled “important.”

One of the “critical” patches will plug a severe but previously unknown vulnerability in Internet Explorer

“It affects every version of IE and every operating system,” Jason Miller, manager of the data and information team at Shavlik Technologies, provider of patch management software, said. “There could be exploits in the wild.”

The patch release also appears to include a fix for a zero-day Excel hole, disclosed Jan. 15, Miller told SCMagazineUS.com today. Microsoft had warned Windows and Mac users that cyberattackers are remotely exploiting the flaw in targeted attacks.

But there is no way to be sure the fix is coming because the advance notification bulletin only states the affected software, not the particular flaw being addressed.

Meanwhile, the “important” patches will address a number of server-side issues, including bugs in the Active Directory on Windows Server 2003 and Microsoft Internet Information Services on Windows 2000, XP and Vista.

Vista, Microsoft's newest operating system version, is listed as vulnerable in five of the 12 bulletins.

Mark Shavlik, founder and chief executive officer of Shavlik Technologies, told SCMagazineUS.com today that Tuesday will provide the climax to a busy patching period. Just this week, administrators were forced to grapple with updates to Adobe Reader, Apple QuickTime, Sun Java and Skype.

“It's a busy two-week run,” Shavlik said. “It had been a little quiet with the holiday.”

Tuesday's round of fixes from Microsoft will match last February's delivery of 12 patches, which remains the highest number released since the summer of 2006. Last August included nine bulletins.

See original article on scmagazineus.com

Secure Computing Magazine

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Tripwire - Click here to win an iTouch
 
 
 
Patch Management Whitepapers