Latest Comments
"The protection software currently popular is very specialised in what it protects from. Until a ..."
by John Challinor | Aug 20, 2008 9:11 PM
 
"Cyberwar is a natural progression now that computers control the infrastructure of society and ..."
by John Challinor | Aug 20, 2008 8:52 PM
 
"I came across a new RHOIUM Card that safeguards payment information so that there is no private ..."
by James Buffet | Aug 19, 2008 1:18 PM
 
"I'd suggest that people just not go back to any website that puts advertising dollars ahead of ..."
by Ivan Voshe | Aug 19, 2008 12:13 PM
 
"spyware"
by maryam | Aug 19, 2008 6:08 AM

Microsoft to release seven patches including DNS fix

  • Email a Friend
  • Print Page
Microsoft to release seven patches including DNS fix
By Frank Washkuch
May 4, 2007 10:43 AM
Tags: Microsoft | to | release | seven | patches | - | including | DNS | fix | - | on | Patch | Tuesday
Christopher Budd, security program manager, said on the Microsoft Security Response Center Blog that the software Goliath has seen no new attacks on the DNS flaw, but it is scheduled to be fixed.

"The listing of updates slated for Tuesday does include the update we’ve been working on for this issue," he said, referring to the DNS flaw.

Microsoft announced today that each of the seven flaws has a maximum severity rating of critical.

The release will contain two patches for Windows, three for Office, one for Exchange and one for CAPICOM and BizTalk, according to the advance notification released by Microsoft today.

As part of the release, Microsoft will also release an updated version of the Malicious Software Removal Tool, and seven high-priority non-security updates.

Budd recently said that he was increasingly confident the patch would be released on schedule.

Public exploits, including a Metasploit module, were released last month for the flaw, but researchers said attacks were rare because the DNS server is generally not public facing. Intranets are the greatest risk of exploitation.

Researchers also credited Microsoft for providing easy-to-use workarounds for administrators to protect their networks.

Microsoft is also keeping an eye on a hacker known as shinnai, who kicked off the Month of ActiveX Bugs project this week, disclosing exploitable flaws affecting OCX controls in Microsoft Office.

Meanwhile, Apple on Monday patched a flaw in its QuickTime media player that could be exploited on Safari, Firefox or Internet Explorer web browsers, on Windows XP, Vista or Mac OS X operating systems.

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
 
Patch Management Whitepapers