Windows Vista Forums
Vista Forums Home Join Vista Forums Windows 7 Forum Vista Tutorials Tags
Welcome to Windows Vista Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows Vista. The Vista forum also covers news and updates and has an extensive Windows Vista tutorial section that covers a wide range of tips and tricks.

Go Back   Vista Forums > Vista Forums > System Security

Vista - Critical Windows Bug Fix on Patch Tuesday

Reply
 
Old 01-09-2009   #1 (permalink)


Windows 7 Ultimate 32 bit Beta, Vista Ultimate x86
 
 

Critical Windows Bug Fix on Patch Tuesday

Patch for "Critical" bug fix on Patch Tuesday


"After being forced to rush out an emergency patch for its Internet Explorer browser last month, Microsoft plans to release just one security update in its first patch release of 2009. The update will be a critical fix for server and desktop versions of Windows, Microsoft said Thursday. It fixes at least one bug that could allow attackers to install unauthorized software on a victim's computer.
Microsoft did not say which bugs it would be fixing with next week's updates, but the company has several to choose from.
In the past month, Microsoft has warned of flaws in its WordPad Text Converter and SQL Server database software.
The researcher who disclosed the SQL Server flaw said recently that Microsoft has known about the issue since April, and had written a patch for it back in September.
One security researcher has also claimed that there is a bug in Microsoft's Windows Media Player, but Microsoft has disputed his findings.
But none of these flaws is in all versions of the underlying Windows operating system, which are being patched next week. According to nCircle Director of Security Operations Andrew Storms, Microsoft could be fixing a known Windows flaw that would allow hackers to gain unauthorized privileges on a computer. "An exploit has already been published for some time along with a whitepaper by the author," Storms said in an instant-message interview.
Microsoft has offered work-arounds for this flaw already, but it has now had enough time to prepare a full-blown security patch, Storms said.
However, the security researcher who found the flaw said he doesn't expect to see it patched next week. "I don't think they will patch my bug because it's rated critical (remote code execution) and my bug is about local elevation of privileges," said Cesar Cerrudo, chief executive of security research firm Argeniss, via instant message.
Local elevation of privilege flaws are not typically considered critical, although Storms said Microsoft may have discovered while fixing the problem that it was more severe than previously thought.
Microsoft's security updates will come nearly a month after the company scrambled to push out an emergency patch for Internet Explorer, after criminals began exploiting the flaw to install password-stealing software on victims' machines."




Microsoft to Kick Off 2009 with Single Security Fix - CSO Online - Security and Risk

Norm

My System SpecsSystem Spec
Old 01-10-2009   #2 (permalink)


Vista Home Premium SP2 32bit / Windows 7 Home Premium 32 bit
 
 

Re: Critical Windows Bug Fix on Patch Tuesday

Thanks Norm, I'd already seen the notice about this one, that's not to say there wont be more when the time comes,
There will be the usual removal tool update as well I suppose and we'll see how many Office updates sneak in
My System SpecsSystem Spec
Reply

Thread Tools


Similar Threads
Thread Forum
Patch Tuesday heads-up: 8 bulletins, 5 critical Vista News
Why Microsoft left Windows 7 unpatched on Patch Tuesday Vista News
Patch for critical Windows vulnerability coming Windows Updates
Patch Tuesday... 3 critical Vista General
MS Patch Tuesday - Vista dinged again Vista General


Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46