Windows Vista Forums
Vista Forums Home Join Vista Forums Tech Publications Windows 7 Forum Vista Tutorials Webcasts Tags

Welcome to Vista Forums we are your forum for Windows Vista help and discussion. Whether you need help or just want to post an idea you have on Vista, this is the forum for you.
Register at Vista forums...the world biggest Windows Vista resource Join Vista Forums Now

Go Back   Vista Forums > Vista Newsgroups > Vista security

Re: Vista Security Vulnerabilities showing in Security scan

Update your Vista Drivers
Reply
 
Thread Tools Display Modes
Old 12-14-2006   #1 (permalink)
PA Bear
Guest


 

Re: Vista Security Vulnerabilities showing in Security scan

Forwarded to microsoft.public.windows.vista.security newsgroup via
crosspost.
--
~Robear Dyer (PA Bear)
MS MVP-Windows (IE, OE, Security, Shell/User)

erock wrote:
> We are currently testing Vista Ultimate RTM version on our network and
> when
> we scan it with our QualysGuard security scanner it's coming up with some
> older vulnerabilities that I have listed below. I'm just curious as to
> whether these are real vulnerabilities, or if it is misreporting these for
> some reason. If they are real I was wondering if there are any links to
> solutions for them.
>
> Vulnerabilities Listed in Security Scan
> Microsoft Windows 9x File Handle Buffer Overflow Vulnerability
> Microsoft Windows 9x NetBIOS NULL Name Vulnerability
> Microsoft Windows 9x/NT/2000 MS-DOS Device Name DoS Vulnerability
> Web Server Reveals Absolute Path
> Disabled SMB Signing
> UDP Test-Services Running
>
> Thanks for any help or direction to someone else who can help



My System SpecsSystem Spec
Old 12-14-2006   #2 (permalink)
Alun Jones [MS-MVP - Windows Security]
Guest


 

Re: Vista Security Vulnerabilities showing in Security scan

I'd suggest asking the folks that make QualysGuard.

Clearly, Vista is not Windows 95, and isn't vulnerable to many of the
thhings being checked for.

A lot of vulnerability scanners test for behaviour unrelated to the actual
vulnerability's behaviour - so it's not keying off a version number, it's
not keying off the vulnerability, it's keying off some shape of traffic that
happens to appear on the vulnerable system - if that shape also happens to
appear in Vista, it may not be because of the vulnerability that's being
flagged.

Only the vendor of the security scanner can say for sure.

Of course, if they really had found these vulnerabilities still present in
Vista, you can bet that the news would be full of the stories!

Alun.
~~~~
--
Texas Imperial Software | Web: http://www.wftpd.com/
23921 57th Ave SE | Blog: http://msmvps.com/alunj/
Woodinville WA 98072-8661 | WFTPD, WFTPD Pro are Windows FTP servers.
Fax/Voice +1(425)807-1787 | Try our NEW client software, WFTPD Explorer.


"PA Bear" <PABearMVP@gmail.com> wrote in message
news:u6gDBg8HHHA.816@TK2MSFTNGP06.phx.gbl...
> Forwarded to microsoft.public.windows.vista.security newsgroup via
> crosspost.
> --
> ~Robear Dyer (PA Bear)
> MS MVP-Windows (IE, OE, Security, Shell/User)
>
> erock wrote:
>> We are currently testing Vista Ultimate RTM version on our network and
>> when
>> we scan it with our QualysGuard security scanner it's coming up with some
>> older vulnerabilities that I have listed below. I'm just curious as to
>> whether these are real vulnerabilities, or if it is misreporting these
>> for
>> some reason. If they are real I was wondering if there are any links to
>> solutions for them.
>>
>> Vulnerabilities Listed in Security Scan
>> Microsoft Windows 9x File Handle Buffer Overflow Vulnerability
>> Microsoft Windows 9x NetBIOS NULL Name Vulnerability
>> Microsoft Windows 9x/NT/2000 MS-DOS Device Name DoS Vulnerability
>> Web Server Reveals Absolute Path
>> Disabled SMB Signing
>> UDP Test-Services Running
>>
>> Thanks for any help or direction to someone else who can help

>



My System SpecsSystem Spec
Old 12-14-2006   #3 (permalink)
erock
Guest


 

Re: Vista Security Vulnerabilities showing in Security scan

Thanks Alun,
That's exactly what I was thinking too, I just wanted to hear it from
someone else

"Alun Jones [MS-MVP - Windows Security]" wrote:

> I'd suggest asking the folks that make QualysGuard.
>
> Clearly, Vista is not Windows 95, and isn't vulnerable to many of the
> thhings being checked for.
>
> A lot of vulnerability scanners test for behaviour unrelated to the actual
> vulnerability's behaviour - so it's not keying off a version number, it's
> not keying off the vulnerability, it's keying off some shape of traffic that
> happens to appear on the vulnerable system - if that shape also happens to
> appear in Vista, it may not be because of the vulnerability that's being
> flagged.
>
> Only the vendor of the security scanner can say for sure.
>
> Of course, if they really had found these vulnerabilities still present in
> Vista, you can bet that the news would be full of the stories!
>
> Alun.
> ~~~~
> --
> Texas Imperial Software | Web: http://www.wftpd.com/
> 23921 57th Ave SE | Blog: http://msmvps.com/alunj/
> Woodinville WA 98072-8661 | WFTPD, WFTPD Pro are Windows FTP servers.
> Fax/Voice +1(425)807-1787 | Try our NEW client software, WFTPD Explorer.
>
>
> "PA Bear" <PABearMVP@gmail.com> wrote in message
> news:u6gDBg8HHHA.816@TK2MSFTNGP06.phx.gbl...
> > Forwarded to microsoft.public.windows.vista.security newsgroup via
> > crosspost.
> > --
> > ~Robear Dyer (PA Bear)
> > MS MVP-Windows (IE, OE, Security, Shell/User)
> >
> > erock wrote:
> >> We are currently testing Vista Ultimate RTM version on our network and
> >> when
> >> we scan it with our QualysGuard security scanner it's coming up with some
> >> older vulnerabilities that I have listed below. I'm just curious as to
> >> whether these are real vulnerabilities, or if it is misreporting these
> >> for
> >> some reason. If they are real I was wondering if there are any links to
> >> solutions for them.
> >>
> >> Vulnerabilities Listed in Security Scan
> >> Microsoft Windows 9x File Handle Buffer Overflow Vulnerability
> >> Microsoft Windows 9x NetBIOS NULL Name Vulnerability
> >> Microsoft Windows 9x/NT/2000 MS-DOS Device Name DoS Vulnerability
> >> Web Server Reveals Absolute Path
> >> Disabled SMB Signing
> >> UDP Test-Services Running
> >>
> >> Thanks for any help or direction to someone else who can help

> >

>
>
>

My System SpecsSystem Spec
Old 12-21-2006   #4 (permalink)
Alun Jones
Guest


 

Re: Vista Security Vulnerabilities showing in Security scan

"erock" <erock@discussions.microsoft.com> wrote in message
news:C0622F84-DD37-4C1F-8D42-80F09CD66BAD@microsoft.com...
> Thanks Alun,
> That's exactly what I was thinking too, I just wanted to hear it from
> someone else


The basic message, which I don't think I stated clearly enough, is that you
should contact the vendor of the security scanner you are using, and ask
them directly the following questions:
1. Do they scan for Vista security vulnerabilities?
2. Are these positive reports true or false?
3. What do they suggest as actions to fix these reports?

Alun.
~~~~


My System SpecsSystem Spec
Reply
Update your Vista Drivers

Thread Tools
Display Modes



Similar Threads
Thread Thread Starter Forum Replies Last Post
Re: Ubuntu security vulnerabilities antioch Vista General 0 08-24-2007 05:19 PM
Vista Security Center not showing Live OneCare PeterC@NickelCap Vista security 7 03-23-2007 10:41 PM
OS X security vulnerabilities on the rise MICHAEL Vista General 5 07-30-2006 03:50 PM
Security Matters — Microsoft 2006 Security Summits Provide Security Training for Detroit Businesses z3r010 Vista News 0 06-26-2006 10:02 AM
Security Matters — Microsoft 2006 Security Summits Provide Security Training for Detroit Businesses z3r010 Vista News 0 06-26-2006 10:01 AM


Complimentary Industry Resources

Vista Forums has joined forces with TradePub.com to offer you a new, exciting, and entirely free professional resource. Visit http://vistax64.tradepub.com today to browse our selection of complimentary Industry magazines, white papers, webinars, podcasts, and more across 34 industry sectors. No credit cards, coupons, or promo codes required. Try it today!




Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media 2005-2008

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51