Vulnerabilities could allow attackers to take complete control
Vulnerabilities could allow attackers to take complete control
R E L A T E D   C O N T E N T

Free email newsletters




ADVERTISEMENT

Microsoft patches critical flaws

Users urged to update systems immediately

Iain Thomson, vnunet.com 13 Apr 2005
ADVERTISEMENT

Microsoft has released eight new patches, five of which are rated 'critical' and could allow attackers to take complete control of compromised systems.

The vulnerabilities affect TCP/IP protocols, Internet Explorer, MSN Messenger, Microsoft Word and Microsoft Exchange server system. Microsoft warned of the impending updates on 11 April.

Users are advised to visit the Microsoft security website and update all software up to Windows 98.

Vulnerability management firm Qualys, which discovered the TCP/IP flaw, warned that other vendors will have to address the issue.

"We found the problem last October and notified Microsoft," said Gerhard Eschelbeck, chief technical officer at Qualys.

"The problem is that the standard is not particularly clear in how to deal with this, and different vendors have different solutions. Most of the vendors affected have released patches or will release patches in the coming days."

Cisco stated that it has already released a patch for the problem.

The three remaining patches, which affect Windows, are rated 'important' by Microsoft, and could allow remote control of PCs if used correctly.

The software giant is also re-releasing two security bulletins: MS05-002 for users running Windows 98, 98 Second Edition and Windows ME; and MS05-009 for users running Windows Messenger.

See also:

Hackers place key-logging software onto blog sitesFree and anonymous hacking tools storage  15 Apr 2005
Third of UK businesses 'unprepared and under resourced' to cope with security issuesHacking and viruses top concern for UK's small and medium-sized businesses  15 Apr 2005
Update includes PeopleSoft code  15 Apr 2005
Chris Andrew of patch management specialist PatchLink explains how third parties can help firms guard systems  14 Mar 2005
Standard method of rating security vulnerabilitiesCommon Vulnerability Scoring System allows IT managers to prioritise patches  24 Feb 2005

All Bugs & Fixes

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
Shinfield Park, Reading, United Kingdom | Foster Wheeler
Server Support Analyst (Citrix skills required) - Reading Foster Wheeler is a leading international project management, engineering and construction organisation with global construction capabilities working on major projects within upstream oil & gas, midstream & ... more >
Berkshire, Reading, United Kingdom | Foster Wheeler
Microsoft Application Support Specialist - Reading Foster Wheeler is a leading international project management, engineering and construction organisation with global construction capabilities working on major projects within upstream oil & gas, midstream & LNG, refining, ... more >
Solihull, United Kingdom | Enzen Global Limited
Business Analyst - £30,000 - £35000 - Solihull We are in need of a Business Analyst with strong analytical skills and a penchant for learning the domain knowledge of the Utilities sector (Gas industry in ... more >
United Kingdom | University of east anglia
WEB DEVELOPER £22,332 to £27,466 per annum (Grade 6), with agreed progression to £28,290 to £33,780 (Grade 7). Pay award pending from October 2008. We are looking for an experienced Web Developer to join a ... more >
More job opportunities