Vulnerabilities could allow attackers to take complete control
Vulnerabilities could allow attackers to take complete control
R E L A T E D   C O N T E N T
ADVERTISEMENT

Microsoft patches critical flaws

Users urged to update systems immediately

Iain Thomson, vnunet.com 13 Apr 2005
ADVERTISEMENT

Microsoft has released eight new patches, five of which are rated 'critical' and could allow attackers to take complete control of compromised systems.

The vulnerabilities affect TCP/IP protocols, Internet Explorer, MSN Messenger, Microsoft Word and Microsoft Exchange server system. Microsoft warned of the impending updates on 11 April.

Users are advised to visit the Microsoft security website and update all software up to Windows 98.

Vulnerability management firm Qualys, which discovered the TCP/IP flaw, warned that other vendors will have to address the issue.

"We found the problem last October and notified Microsoft," said Gerhard Eschelbeck, chief technical officer at Qualys.

"The problem is that the standard is not particularly clear in how to deal with this, and different vendors have different solutions. Most of the vendors affected have released patches or will release patches in the coming days."

Cisco stated that it has already released a patch for the problem.

The three remaining patches, which affect Windows, are rated 'important' by Microsoft, and could allow remote control of PCs if used correctly.

The software giant is also re-releasing two security bulletins: MS05-002 for users running Windows 98, 98 Second Edition and Windows ME; and MS05-009 for users running Windows Messenger.

See also:

Hackers place key-logging software onto blog sitesFree and anonymous hacking tools storage  15 Apr 2005
Third of UK businesses 'unprepared and under resourced' to cope with security issuesHacking and viruses top concern for UK's small and medium-sized businesses  15 Apr 2005
Update includes PeopleSoft code  15 Apr 2005
Chris Andrew of patch management specialist PatchLink explains how third parties can help firms guard systems  14 Mar 2005
Standard method of rating security vulnerabilitiesCommon Vulnerability Scoring System allows IT managers to prioritise patches  24 Feb 2005

All Bugs & Fixes

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Abraxas
Warehouse Supervisor - Logistics - Eindhoven As the largest express carrier and package delivery company in the world, and a major blue-chip organisation, my client are also a leading provider of specialised transportation, logistics, capital, ... more >
| Abraxas
Systems Programmer - Logistics - Eindhoven As the largest express carrier and package delivery company in the world, and a major blue-chip organisation, my client are also a leading provider of specialised transportation, logistics, capital, ... more >
| Abraxas
LAMP Infrastructure Developer - Leading Personal Navigation Company - Amsterdam This organisation is one of the fastest growing European manufacturers of satellite navigation systems, and are the clear market leader. This is an excellent opportunity ... more >
| Abraxas
Software Project Manager - Consumer Electronics - Amsterdam This organisation is the fastest growing European manufacturers of satellite navigation systems, and are the clear market leader. This is an excellent opportunity to work with the ... more >
More job opportunities