If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. |
|
|
|
Thread Tools | Display Modes |
#1
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5 January
Microsoft announced that it would release a security update to help
protect customers from exploitations of a vulnerability in the Windows Meta File (WMF) area of code in the Windows operating system on Tuesday, January 2, 2006, in response to malicious and criminal attacks on computer users that were discovered last week. Microsoft will release the update today on Thursday, January 5, 2006, earlier than planned. Microsoft originally planned to release the update on Tuesday, January 10, 2006 as part of its regular monthly release of security bulletins, once testing for quality and application compatibility was complete. However, testing has been completed earlier than anticipated and the update is ready for release. In addition, Microsoft is releasing the update early in response to strong customer sentiment that the release should be made available as soon as possible. Microsoft's monitoring of attack data continues to indicate that the attacks are limited and are being mitigated both by Microsoft's efforts to shut down malicious Web sites and with up-to-date signatures form anti-virus companies. The security update will be available at 2:00 pm PT as MS06-001. NOTE At the moment I have no information as to whether Microsoft will be issuing patches for any Win 9x operating system. -- Mike Maltby |
#2
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5 January
Apologies for omitting the source of the previous message. For the full
release see http://www.microsoft.com/technet/sec...n/advance.mspx -- Mike Maltby |
#3
|
|||
|
|||
WMF patch available at Windows Update
"Mike M" wrote in message ... Microsoft announced that it would release a security update to help protect customers from exploitations of a vulnerability in the Windows Meta File (WMF) area of code in the Windows operating system on Tuesday, January 2, 2006, in response to malicious and criminal attacks on computer users that were discovered last week. Microsoft will release the update today on Thursday, January 5, 2006, earlier than planned. Microsoft originally planned to release the update on Tuesday, January 10, 2006 as part of its regular monthly release of security bulletins, once testing for quality and application compatibility was complete. However, testing has been completed earlier than anticipated and the update is ready for release. In addition, Microsoft is releasing the update early in response to strong customer sentiment that the release should be made available as soon as possible. Microsoft's monitoring of attack data continues to indicate that the attacks are limited and are being mitigated both by Microsoft's efforts to shut down malicious Web sites and with up-to-date signatures form anti-virus companies. The security update will be available at 2:00 pm PT as MS06-001. NOTE At the moment I have no information as to whether Microsoft will be issuing patches for any Win 9x operating system. -- Mike Maltby |
#4
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5 January
NOTE At the moment I have no information as to whether Microsoft will
be issuing patches for any Win 9x operating system. Microsoft Security Bulletin MS06-001 "Vulnerability in Graphics Rendering Engine Could Allow Remote Code Execution (912919)" (http://www.microsoft.com/technet/sec.../ms06-001.mspx) appears to indicate that Microsoft are only releasing patches for Win2K, XP and Win2K3. It is possible that an update for Win Me and Win 98SE will be released at a later date but it should be noted that to date, whilst acknowledging that gdi32.dll is vulnerable in all of their systems since Win3, Microsoft and others are saying that there is no evidence to date of Win 9x systems having been attacked through this vulnerability. Noel Paton, myself and others have spent time trying to compromise Win 9x systems but for myself at least with no success to date. -- Mike Maltby |
#5
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5January
Mike M wrote:
Microsoft announced that it would release a security update to help protect customers from exploitations of a vulnerability in the Windows Meta File (WMF) area of code in the Windows operating system on Tuesday, January 2, 2006, in response to malicious and criminal attacks on computer users that were discovered last week. Microsoft will release the update today on Thursday, January 5, 2006, earlier than planned. Microsoft originally planned to release the update on Tuesday, January 10, 2006 as part of its regular monthly release of security bulletins, once testing for quality and application compatibility was complete. However, testing has been completed earlier than anticipated and the update is ready for release. In addition, Microsoft is releasing the update early in response to strong customer sentiment that the release should be made available as soon as possible. Microsoft's monitoring of attack data continues to indicate that the attacks are limited and are being mitigated both by Microsoft's efforts to shut down malicious Web sites and with up-to-date signatures form anti-virus companies. The security update will be available at 2:00 pm PT as MS06-001. NOTE At the moment I have no information as to whether Microsoft will be issuing patches for any Win 9x operating system. The patch is on Windows Update now. -- Alias Use the Reply to Sender feature of your news reader program to email me. Utiliza Responder al Remitente para mandarme un mail. |
#6
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5 January
|
#7
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5January
Alias wrote:
Mike M wrote: Microsoft announced that it would release a security update to help protect customers from exploitations of a vulnerability in the Windows Meta File (WMF) area of code in the Windows operating system on Tuesday, January 2, 2006, in response to malicious and criminal attacks on computer users that were discovered last week. Microsoft will release the update today on Thursday, January 5, 2006, earlier than planned. Microsoft originally planned to release the update on Tuesday, January 10, 2006 as part of its regular monthly release of security bulletins, once testing for quality and application compatibility was complete. However, testing has been completed earlier than anticipated and the update is ready for release. In addition, Microsoft is releasing the update early in response to strong customer sentiment that the release should be made available as soon as possible. Microsoft's monitoring of attack data continues to indicate that the attacks are limited and are being mitigated both by Microsoft's efforts to shut down malicious Web sites and with up-to-date signatures form anti-virus companies. The security update will be available at 2:00 pm PT as MS06-001. NOTE At the moment I have no information as to whether Microsoft will be issuing patches for any Win 9x operating system. The patch is on Windows Update now. Thanks for the tip. Downloaded and installed with no problem. richard |
#8
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5January
richard wrote:
Alias wrote: Mike M wrote: Microsoft announced that it would release a security update to help protect customers from exploitations of a vulnerability in the Windows Meta File (WMF) area of code in the Windows operating system on Tuesday, January 2, 2006, in response to malicious and criminal attacks on computer users that were discovered last week. Microsoft will release the update today on Thursday, January 5, 2006, earlier than planned. Microsoft originally planned to release the update on Tuesday, January 10, 2006 as part of its regular monthly release of security bulletins, once testing for quality and application compatibility was complete. However, testing has been completed earlier than anticipated and the update is ready for release. In addition, Microsoft is releasing the update early in response to strong customer sentiment that the release should be made available as soon as possible. Microsoft's monitoring of attack data continues to indicate that the attacks are limited and are being mitigated both by Microsoft's efforts to shut down malicious Web sites and with up-to-date signatures form anti-virus companies. The security update will be available at 2:00 pm PT as MS06-001. NOTE At the moment I have no information as to whether Microsoft will be issuing patches for any Win 9x operating system. The patch is on Windows Update now. Thanks for the tip. Downloaded and installed with no problem. richard Me too, on three machines. -- Alias Use the Reply to Sender feature of your news reader program to email me. Utiliza Responder al Remitente para mandarme un mail. |
#9
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5 January
Just dl'd and installed on my XP box, all seems well. I did reregister the
..dll and remove the 'hexblog' fix prior to installing the update. So, am I protected now? Heirloom, old and taking off one of two raincoats "Alias" wrote in message ... Mike M wrote: Microsoft announced that it would release a security update to help protect customers from exploitations of a vulnerability in the Windows Meta File (WMF) area of code in the Windows operating system on Tuesday, January 2, 2006, in response to malicious and criminal attacks on computer users that were discovered last week. Microsoft will release the update today on Thursday, January 5, 2006, earlier than planned. Microsoft originally planned to release the update on Tuesday, January 10, 2006 as part of its regular monthly release of security bulletins, once testing for quality and application compatibility was complete. However, testing has been completed earlier than anticipated and the update is ready for release. In addition, Microsoft is releasing the update early in response to strong customer sentiment that the release should be made available as soon as possible. Microsoft's monitoring of attack data continues to indicate that the attacks are limited and are being mitigated both by Microsoft's efforts to shut down malicious Web sites and with up-to-date signatures form anti-virus companies. The security update will be available at 2:00 pm PT as MS06-001. NOTE At the moment I have no information as to whether Microsoft will be issuing patches for any Win 9x operating system. The patch is on Windows Update now. -- Alias Use the Reply to Sender feature of your news reader program to email me. Utiliza Responder al Remitente para mandarme un mail. |
#10
|
|||
|
|||
WMP Vulnerability - Further update from Microsoft Thursday 5 January
|
|
Thread Tools | |
Display Modes | |
|
|
Similar Threads | ||||
Thread | Thread Starter | Forum | Replies | Last Post |
Ping Ron Martell | PAT (Paul) | General | 7 | April 3rd 05 07:16 PM |
New Install of Windows & W-TShooters question | Star | General | 26 | August 30th 04 07:48 AM |
Microsoft Security Bulletin MS04-018 - Cumulative Security Update for Outlook Express (823353) | PA Bear | General | 5 | July 15th 04 05:49 AM |
Microsoft Security Bulletin MS04-024 - Vulnerability in Windows Shell Could Allow Remote Code Execution (839645) | Gary S. Terhune | General | 2 | July 14th 04 05:06 AM |
Microsoft Security Bulletin MS04-023--Please Note! | Gary S. Terhune | General | 4 | July 14th 04 04:39 AM |