Small Business Technology Blog

Friday, October 24, 2008

Microsoft Security and vulnerability Alert "outside the norm"

If you've been using windows for more than just a little while now you're probably aware of the constant and unrelenting system updates, patches, security warnings from Microsoft, so why was it that Thursday October 24th was any different?


Well for starters I got not one, not two or three but 5 separate notices from Microsoft about this update, and it's not even "update day" by microsoft standards, they're breaking the mold, they don't do that often, and when they do, it's for good reason.


In this case Microsoft has found (and fixed) a major flaw, and not even a new one, this particular flaw was found about 2 years ago and fixed, and it's reared it's ugly head again, the details are below about the how and why of the update but the short answer to thos concerned is run a windows Update on your system (visit http://update.microsoft.com) and ensure you've got the latest patches, there is also a link below for the manual update, this applies to all current (2000 through XP and Vista) versions of windows.


The concern "ulnerability in Server Service Could Allow Remote Code Execution" translated out of technical jargon means any computer in the windows 2000 through Vista age (any windows pc less than 8 years old typically) is now vulnerable to a hacked attack that could allow remote control of your PC from the internet.


Alert - Critical Product Vulnerability - October 23, 2008 Microsoft Security Bulletin Release (Out of Band)

Due the urgency of this bulletin, you have received this notification in English. If your specified language preference is French, we will send you a French language version as soon as it becomes available. Thank you for your understanding.

What is the purpose of this alert?


This alert is to provide you with an overview of the new security bulletin released (out of band) on October 23, 2008. Microsoft has released security bulletin MS08-067, Vulnerability in Server Service Could Allow Remote Code Execution (958644), to address a vulnerability in all currently supported versions of Windows. This security update was released outside of the usual monthly security bulletin release cycle in an effort to protect customers.

Executive Summary

This security update resolves a privately reported vulnerability in the Server service. The vulnerability could allow remote code execution if an affected system received a specially crafted RPC request. On Microsoft Windows 2000, Windows XP, and Windows Server 2003 systems, an attacker could exploit this vulnerability without authentication to run arbitrary code. It is possible that this vulnerability could be used in the crafting of a wormable exploit. Firewall best practices and standard default firewall configurations can help protect network resources from attacks that originate outside the enterprise perimeter. The security update addresses the vulnerability by correcting the way that the Server service handles RPC requests.

Recommendations

Microsoft recommends customers prepare their systems and networks to apply this security bulletin immediately once released to help ensure that their computers are protected from attempted criminal attacks. For more information about security updates, visit http://www.microsoft.com/protect.


http://www.microsoft.com/technet/security/bulletin/MS08-067.mspx

No comments:

Post a Comment