By George Norman - Software News Editor
Added on 23 Oct 2008(546 Views)
There is not much that we know for sure about this vulnerability, but what we do know is that it has been deemed “critical”, and it may allow a worm to find its way onto your computer without you realizing it. The worst thing is that there isn’t a specific set of actions that will trigger the worm. Some are speculating that the security hole can allow remote code execution on the targeted machine.

A total of five operating systems are affected: Windows 2000, XP, Server 2003, Windows Server 2008 and Vista. For the last two OSs the vulnerability has been deemed “important” and not “critical”. According to the timetable provided by Microsoft, the fix will be released today, the 23rd of October, 6pm BST. Three hours later the security experts from the Microsoft team will provide more info on the subject, in a worldwide webcast.


This is an out-of-band security update, which is a pretty rare thing with Microsoft. The Patch Tuesday cycle (which means that Microsoft releases all the updates once per month, on the second Tuesday of the month) is rarely broken, unless there is a more serious problem, such as individuals maliciously exploiting the vulnerability. The last time that Microsoft broke the cycle was back in 2007, in April, when there was an issue with the way Windows handled .ani files.

To tell you the truth, I get goose bumps and my hair stands on ends whenever I hear this two-word combination: critical vulnerability. Keep in mind that this security issue is directly related to the Windows OS, so until Microsoft releases that fix, an attacker could have a field day. If the vulnerability had affected some utility software, then I wouldn’t be so concerned. At least the details regarding this particular vulnerability are not freely circulating on the internet, which gives me some piece of mind.





Don't forget to:

RSS


Tags: Windows, Windows Update, Windows Vista, Microsoft

Link to this article:



Add comment:
Name(Required)
Email(Required - Never shown)
Website(Optional)
Comment(Required):

Insert the following code:
Software News
Chromium OS Goes Open-Source
This summer Google let the world know that it is working on a new operating system meant for the user that spends most of his time online. The operating system – aptly named Chrome OS because it is a natural extension...
20 Nov 2009
Office 2010 Beta Downloads Available to the Public
Earlier this week Redmond-based software giant Microsoft announced that Office 2010 became available for download as a Beta. The catch was that only ...
20 Nov 2009
Mozilla Releases: Firefox 3.6 Beta 3
The development process of the Firefox 3.6 browser is moving along rapidly. The first Beta version was released at the start of the month; Beta 2 was released about two weeks after Beta 1. About a week has passed since...
20 Nov 2009
New Labs Feature for Gmail: Green Robot!
The software developers at Google have announced the release of a new Gmail Labs offering called Green Robot! This new offering is meant to improve the Gmail Chat user experience by letting the ...
20 Nov 2009
Opera Mobile 10 Beta for Windows Mobile Is Out Also
Opera Software, the company that we all know for making the innovative and feature rich Opera web browser, has released Opera Mobile 10 Beta for Windows Mobile-powered devices. This release follows in the...
19 Nov 2009
Beta Testing is Over, Stable Version of Trillian for iPhone Released
The focus so far has been on desktop version of this multiprotocol instant messaging software application, Trillian Astra (version 4.1). Today is time to switch focus away from the desktop version and onto something a bit more...
19 Nov 2009
Recommended Tools

Top Downloads