Submit a Story!
Microsoft Security Bulletin MS08-067 – Critical: Vulnerability in Server Service Could Allow Remote Code Execution (958644)
This security update resolves a privately reported vulnerability in the Server service. The vulnerability could allow remote code execution if an affected system received a specially crafted RPC request. On Microsoft Windows 2000, Windows XP, and Windows Server 2003 systems, an attacker could ...
Pirates prefer Windows XP over Vista, says Microsoft
computerworld.com — October 21, 2008 (Computerworld) Software counterfeiters pass on Windows Vista and instead prefer to pirate Windows XP... , a Microsoft Corp. attorney said today, outlining a practice that tracks with the leanings of many of the company's customers. ... (more) Pirates prefer Windows XP over Vista, says Microsoft
Windows 7, or Vista Second Edition?
Windows 7, or Vista Second Edition?
techreport.com — As an early adopter, I'm a bit used to being burned by my purchases. Formats die, product... availability and support are usually low, and the next revision always does twice as much for half the price. Those assumptions aside, I still feel a bit ... (more) Windows 7, or Vista Second Edition?
 Windows 7 First Look: A Big Fix for Vista
Windows 7 First Look: A Big Fix for Vista
pcworld.com — What if Microsoft waved a magic wand and everything people hated about Windows Vista went away? You... might have an operating system that you liked--and that's what Microsoft appears to be striving for with Windows 7 . We checked out an early beta of ... (more) Windows 7 First Look: A Big Fix for Vista
1 Comment
  • JustJosh JustJosh
    +1
    Haven't seen this type of emergency patch in quite a while.
    Posted 10/24/2008 respond (flag)
Blog Reactions

Friday Shortbread
The Tech Report: News — ... plans for DSi, widgets, and big "surprise" EETimes reports Toshiba tips 40nm process , but is Sony ready? Microsoft: iPhone and Android are no threat Chinese surfers see red over Microsoft black-outs TechConnect Magazine reports Nexus unveils external PCI cooling system Eee PC car computer pictures (write-up in Russian) Far Cry 2 exclusive bundles from BFG Tech , EVGA , and XFX Software Microsoft Security Bulletin MS08-067 - critical (thanks Chris B.) C|Net on Microsoft's urgent security update: what it ...

Major Windows security patch released
bit-tech.net News Feed — Microsoft has broken its monthly patch cycle to release an urgent update for Windows 2000, XP, 2003, Vista, and 2008 in order to fix a critical security vulnerability which is already being exploited in the wild. The bulletin , released yesterday, outlines a flaw in the Server service which allows for remote code execution upon receipt of a specially crafted RPC request – which is to say that this vulnerability does not require user interaction to exploit, making it a particularly nasty little bug. While the flaw requires that your firewall rules allow RPC requests in, it's ...

Microsoft Patches Critical Vulnerability for XP, Vista, Windows 7, and Others
Maximum PC — ... Redmond usually releases security patches once a month, on Patch Tuesday, but Microsoft's security experts are worried enough about a newly reported vulnerability in the Server service to post an "out-of-band" security update, MS08-067, yesterday for all versions of Windows from Windows 2000 SP4 through Windows Server 2008 and Windows 7 pre-beta. Microsoft hasn't issued a security update between Patch Tuesday releases since April 2007, so this is a significant security issue. ...

Emergency Windows Update Released
Extremetech — ... released an emergency "out of band" update to Windows today. This is a highly unusual event, as over the last several years only a few patches have come out on days other than Patch Tuesday, the second Tuesday of the month. And it's worthy of the special treatment. MS08-067: Vulnerability in Server Service Could Allow Remote Code Execution describes a vulnerability in the ...

Conficker-created connections could confound consumers
Ars Technica — ... This has undoubtedly caused much wailing and gnashing of teeth within the halls of Microsoft itself; the company released a security update to resolve the flaw Conficker relies upon (MS08-67) in October, well before Conficker itself ...

7 Things You Need to Know About Conficker
Extremetech — On Wednesday, April 1, the latest variant of the Conficker (also known as Downadup and Kido) work will download new instructions. The sophistication of this worm and its botnet have many concerned, although the amount of legitimate concern is a matter of debate. If you're concerned, then here are the 7 most important things to know about Conficker: 1. The overwhelming majority of systems infected with Conficker were infected through a vulnerability in the Windows RPC facilities. This vulnerability was patched in October. If you installed that patch before Conficker came out ...

The "no bull" guide to Conficker
Hardware 2.0 — ... Better to be safe than sorry. Conficker can spread via network shares, leveaging weak passwords, so if you can’t trust the systems you’re connected to, and you know you’re using weak passwords, then your risk of being infected is elevated. Also, Conficker can spread via removable drives by taking advantage of Windows autoplay. If you’re running a bootleg copy of Windows that’s not patched properly, or you’ve been neglecting to patch up (the security bulletin that’s important here is MS08-067 ) then there’s a small chance that you could be infected. If you’re worried, run a ...

Qualys Adds Remote Detection of the Conficker Worm
DriverHeaven.net — Qualys, the leading provider of on demand IT security risk and compliance management solutions, today announced that it added remote detection of the Conficker Worm, which has been spreading in corporate networks since November of 2008. This detection was added to QualysGuard® Vulnerability Management in order to help organizations remotely identify ...

Making sense of the latest Conficker update
Hardware 2.0 — ... . This update also reintroduces Conficker’s ability to exploit the MS08-067 Windows vulnerability (Conficker.C didn’t have this feature). It’s also suspected that Conficker.E will coral PCs and put them to work as part of a spambot network. Q: Anything else interesting about Conficker.E? A : Well, it is set to delete itself if the date is May 3, 2009 or later. Gives us an idea as to when the next update could be due. Q: How widespread is Conficker.E? A : Well, this this update is being sent to systems running Conficker.C, and it is estimated that this has infected a few ...

Related Content
Microsoft patches critical PowerPoint hole
news.cnet.com 5/12/2009 — Microsoft on Tuesday released a patch aimed to fix a critical vulnerability in PowerPoint that had already led to exploits. The vulnerability is listed as critical for Office 2000, but rated only as important for Office XP, Office 2003, and Office ...
Microsoft Security Advisory (961040): Vulnerability in SQL Server Could Allow Remote Code Execution
microsoft.com 12/23/2008 — What is the scope of the advisory? The purpose of this advisory is to inform customers of a new vulnerability affecting Microsoft SQL Server. The vulnerability in Microsoft SQL Server affects the software that is listed in the "Overview" section. Is ...
Microsoft Security Bulletin Advance Notification for September 2009
microsoft.com 9/4/2009 — Microsoft Security Bulletin Advance Notification issued: September 3, 2009 Microsoft Security Bulletins to be issued: September 8, 2009 This is an advance notification of security bulletins that Microsoft is intending to release on September 8, 2009. ...
Microsoft Security Bulletin MS08-078 - Critical: Security Update for Internet Explorer (960714)
microsoft.com 12/17/2008 — This security update resolves a publicly disclosed vulnerability. The vulnerability could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights ...
Microsoft Download Center
microsoft.com 4/30/2009 — United States Change | All Microsoft Sites Microsoft Download Center Downloads A-Z Product Families Business Solutions Developer Tools Games & Xbox MSN Office Servers Windows Windows Live Windows Mobile Download Categories Development Resources ...
DirectX targeted in Microsoft security updates
news.cnet.com 7/9/2009 — Microsoft said on Thursday that it will issue six security updates on Patch Tuesday next week, including a critical one that will fix two outstanding holes in DirectX that have been targeted in attacks. In May , Microsoft announced that there had ...
Microsoft Security Essentials - TechReviewSource.com
techreviewsource.com 9/29/2009 — Microsoft will release the final version of its free and new security software, named Microsoft Security Essentials, on Tuesday, September 29. It includes a new interface, some new features, and a price tag of free, which is best of all. Microsoft ...
Microsoft security bulletin summary for March 2009
microsoft.com 3/6/2009 — Download the March security updates for Microsoft Windows. Posted on Tue, March 10 2009
Windows XP's Days are Really Numbered Now - Business Center
pcworld.com 2/9/2009 — In 10 weeks, Microsoft Corp. will begin to retire Windows XP by shifting the seven-year-old OS into a more limited support plan. Windows XP, Microsoft's most successful operating syste m ever, will leave what the company calls "mainstream ...
Microsoft slaps Vista SP2 beta on Windows Update
computerworld.com 12/6/2008 — December 5, 2008 (Computerworld) As expected, Microsoft Corp. launched the first public beta of Windows Vista Service Pack 2 (SP2) late yesterday, making it available for download from both its Web site and through its update mechanism. On Tuesday, ...
Microsoft CFO Outlines Plan to Weather Economic CrisisPC World Latest Technology News 10/23/2008
Microsoft's CFO outlined a three-part plan the company will undertake to weather the current economic crisis.
Microsoft 2.0 feels data center pinchThe Register 10/24/2008
"Low-priority" spending Microsoft's burgeoning online strategy is beginning to feel the spending pinch as the company batons down against a potential recession.…
Windows 7 and Microsoft's cloud - The Reg takes a MicroBiteThe Register 10/24/2008
PDC preview: Gates' trainers and Ozzie's head Radio Reg Microsoft's massive Professional Developers' Conference ( PDC ) hits Los Angeles, California, next week. It's the event for anyone interested in the direction and details of where ...
Microsoft joins server messaging effortCNET News - Business Tech 10/24/2008
Microsoft says it has joined an industry effort, initiated by several of its competitors, to establish a specification defining a standard way for business software to communicate. The specification, called the Advanced Message Queuing Protocol ...
Microsoft Patches Critical Vulnerability for XP, Vista, Windows 7, and OthersMaximum PC all RSS Feed 10/24/2008
  Redmond usually releases security patches once a month, on Patch Tuesday, but Microsoft's security experts are worried enough about a newly reported vulnerability in the Server service to post an "out-of-band" security update,  ...