Advertisement
Promo

Security threats Toolkit

Story: Microsoft prepares to patch critical Windows hole

  • Previous comment

Posted by: lumension (Friday 9 January 2009, 3:31 PM)

  • Reply

and time for you to prepare for 2009......

Interesting to see that Microsoft did not release an out of band patch for Microsoft Security Advisory (961040), which addresses a vulnerability in SQL Server. The company has published a workaround, however, it seems they will NOT correct the fundamental, architectural vulnerability. Lookout on to see if they also inlcude it in the update next week.

The light load really presents a good opportunity for IT administrators to get their “housecleaning” in order to kick off the 2009 security planning process. This means getting their vulnerability and patching program in place by ensuring all previous patches, both Microsoft and non-Microsoft, have been deployed across their environment using best practices and re-evaluating ways to maximise on their patching process moving forward. For example, for administrators who failed to patch MS08-67 for the RPC vulnerability that was reported back in October 2008, this is the best time to go back and patch the issue as security experts are starting to see new variants appearing in the wild. There is widespread use of the vulnerability today than back in October.

Private message disabled

lumension

lumension
LONDON, UK
Member since: October 2008

Site Activity Rating:

3

 


  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Sentry Posts Blog

Twitter hack was DNS redirect

Twitter has said an attack on Thursday which took the site offline for many users was the result of a DNS redirect. A group calling itself the Iranian Cyber Army redirected users... More

1 comment

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

1 comment

Win a BlackBerry with Vlingo voice recognition

Win a BlackBerry with Vlingo voice recognition

What is ZDNet UK's usual tagline?

Competition closes - 14 Jan 2010


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters