Thursday, October 23, 2008

Microsoft Issues Off-cycle Critical Patch

Hey, all you Windows people. Microsoft has released MS08-067 to plug a zero-day vulnerability in the Server service of essentially all Windows operating systems.

There are already exploits in the wild for this, and it's capable of turning into a rapidly propagating Internet worm. If that happens, mitigating controls like blocking ports 139 and 445 on firewalls won't help much.

This vulnerability does NOT require authentication for execution, and it will then allow the running of malicious code without intervention by the user.

Get out there today and run Windows Update or Microsoft Update and patch this thing, or you'll regret it.

No comments:

Post a Comment

Please tell me what you think.