Microsoft Windows Vista Community Forums - Vistaheads
Recommended Download



Welcome to the Microsoft Windows Vista Community Forums - Vistaheads, YOUR Largest Resource for Windows Vista related information.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so , join our community today!

If you have any problems with the registration process or your account login, please contact us.

Driver Scanner

Microsoft Security Advisory (958963): Exploit Code Published Affecting the Server Service

microsoft.public.windowsupdate






Speedup My PC
Reply
  #1 (permalink)  
Old 10-28-2008
PA Bear [MS MVP]
 

Posts: n/a
Microsoft Security Advisory (958963): Exploit Code Published Affecting the Server Service
[Crossposted to Security, Security Home Users, and Windows Update
newsgroups; Followup To set for Security newsgroup]

Microsoft Security Advisory (958963): Exploit Code Published Affecting the
Server Service
<QP>
Microsoft is aware that detailed exploit code demonstrating code execution
has been published on the Internet for the vulnerability that is addressed
by security update MS08-067. This exploit code demonstrates code execution
on Windows 2000, Windows XP, and Windows Server 2003. Microsoft is aware of
limited, targeted active attacks that use this exploit code. At this time,
there are no self-replicating attacks associated with this vulnerability.
Microsoft has activated its Software Security Incident Response Process
(SSIRP) and is continuing to investigate this issue.

Our investigation of this exploit code has verified that it does not affect
customers who have installed the updates detailed in MS08-067 on their
computers. Microsoft continues to recommend that customers apply the
updates to the affected products by enabling the Automatic Updates feature
in Windows.

We continue to work with our Microsoft Security Response Alliance (MSRA) and
Microsoft Active Protections Program (MAPP) partners so that their products
can provide additional protections for customers. We have updated our
Windows Live Safety Scanner, Windows Live One Care, and Forefront security
products with protections for customers. We have also been working with our
partners in the Global Infrastructure Alliance for Internet Safety (GIAIS)
program to take steps to help keep attacks from spreading.

Customers who believe they are affected can contact Customer Service and
Support. Contact CSS in North America for help with security update issues
or viruses at no charge using the PC Safety line (1-866-PCSAFETY).
International customers may request help by using any method found at this
location: http://www.microsoft.com/protect/support/default.mspx (click on
the select your region hyperlink in the first paragraph).

Mitigating Factors:

• Customers who have installed the MS08-067 security update are not affected
by this vulnerability.

• Windows 2000, Windows XP and Windows Server 2003 systems are primarily at
risk from this vulnerability. Customers running these platforms should
deploy MS08-067 as soon as possible.

• While installation of the update is the recommended action, customers who
have applied the mitigations as identified in MS08-067 will have minimized
their exposure and potential exploitability against an attack.
</QP>
Source: http://www.microsoft.com/technet/sec...ry/958963.mspx
--
~Robear Dyer (PA Bear)
MS MVP-IE, Mail, Security, Windows Desktop Experience - since 2002
AumHa VSOP & Admin http://aumha.net
DTS-L http://dts-l.net/

Reply With Quote
Sponsored Links
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Security update for SQL Server 2005 Service Pack 2 Error Code 64C taward microsoft.public.windowsupdate 8 03-19-2009 05:52
CitectSCADA ODBC service exploit published, (Mon, Sep 8th) Steve Security News 0 09-08-2008 17:40
Security Update for SQL Server 2005 Service Pack 2 (KB948109) - Fails with Code 645 tigger_geek microsoft.public.windowsupdate 2 08-02-2008 23:22
Microsoft SQL Server 2005 Express Edition Service PaError Code: 0x Mikjensen microsoft.public.windowsupdate 0 02-24-2008 03:07
Security World: Security features of Microsoft Exchange Server 2007 Service Pack 1 Steve Security News 0 08-14-2007 18:41




All times are GMT +1. The time now is 14:13.




Driver Scanner - Free Scan Now

Vistaheads.com is part of the Heads Network. See also XPHeads.com , Win7Heads.com and Win8Heads.com.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.7
Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.6.0 RC 2

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120