Link Partners--> Global China Singapore Thailand Vietnam Korea Philippines Laos New Zealand Taiwan Malaysia Japan Australia India Cambodia Indonesia
Asia Expats Forum Forum Index Asia Expats Forum
For Expats in Asia and Asians living Abroad
 
AlbumAlbum     FAQFAQ    QuizzesQuizzesSearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister  
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 
BlogsBlogs   

AddThis Social Bookmark Button
Forum  Home   Asia Currency Matrix   Cost of Living Calculator   Moving Quote   Salary Calculator   AEF Calendar   Crossword Puzzle   Exchange Rates   Daily Dose
Do your windows updates!!!

 
Post new topic   Reply to topic    Asia Expats Forum Forum Index -> Internet, Computers, Mobile Phones, Gadgets etc..
View previous topic :: View next topic  
Author Message
Mike
Site Admin


Joined: 07 Sep 2004
Posts: 4512
Location: Thailand

PostPosted: Thu Feb 10, 2005 8:51 am    Post subject: Do your windows updates!!! Reply with quote

on February 8, Microsoft released 12 new Security Bulletins, 8 of them rated critical.

Among the critical patches are MS05-011, which patches a vulnerability in SMB that may have some "worm potential" and MS05-014, which patches a set of vulnerabilities in Internet Explorer including the "Drag and Drop" vulnerability for which exploits are already in the wild. MS05-004, which is already being exploited, and MS05-010 also deserve some attention as these could be used for hacking activities against our servers. Some of the other bulletins deal with vulnerabilities that require limited user interaction, several of these are already being exploited; please see the list below for details.

MS05-004 addresses a vulnerability in ASP.NET allowing an attacker to bypass the security of a website by sending a specially crafted URL. If exploited an attacker may gain unauthorized access to a website. This vulnerability is already being exploited. Microsoft rates this vulnerability as Important.

MS05-005 addresses a remote code executing vulnerability in Office XP, which may be exploited by luring the user into opening a specially crafted HTML link. If exploited an attacker may gain control of the victim's system up to the permissions of the user. Microsoft rates this vulnerability as Critical. Please note that limited user interaction is required to exploit this vulnerability.

MS05-006 addresses a cross-site scripting and spoofing vulnerability in SharePoint Server and SharePoint Team Services. The exploitation of this vulnerability may lead to the execution of malicious scripts on an end-user system. Microsoft rates this vulnerability as Moderate.

MS05-007 addresses a vulnerability in Windows that may allow disclosure of information (e.g. users that have open connections to a shared resource) by sending specially crafted packages to the system. Microsoft rates this vulnerability as Critical.

MS05-008 addresses a vulnerability in the Windows shell that attackers may use to copy arbitrary files to the victims system withouth displaying an appropriate dialog box by luring the user into visiting a malicious web site. By placing the file in a suitable location, the execution of this file may be triggered by the user or a system restart. This vulnerability is already being exploited. Microsoft rates this vulnerability as Important. Please note that limited user interaction is required to exploit this vulnerability.

MS05-009 addresses a vulnerability in the PNG handling of Windows Media Player 9 and various versions of Windows Messenger. An attacker may exploit this vulnerability by luring the user into opening a link to a malicious website and use the vulnerability to execute arbitrary code on the victim's system. Please note that limited user interaction is required to exploit this vulnerability.
Additionally two vulnerabilities exist in the PNG handling of Windows Messenger; however as Sametime is ABB's standard product for instant messenging no support will be granted for Windows Messenger.

MS05-010 addresses a vulnerability in the License Logging Service of Windows NT4, 2000 and 2003 Server products. This vulnerability could be exploited by establishing a connection with the License Logging Service and sending a specially crafted network message allowing the attacker to remotely execute code on the server. On Windows 2000 SP4, SBS 2000 running on Windows 2000 Server SP4 and Windows 2003 only authenticated users can establish connections with the License Logging Service; on Windows NT 4 Server, Windows 2000 SP3 and SBS 2000 on Windows Server 2000 SP3 anonymous users could establish connections to the License Logging Service. Microsoft rates this vulnerability as Critical.

MS05-011 addresses a vulnerability in SMB, which allows anonymous attackers to remotely execute code on a vulnerable system by sending a specially crafted broadcast-packets. First assessments indicate that this vulnerability has some potential to be exploited by a network-based worm; however routers that are set up according to standards are configured not to forward directed broadcasts, which would limit the effects of a possible worm to a single subnet. Please verify that your routers are configured accordingly. Microsoft rates this vulnerability as Critical.

MS05-012 addresses two vulnerabilities in COM and OLE. The vulnerability in COM can be exploited by an attacker logged on to a system and will result in an elevation of privileges. The OLE vulnerability allows an attacker to execute arbitrary code and can be exploited by luring the victim into opening a malicious email-attachment containing a malicious OLE object. It is currently unclear if this scenario also applies to our Notes setup. Microsoft rates this vulnerability as Critical. Please note that limited user interaction and/or access to the system is required for exploiting these vulnerabilities.

MS05-013 addresses a vulnerability in the DHTML Editing Component Active-X Control. This vulnerability can be exploited by luring the user into opening a malicious web-page or opening a malicious HTML e-mail (the latter will most likely not work in our Notes environment). If exploited this vulnerability enables an attacker to execute scripts in the Local Machine security zone in Internet explorer or access information stored in the filesystem of the victim's system. This vulnerability is already being exploited. Microsoft rates this vulnerability as Critical. Please note that limited user interaction is required to exploit this vulnerability.

MS05-014 is a cumulative update for Internet Explorer, which addresses a total of 4 vulnerabilities. Among those vulnerabilities is the "Drag and Drop" vulnerability that allows an attacker to copy arbitrary files onto the victims system withouth displaying an appropriate dialog box by luring the user into visiting a malicious web site. By placing the file in a suitable location, the execution of this file may be triggered by the user or a system restart. This vulnerability is already being exploited. Microsoft rates these vulnerabilities as Critical. Please note that limited user interaction is required to exploit these vulnerabilities.

MS05-015 addresses a vulnerability in the Hyperlink Object Library. An attacker could exploit this vulnerability by creating a specially crafted link and lure the user into clicking this link that may be delivered by a malicious web-site or email-message allowing the attacker to remotely execute code on the system. Microsoft rates this vulnerability as Critical. Please note that limited user interaction is required to exploit this vulnerability.
_________________
Asia Expats Forum
Expat Friends Dating
Back to top
View user's profile Send private message Blog
Alan Stepney
Centurion


Joined: 05 Nov 2004
Posts: 853
Location:

PostPosted: Fri Feb 11, 2005 1:07 am    Post subject: Reply with quote

and there was me thinking that the major, and much vaunted, SP2 would
keep everything current for a while.

Even so, I can remember computers the early pre-windows computers which were certainly not user-friendly, and what we have today is vastly improved on those days.

Windows, in fact, my first computer didnt even have doors!
Back to top
View user's profile Send private message
Mike
Site Admin


Joined: 07 Sep 2004
Posts: 4512
Location: Thailand

PostPosted: Fri Feb 11, 2005 10:17 am    Post subject: Reply with quote

Alan Stepney wrote:
and there was me thinking that the major, and much vaunted, SP2 would
keep everything current for a while.

Even so, I can remember computers the early pre-windows computers which were certainly not user-friendly, and what we have today is vastly improved on those days.

Windows, in fact, my first computer didnt even have doors!

Problem is that your current pc has too many backdoors cusssing cusssing
_________________
Asia Expats Forum
Expat Friends Dating
Back to top
View user's profile Send private message Blog
Lius
Centurion


Joined: 12 Oct 2004
Posts: 660
Location: Thailand

PostPosted: Fri Feb 11, 2005 10:20 am    Post subject: Reply with quote

and don't forget to lock them as well uhm
Back to top
View user's profile Send private message Blog MSN Messenger
Display posts from previous:   
Post new topic   Reply to topic    Asia Expats Forum Forum Index -> Internet, Computers, Mobile Phones, Gadgets etc.. All times are GMT + 7 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
SaveFlights.com- Cheap flights from Thailand


Powered by phpBB line, with phpBB linked to www.phpbb.com. If you refuse to include even this then support on our forums may be affected. The phpBB Group : 2002 // --> Powered by phpBB © 2001, 2005 phpBB Group
phpBB SEO

Forum Map
Site Map
ups of viagra
viagra cialis online
levitra vardenafil
the pharmacy shop viagra
brand viagra online without prescription
womens levitra
canadian online cialis
buy generic no online prescription viagra
buying illegal viagra
where to get levitra
buy levitra discount
online pharmacy with echeck
cialis deals
propecia online usa
top pharmacies selling brand name cialis
online pharmacy levitra
women does viagra work
online pharmacy fast delivery
viagra express delivery usa
generic levitra
cialis levitra
propecia for sale online
the pharmacy shop cialis
cheap generic cialis
buy cheap cialis
viagra toronto
order viagra on line
best levitra prices
finasteride generic
best prices on viagra
us levitra
best price for generic cialis
buy pfizer viagra without prescription
cialas
100 mg cialis
buy viagra 50mg
nz online viagra
generic cialis review
viagra tablet
where can i buy propecia
propecia pay by check
buy viagra online with echecks
my canadian pharmacy
next day delivery on generic cealis
viagra delivered one day
purchase viagra soft tabs
ordering real viagra from canada
sildenafil citrate side effects
viagra canada generic
viagra online overnight
pfizer viagra 50 mg online
propecia no prescription
get viagra online without prescription
where to find cialis
propecia - 1.00 mg
buy viagra without a prescription
cialis and viagra for sale in canada
sales of cialis
viagra on line us
buy viagra online cheap no prescription
buy cialis online pharmacy
online pharmacy cialis brand
canadian pharmacy discount code
canadian viagra 25
how to get cialis in canada
best viagra and popular in uk
buy cialis from mexico
25mg viagra
cananda viagra
buy generic viagra
candian viagra
viagra canada online pharmacy
generic levitra fda approved
online levitra
cheap viagra next day delivery
viagra alternative
ordering real levitra
does propecia work
cheap viagra uk
50mg generic viagra
get viagra fast
cialis usa women
purchase daily cialis
cialis fast delivery
viagra australia no prescription
viagra for sale no prescrip
real viagra shop
cialis delivered canada
viagra cialis levitra canadian pharmacy
buy viagra tabs
different milligrams of cialis
cialis delivery canada
viagra mexico
propecia in canada
order viagra online overnight delivery
viagra pfizer online
online levitra tablet
buy cialis profes
where can i purchase propecia
viagra buy online
online viagra canada
buying viagra online
generic propecia online within canada
buy viagra online no prescription canada
is buying viagra online bad
branded viagra
the best pharmacy store
cialis professional
safe online to buy viagra
canadian healthcare pharmacy
cheapest online source for propecia
buy cheap viagra online
buy online viagra
buy viagra in india
daily levitra
nizagara viagra online
discounted cialis online
viagra online
official pharmacy canada
viagra online purchase
viagra and cialis in canada free samples
cheap cialis canada
cialis next day delivery
viagra and paypal
canada propecia
pharmacy selling viagra in israel
buy propecia generic
buy viagra woman
were to buy viagra?
viagra on line
viagra tablets sale
buy cialis online viagra
canada cialis online
canadian neighborhood pharmacy without perscription
buy 130mg viagra
levitra generic
cialis online
viagra 50 mg
buy viagra online no prescription
viagra uk next day delivery
levitra discount
buy viagra online uk
buy levitra online without prescription
were to buy viagra in spain
sildenafil tablets
canadian pharmacy propecia
cialis soft tabs
reputable cialis
cialis levitra viagra
price viagra
purchasing cialis
50mg viagra no prescription
buy online drug viagra pharmacy
25mg viagra online
viagra online no prescription
real viagra online without prescription
cialis buy
viagra in australia
cialis alternative
legal pharmacy online
female viagra cheap canadian
levitra sales from canada
buy generic viagra canada
no prescription viagra
levitra dosage
cheap drugs viagra cialas
cialis gel
prescription for viagra
viagra original buy online
canadian pharmacy online
canadian pharmacy cialis soft
where can i get viagra
cheap viagra sales
where can i buy viagra uk
cialis professional 20 mg
non prescription viagra
no prescription cialis
generic propecia mastercard
buy cialic
100 mg viagra
pharmacy online
buy viagra online at lowest price
viagra soft tabs 50 mg
get cialis online
what is viagra soft tabs
buy viagra softtabs
best online generic levitra
viagra online australia
viagra to buy in uk
inexpensive viagra
buy viagra in canada
buy cialis cheap
female viagra
canada meds levitra
bruising on cialis
united pharmacy uk
best deal for propecia
how can i buy levitra without a prescription
pharmacy 4 all
cialis tablets
25mg viagra
propecia from canada
order sildenafil online with no prescription
cost of cialis
pfizer viagra online pharmacy
generic levitra canada
what alternatives are there to viagra without a prescription?
generic viagra buy usa
canadian cialis
online pharmacy propecia renova
propecia online pharmacy no prescription
cialis professional 100 mg