July 19, 2008   Sign In |  About ebizQ |  Contact Us |  Join ebizQ Gold Club
Peter Schooff
Peter Twenty-Four Seven Security
Peter Schooff's blog is a daily look at what's going on in the world of computer security with an emphasis on how it affects businesses.

« New Phishing Fighter | Main | Master the Password »

October 05, 2006
Patches and Patch Adams

Microsoft, which has been downplaying a recently discovered VML (vector markup language) vulnerability, has "rush released" a patch to resolve the problem, making one believe that it was more critical then they let on. The vulnerability primarily targets those who are logged on that have full administrative rights, and an attacker could gain complete control over an affected system where they could install programs, view, change, or delete data, and even create new accounts with full rights. Users without full rights are less vulnerable, and now that zero-day attacks have become a real possibility, Microsoft recommends that the update is applied immediately. You can download the update here.

Also, the Patch Adams in the title refers to the reported Javascript flaw in Mozilla, which was announced by two presenters at the ToorCon hacking convention in San Diego, was, like the doctor who healed through humor, actually intended as a joke. Said the 19 year old Mischa Spiegelmock, "The main purpose of our talk was to be humorous...the code we presented did not in fact do this, and I personally have not gotten it to result in code execution, nor do I know of anyone who has."

Tags:,


Tags:

Posted by pschooff in Microsoft • Patches |Digg This|Add to del.icio.us

Trackback Pings

TrackBack URL for this entry:
http://www.ebizq.net/mt/mt-tb.cgi/772

Comments Post a comment




Remember Me?

(you may use HTML tags for style)

We ask that you type your code (displayed below) in the text box.This code is an image that cannot be read by a machine. It prevents automated programs from submitting comments.


Code:



Most Recent ebizQ Blog Entries
ADVERTISEMENT
Subscribe
News Feed
Blog Roll
Blogosphere
This Work
Accountability:The opinions expressed in this blog are solely representative of the blog's author, and not of ebizQ

Subscribe to our Newsletters
ebizQ Weekly Gold Club Update
Live Webinar Updates
Updates from ebizQ Partners
ebizQ SOA Update
ebizQ BPM Update
ebizQ Security Update
ebizQ BI Update
ebizQ Open Source Software Update
Virtual Show Newsletter
ebizQ Web 2.0 and the Enterprise
Your E-mail Address:
Getting Started with BPM
Date: Jul 29, 2008
Time: 12:00 PM ET
(16:00 GMT)

REGISTER TODAY!
Evolving Security Architectures and SOA for Better Business Collaboration
Date: Aug 06, 2008
Time: 12:00 PM ET
(16:00 GMT)

REGISTER TODAY!
Archived Webinars | Upcoming Webinars

Marketing Solutions | Feedback | About ebizQ | Unsubscribe | Privacy Policy | Site Map

Live Chat