Bink.nu Services

Subscribe to our feed 

 


Order Now!

Windows 7 for XP Professionals
Updating Support Skills from XP to Windows 7
by Bink.nu's Raymond Comvalius

Who is online

There are 57 guest(s) online.

There are 0 member(s) online.

Sponsors



Archives

Posted by Steven Bink December 22, 2006 2:06 PM with 4 comment(s)
Filed under:
MSRC Blog: We are closely monitoring developments related to a public posting of proof of concept code targeting an issue with the Client Server Run-Time Subsystem. The PoC reportedly allows for local elevation of privilege on Windows 2000 SP4, Windows Server 2003 SP1, Windows XP SP1, Windows XP SP2 and Windows Vista operating systems.  Initial indications are that in order for the attack to be successful, the attacker must already have authenticated access to the target system. Of course these are preliminary findings and we have activated our emergency response process involving a multitude of folks who are investigating the issue in depth to determine the full scope and potential impact to Microsoft’s customers.  Currently we have not observed any public exploitation or attack activity regarding this issue. While I know this is a vulnerability that impacts Windows Vista I still have every confidence that Windows Vista is our most secure platform to date.  As always, we here at the MSRC encourage everyone to enable a firewall, apply all security updates and install anti-virus and anti-spyware software.

Regardless of it being the holiday season the MSRC will be monitoring overall threat conditions for this and any other issue reported to us. If we do see anything that we believe puts Microsoft customers at risk, or significant new developments, we will update everyone through our standard mechanisms including this blog and if need be, an Advisory with additional details.

Full Story At Source
22396 Views

Comments

 

Pseudopath said:

I guess we should look forward to having to download another slew of updates on freshly-installed Vista boxes. Some things never change! [8-)]
December 22, 2006 3:39 PM
 

tal_star said:

Long Live the need for Secutiry Patchs....

Besides we knew this was going to happen sooner or later... Besides why do you think they have plans for SP1 already ;-)

December 22, 2006 5:07 PM
 

exorcist said:

 

Not even gone mainstream yet and here we are again waiting for the security patches, so lets all go out and spend our hard earned cash on another M$ OS that does not deliver what it promises.

Instead of Vista and SP1 for vista they should have just spent the time creating XP SP3 with added security oh! silly me then they could'nt sell SP3 for £300 pounds could they.

 

December 23, 2006 8:12 PM
 

bear_luke said:

This flaw is locally exploitable only. Web sites are doing FUD with this news
December 24, 2006 5:26 PM

About Steven Bink

Founder of Bink.nu
Bink.nu 3.0. Copyright © 1999-2012 Steven Bink. All Rights Reserved.
Microsoft and Microsoft logo's are trademarks of Microsoft Corporation.