Thursday, October 23, 2008

Critical patch for MS vulnerability

I have received notice (Oct 23) of a critical patch released today for Windows 2000, Windows XP, Windows Server 2003, (not critical for Vista and Windows Server 2008 but catalogued as Important there due to the UAC).

This is unusual as it is out of the normal Tuesday patch release cycle. According to Microsoft Security Bulletin MS08-067 this vulnerability in a server service could allow a specially crafted RPC request to run remote code in your server without authentication.

Be aware. Be safe.

No comments:

Post a Comment