All the latest UK technology news, reviews and analysis

Patch Tuesday puts serious pressure on admins

by Dave Neal

11 Aug 2010

Be the first to comment

  • Tweet this
Microsoft
Microsoft's latest security notice came on the same day as Adobe's update, adding to the pressure on admins

Security experts have warned administrators to ignore Microsoft's latest Patch Tuesday update at their peril, despite it covering a record-tying 34 vulnerabilities.

A third of the vulnerabilities are rated 'critical', suggesting work needs to start immediately, but firms need to think carefully about what order to fix them in.

Security firm Symantec highlighted in a blog post that the SMB pool overflow vulnerability is a "real concern" for enterprises, explaining that it opened up multiple systems to attack, despite being seemingly innocuous.

"Not only does it give an attacker system-level access to a compromised SMB server, but the vulnerability occurs before authentication is required from computers contacting the server," wrote Joshua Talbot, security intelligence manager at Symantec Security Response.

"This means that any system allowing remote access and not protected by a firewall is at risk."

Talbot added that this would involve quite a sophisticated attack, which would have to begin by compromising an employee's machine using social engineering tactics.

However, should this be achieved, the compromised machine could be used to attack any other SMB connected machine in the network.

"Workstations that have enabled file and print sharing are also at risk. Laptops with this configuration that connect to untrusted networks, such as public Wi-Fi, or that allow ad hoc connections, could be attacked by neighbouring computers," Talbot explained.

"The user could then unwittingly carry their infected system back to the enterprise, opening the door to an organisation's entire network."

Security firm Lumension, meanwhile, labeled the patch releases "bumper" and "disruptive", and agreed that the patches would put more pressure on IT departments that are already struggling with other patch cycles. However, it invoked the growing threat of the seemingly irrepressible Zeus botnet.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

36%

0%

10%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Web Tester, Global Online SaaS Provider

This role is in the busy technology department within...

Sage Software Support Technician

We are looking for a Sage Technical Support specialist...

EMEA Cash Equity/Futures Support Manager

EMEA Cash Equity/Futures Support Manager, Top Tier Bank...

Senior Java Analyst/Developer

Senior Java Analyst/Developer Skill set: Java, J2SE...

To send to more than one email address, simply separate each address with a comma.