09 Aug 2006
Security firms are urging Microsoft users to patch their systems against the 23 security vulnerabilities disclosed by the software firm yesterday.
McAfee said it has reviewed Microsoft’s security bulletin and recommends that users confirm the Microsoft product versioning outlined in the bulletins and update as recommended.
Microsoft’s 12 security bulletins cover a total of 23 vulnerabilities – 15 of which are rated 'critical' due to their potential for remote code execution. Ten of the bulletins affect Microsoft Windows, while the remaining two bulletins pertain to Microsoft Office. The MS06-040 Vulnerability in Server Service is a worm candidate since it is remotely exploitable and does not require user interaction.
"Today Microsoft has patched 23 vulnerabilities, the highest number since their monthly patch program started," said Monty Ijzerman, senior manager of the Global Threat Group for McAfee Avert Labs.
"Eleven of the patched vulnerabilities were already publicly known or exploited in the wild. One of them, the Server Service vulnerability, can be remotely exploited without the need for any action on the victim's side, thus making it a worm candidate."
The Microsoft August security bulletin can be viewed here.
Latest stories from Security
Related videos
Related articles
Related jobs
Poll
Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?
Orange and Intel talk us through the ins and outs of their San Diego smartphone
Connect with V3.co.uk
Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them
The importance of understanding your infrastructure
Are you looking for a new positing within the Testing...
A leading global provider of critical information to...
Want to work for one of the most dynamic, creative environments...
Want to work for one of the most dynamic, creative environments...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Missing Updates from 12/01/06
I have been unable to get Updates fron 12/01/06 and simply can't see WHY?-- Is it possible that my security can be TOO strong?
Posted by: George Green 09 Aug 2006