Virsu
Virus

US government warns on Microsoft bug

Second alert in six days as exploit code threatens millions of PCs

Iain Thomson

The US Department of Homeland Security (DHS) has issued a further warning over the major flaw disclosed earlier this month affecting Microsoft's key operating systems.

After the alarm was raised on 16 July by Microsoft, the DHS issued its first warning eight days later that users should implement the patch.

Advertisement

The department has now reacted to the emergence of dangerous exploit code, as reported by vnunet.com here, by warning that it has seen been a big increase in scanning for vulnerable systems.

"Two factors are causing heightened interest in this situation: the affected operating systems are in widespread use; and exploitation of the vulnerability could permit the execution of arbitrary code," the DHS said in a statement.

"DHS and Microsoft are concerned that a properly written exploit could rapidly spread on the internet as a worm or virus in a fashion similar to Code Red or Slammer."

Given the number of potentially vulnerable systems, independent experts also fear that the situation could see the launch of a worm capable of infecting millions of PCs, leaving them in the hands of hackers or spammers.

"This is very important to patch as quickly as possible," said Graham Titterington, senior analyst at Ovum.

"This flaw isn't as immediately accessible as the problem that led to the Code Red situation since it deals more with internal than external communication.

"Nevertheless it can be used in that way and the fact it's so widespread is a major cause for concern."

The critical flaw is in Microsoft's Distributed Component Object Model Remote Procedure Call (RPC) interface.

The vulnerability involves the RPC protocol, which deals with inter-computer communications. Microsoft warned that, under certain circumstances, the RPC might not properly check messages sent to the PC.

A malformed message could be routed through port 135 and used to run code on the infected PC. Windows Exchange Server 2003, XP, 2000 and NT 4 are all affected.

The patch is available here.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Microsoft

Microsoft issues three critical alerts

New patches available for Internet Explorer, MDAC and DirectX

Blaster

Blaster worm starts European campaign

Lovesan/Blaster on the move following US infections

Hackers pounce on latest Microsoft flaw

Code already being developed for launch of next big worm

Microsoft warns on trio of new flaws

Patch available for critical flaw in all current versions of Windows

Related whitepapers

Related jobs

Most watched

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

Xperia X1

Video Review: Sony Ericsson Xperia X1

First Looks Editor Ian Williams gets hands on with the Sony Ericsson Xperia X1

IT white papers

Search white papers

Top categories

Poll

Poll: Summer smartphones

Poll: Summer smartphones

Which smartphone will you be taking to the beach this summer?

View poll results

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Spotlight

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

old computer

Government honours veterans of Bletchley Park at last

Surviving veterans of the code-breaking facility to receive badge of...

Motorola MC55 Enterprise Digital Assistant

Review: Motorola MC55 Enterprise Digital Assistant

A rugged Windows Mobile device for mobile workers

BT

BT promises 1.5m fibre connections by summer 2010

Telco begins major rollout in 69 locations across the UK

Primary Navigation