Virsu
Virus

US government warns on Microsoft bug

Second alert in six days as exploit code threatens millions of PCs

Iain Thomson

The US Department of Homeland Security (DHS) has issued a further warning over the major flaw disclosed earlier this month affecting Microsoft's key operating systems.

After the alarm was raised on 16 July by Microsoft, the DHS issued its first warning eight days later that users should implement the patch.

Advertisement

The department has now reacted to the emergence of dangerous exploit code, as reported by vnunet.com here, by warning that it has seen been a big increase in scanning for vulnerable systems.

"Two factors are causing heightened interest in this situation: the affected operating systems are in widespread use; and exploitation of the vulnerability could permit the execution of arbitrary code," the DHS said in a statement.

"DHS and Microsoft are concerned that a properly written exploit could rapidly spread on the internet as a worm or virus in a fashion similar to Code Red or Slammer."

Given the number of potentially vulnerable systems, independent experts also fear that the situation could see the launch of a worm capable of infecting millions of PCs, leaving them in the hands of hackers or spammers.

"This is very important to patch as quickly as possible," said Graham Titterington, senior analyst at Ovum.

"This flaw isn't as immediately accessible as the problem that led to the Code Red situation since it deals more with internal than external communication.

"Nevertheless it can be used in that way and the fact it's so widespread is a major cause for concern."

The critical flaw is in Microsoft's Distributed Component Object Model Remote Procedure Call (RPC) interface.

The vulnerability involves the RPC protocol, which deals with inter-computer communications. Microsoft warned that, under certain circumstances, the RPC might not properly check messages sent to the PC.

A malformed message could be routed through port 135 and used to run code on the infected PC. Windows Exchange Server 2003, XP, 2000 and NT 4 are all affected.

The patch is available here.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Microsoft

Microsoft issues three critical alerts

New patches available for Internet Explorer, MDAC and DirectX

Blaster

Blaster worm starts European campaign

Lovesan/Blaster on the move following US infections

Hackers pounce on latest Microsoft flaw

Code already being developed for launch of next big worm

Microsoft warns on trio of new flaws

Patch available for critical flaw in all current versions of Windows

Related whitepapers

Related jobs

Most watched

Summit: Views From the Valley

V3.co.uk's US office weighs in on the information overload crisis

John Chambers speaks on collaboration

Cisco boss talks up new offerings

Analysis and Reports

Remote access - Three steps to getting connected

3.4 million UK professionals now work from home – is your company equipped?

Cost benefits of a global collaboration network

This white paper is a must read for organisations looking for evidence of the bottom-line benefits of high-definition video and voice communications

Poll

Impact of Information Overload poll

Impact of Information Overload poll

What is the biggest problem your firm faces as a result of the data explosion?

View poll results

Advertisement

White paper library

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you over 6,000 white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Spotlight

Summit video: Intel discusses processors designed for data overload (part one of two)

Intel explains how its Xeon processors can handle data-intensive apps

fujitsu logo

Unite calls off Fujitsu strike

Talks between the two sides will extend into the new...

Richard Thomas

Summit: Q&A Richard Thomas, former Information Commissioner

Thomas speaks out on government databases and data privacy

Symantec office

Summit: Symantec makes the case for smarter storage

Company talks up unified approach

Primary Navigation