Results 1 to 10 of 10
  1. #1
    Uranium Lounger
    Join Date
    Mar 2001
    Location
    New Jersey
    Posts
    6,684
    Thanks
    1
    Thanked 11 Times in 11 Posts

    New CRITICAL Patch From MS (XP Pro SP1)

    Has anyone else heard about the latest hole in Windows (Apparently All Supported Versions). I got an email from Steve Bass today (just one of his newsletters, we're not personal friends) advising of this latest vulnerability that Steve Gibson, of Gibson Research, had just told him of. There's a quick warning and a link on the Gibson Research site that leads to a Microsoft Security Bulletin MS04-007 detailing the problem and providing a patch. I downloaded the patch to my desktop (never install the damn things without checking them out first) and when I attempted to install it I got a message telling me to backup my system and shut down all running programs before continuing. Most of the MS patches install on the fly while you are still connected to the internet. So I bailed out and came here.

    Any info or advice would be appreciated !! <img src=/S/yep.gif border=0 alt=yep width=15 height=15> I'd really like for Woody to give us his <img src=/S/2cents.gif border=0 alt=2cents width=15 height=15> on this before I go ahead and install this little fellow.
    <IMG SRC=http://www.wopr.com/w3tuserpics/DocWatson_sig.gif>

  2. #2
    Super Moderator jscher2000's Avatar
    Join Date
    Feb 2001
    Location
    Silicon Valley, USA
    Posts
    23,112
    Thanks
    5
    Thanked 93 Times in 89 Posts

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    This is a very important subsystem in Windows, and attacks on this vulnerability could be very serious. On the other hand, no exploits have yet been released for this vulnerability, at least to my knowledge. You probably can wait a day or two to install it, particularly if you are well firewalled from the web. You need to protect all ports, including HTTP (port 80) and HTTPS (443) that could possibly receive a packet that interacts with the authentication mechanisms of Windows. It's somewhat unpredictable how this vulnerability might be attacked, so extra caution with peer-to-peer, IM and IRC connections also would be wise.

  3. #3
    Uranium Lounger
    Join Date
    Mar 2001
    Location
    New Jersey
    Posts
    6,684
    Thanks
    1
    Thanked 11 Times in 11 Posts

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    Thanks Jefferson !!! I appreciate the insight. It's no wonder they want you to backup your system before installing this little guy !! As always with the MS patches, patience is a virtue. I've got my defenses up and am hunkered down in my foxhole !!! <img src=/S/grin.gif border=0 alt=grin width=15 height=15>
    <IMG SRC=http://www.wopr.com/w3tuserpics/DocWatson_sig.gif>

  4. #4
    Platinum Lounger
    Join Date
    Jan 2001
    Location
    Quedgeley, Gloucester, England
    Posts
    5,333
    Thanks
    0
    Thanked 1 Time in 1 Post

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    Doc

    I was just notified via the usual ToolTip balloon that there was a new fix available for XP. I let XP download and install it, and it asked to reboot. It rebooted and came up again without problems.

    I must be once of the lucky chaps that has had no problems recently with the Windows Update saga. <img src=/S/crossfingers.gif border=0 alt=crossfingers width=17 height=16>
    <font face="Script MT Bold"><font color=blue><big><big>John</big></big></font color=blue></font face=script>

    Ita, esto, quidcumque...

  5. #5
    Plutonium Lounger
    Join Date
    Nov 2001
    Posts
    10,550
    Thanks
    0
    Thanked 7 Times in 7 Posts

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    I've installed this latest security update on 4 different PCs, all running Windows XP Professional. No problems noticed on any of them.

    StuartR

  6. #6
    Uranium Lounger
    Join Date
    Mar 2001
    Location
    New Jersey
    Posts
    6,684
    Thanks
    1
    Thanked 11 Times in 11 Posts

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    John,

    Perhaps my troubles are being caused by the fact that I had the temerity to actually download the patch/fix and save it to disk before trying to install it !! Maybe next time I will first set a restore point in System Restore and then go online and let it download and install itself. Either way, I'm going to wait a few days before I do anything.

    I guess if you take the control away from MS they want you to know that they are not going to be responsible for what you do. <img src=/S/nope.gif border=0 alt=nope width=15 height=15> Legal disclaimer, or some such.
    <IMG SRC=http://www.wopr.com/w3tuserpics/DocWatson_sig.gif>

  7. #7
    Uranium Lounger
    Join Date
    Mar 2001
    Location
    New Jersey
    Posts
    6,684
    Thanks
    1
    Thanked 11 Times in 11 Posts

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    Thanks for the input Stuart. The more success stories I hear, the more likely I'll be to install the thing. Do you think it has anything to do with the fact that you and John are using British PCs ??? Nah !!! <img src=/S/grin.gif border=0 alt=grin width=15 height=15>
    <IMG SRC=http://www.wopr.com/w3tuserpics/DocWatson_sig.gif>

  8. #8
    Platinum Lounger
    Join Date
    Jan 2001
    Location
    Quedgeley, Gloucester, England
    Posts
    5,333
    Thanks
    0
    Thanked 1 Time in 1 Post

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    Ah - a British Dell Optiplex and Dimension, you mean? British keyboard and International Settings, certainly... Including the
    <font face="Script MT Bold"><font color=blue><big><big>John</big></big></font color=blue></font face=script>

    Ita, esto, quidcumque...

  9. #9
    Uranium Lounger
    Join Date
    Mar 2001
    Location
    New Jersey
    Posts
    6,684
    Thanks
    1
    Thanked 11 Times in 11 Posts

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    Gotta love that dry British humor !! <img src=/S/smile.gif border=0 alt=smile width=15 height=15>
    <IMG SRC=http://www.wopr.com/w3tuserpics/DocWatson_sig.gif>

  10. #10
    Administrator
    Join Date
    Mar 2001
    Location
    St Louis, Missouri, USA
    Posts
    23,580
    Thanks
    5
    Thanked 1,058 Times in 927 Posts

    Re: New CRITICAL Patch From MS (XP Pro SP1)

    Doc, Most software installs/updates recommend that you shut down all programs. That is done so that as few files as possible are in use when the update is installed thus minimizing the need to reboot. In the case of an update to a 'core' level component in Windows you'll almost always have to reboot. For any significant update, a backup is a good idea. One more thing, while creating a restore point can't hurt the installation of a hotfix probably will create a restore point also. Last, I've applied the patch to six XP Pro systems with no problems so far.

    Joe

    Joe
    Joe

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •