If this page does not print out automatically, select Print from the File menu.

Microsoft offers lonely duo for Patch Tuesday

Single critical flaw awaits repair for November

Tom Sanders in California, vnunet.com 09 Nov 2007

Microsoft is preparing just two security bulletins as part of its monthly patch release cycle on 13 November.

Microsoft uses the term 'security bulletin' to bundle updates that affect a single application or system component. One bulletin can fix one or more vulnerabilities.

One of the bulletins is rated 'critical' and affects Windows Server 2003 and XP. The rating is the most severe in Microsoft severity rating schedule and typically indicates that attackers could exploit the flaw to take control of a system without user interaction.

Microsoft describes the second flaw as a spoofing vulnerability that could allow an attacker to change the address bar in Internet Explorer to hide the fact that the user is visiting a phishing website.

The vulnerability affects only Windows Server 2003 systems and is rated 'important'.
Microsoft issues its security updates on the second Tuesday of each month. The regular releases are intended to allow IT administrators time to prepare for the release.

www.itweek.co.uk/2203081
This article was printed from the IT Week web site
© Incisive Media Ltd. 2008
Incisive Media Limited, Haymarket House, 28-29 Haymarket, London SW1Y 4RX, is a company registered in the United Kingdom with company registration number 04038503
Close this window to return to the website