Information Age: News, analysis & insight for IT & business leaders

 

Microsoft issues major security update

10 February 2006  

Microsoft has released four new patches to cover 20 security flaws across all current versions of its Windows operating system.

14 April 2004 Microsoft has released four new patches to cover 20 security flaws across all current versions of its Windows operating system.

Most of the vulnerabilities, which were announced in Microsoft's latest monthly Security Bulletin, were identified by external sources and experts, rather than the software giant itself. Some of these sources claim they alerted Microsoft to these flaws more than six months ago.

This is believed to be the largest number of security holes to be patched by Microsoft simultaneously since it began its monthly bulletins in October 2003. Only ten other such vulnerabilities have been announced so far this year.

Eight of the 20 flaws are graded 'critical', the highest level of alert, and 16 could be exploited by an attack over the Internet — considered a more significant threat than email-borne viruses as it could enable outsiders to take control of Windows PCs.

However, four patches fix the same kind of Windows vulnerabilities (in the RPC/DCOM components) that allowed the Blaster worm to become one of the most prolific and damaging viruses of 2003.

Another flaw in the Outlook Express emailing software could allow a virus to spread by just clicking on a web link.

Although no virus writers have yet taken advantage of any of these vulnerabilities, the announcement could prompt security threats taking advantage of the notoriously slow adoption of patches, particularly by home users.

Microsoft is trying hard to repair Windows's reputation for insecurity and has increased the number of engineers working on security.

At the end of March, Microsoft founder and chief software architect Bill Gates posted an "executive email" to customers highlighting the company's efforts to improve its update process. At the same time, he acknowledged that "the evolving nature of threats requires a broader, multi-pronged response" than simply releasing patches.


Comments 

There are currently no comments on this article

People who read this also read...

Platform Computing - Category winner

Since 1992, Platform has established a reputation as an industry leader in High Performance Computing (HPC) management software, bringing the most powerful commercial HPC solutions to leading global enterprises.

Torvalds: "Exclude software from patentability"

Linux creator Linus Torvalds has urged European legislators to abandon plans that may allow software to be patented, saying it will stifle innovation. But critics say his solution is too simplistic.

 
Advertisement

White Papers

Read article

Developing ios Solutions for Business

Whitepapers

Quickly develop and deploy custom iPad and iPhone solutions. With FileMaker Pro, iPad and iPhone solutions can be prototyped and completed in hours or days versus weeks or months. No iOS application programming or design experience is required.

Read article

IDC Spotlight: Access Control and Certification

Whitepapers

Read this brief for best practices on managing user access compliance.

Read article

GPS World

Whitepapers

Is the PREMIER global media brand serving the exploding world of positioning and navigation for OEM, commercial and consumer applications.

More
div class="banner">