On CHOW: Did you leave a huge tip?
BNET Business Network:
BNET
TechRepublic
ZDNet

By Joris Evers
Posted on ZDNet News: Oct 12, 2005 12:01:00 AM

Microsoft on Tuesday issued fixes for 14 flaws in Windows, including a security hole that one expert says is ripe for exploitation by a major worm.

The majority of the vulnerabilities addressed in nine security bulletins from Microsoft require some user interaction for an attack to succeed. That means an attacker would have to trick people into visiting a malicious Web site, clicking on a bad link or opening a malformed file to exploit the security holes.

However, the vulnerabilities rated "critical" may allow a system to be compromised remotely without any user interaction. One such flaw, described in Microsoft's MS05-051 security bulletin, lies in a Windows component for transaction processing called the Microsoft Distributed Transaction Coordinator, or MSDTC.

"It is a remote system vulnerability that could very easily be turned into a worm," said Marc Maiffret, the chief hacking officer at security specialist eEye Digital Security. "It is very similar to the vulnerability two months ago that resulted in the Zotob worm."

The MSDTC buffer overflow flaw primarily affects computers running Windows 2000. Depending on configuration, it could also be used against a computer with Windows XP with Service Pack 1 or Windows Server 2003, Microsoft said in its advisory.

"Among the critical updates, customers who run older versions of the operating system such as Windows 2000 should prioritize MS05-051 for deployment on those systems," said Stephen Toulouse, a program manager in Microsoft's Security Response Center.

The MS05-051 update also fixes three other bugs in Windows, but these carry varying risk ratings, depending on the operating system. One, deemed critical, is a flaw in a Windows component that handles resource management tasks, called COM+. This security hole is also found in Windows 2000 and Windows XP SP1.

People who run older versions of the operating system are more at risk from the MSTDC and COM+ vulnerabilities, Toulouse said. That goes for the rest of the rest of the 14 flaws tackled by the patches issued Tuesday.

"In general, many of these bulletins have a lower impact in terms of severity and are much more difficult to exploit on newer operating systems such as Windows XP SP2 and Windows Server 2003 SP1," Toulouse said.

Despite being put on the back burner by Microsoft, the older Windows 2000 is still popular among corporations..

Both the MSDTC and COM+ flaws were privately reported to Microsoft by researchers following the company's "responsible disclosure" practices. The software giant said it is not aware of any attacks that exploit the flaws.

Maiffret of eEye said he believes it will be only a matter of days for the first attack code to surface. "There is no technical challenge in writing a worm for the (MSDTC) vulnerability. It really depends if somebody decides to or not," he said. Microsoft's Toulouse said the software giant will be watching for malicious software.

Other risks
Microsoft has labeled two other security alerts as critical. One patch, delivered in MS05-050, fixes a problem in software for streaming media in Windows, called DirectShow. The other, in MS05-052, repairs problems in Internet Explorer similar to those patched in July and August.

The streaming media flaw affects all current versions of Windows. An attacker could exploit the flaw using a malformed media file, Microsoft said. A computer could be compromised when the user opened the file or visited a Web page that hosts the file.

The IE patch cuts links between the browser and other pieces of Microsoft software. The Web browser can inappropriately call on other Windows components, potentially allowing an intruder to commandeer a Windows PC, Microsoft said. The French Security Incident Response Team alerted Microsoft to one of these issues.

Of its six remaining security bulletins, Microsoft tagged four "important"--one notch below critical. These address vulnerabilities in various parts of Windows. One, MS05-048, affects Windows as well as Exchange, Microsoft's e-mail server software, and deals with a component that processes e-mail messages.

Another "important" update aims to repair a problem related to plug-and-play in Windows 2000 and Windows XP. The issue, outlined in MS05-047, cannot be exploited remotely by unauthenticated users, according to Microsoft.

A bug in the same component led two months ago to the spread of the Zotob worm, which took down systems across the United States, including those at cable news station CNN, television network ABC and The New York Times.

Also deemed "important" were bulletin MS05-049, on three vulnerabilities in how Windows deals with certain files and characters, and bulletin MS05-046, which involves a software component that supports Novell NetWare networks.

The last two alerts were given a "moderate" risk rating. One describes an issue with the Network Connection Manager in the 2000, XP and Server 2003 versions of Windows that could cause a system to crash. The update to patch it is delivered in bulletin MS05-045. The other is on a flaw in the Windows FTP client that could allow an attacker to change the location of a file transfer by hosting a malformed file on an FTP server.

Users of Microsoft patching mechanisms, such as Windows Automatic Updates, do not typically need to take action to receive the patches. Microsoft urges other people to download and install the fixes from its Web site.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 74 Talkback(s)
Which of your major OS don't offer patches
or consultants, . . I hear the Sun consultants falling down the university steps trying to fix something they were hired to get back up and running.... (Read the rest)
Posted by: Boot_Agnostic Posted on: 10/22/05 You are currently: a Guest | | Terms of Use
Microsoft plugs Windows worm holes  Loverock Davidson | 10/11/05
LMAO  stormdoor | 10/11/05
here we go again...  D-Ram | 10/12/05
Ya gotta understand Loverock D . . .  abcpc123 | 10/12/05
Understanding is the key  Loverock Davidson | 10/12/05
Yes, And If I Push Someone In A Wheelchair Down The Steps  itanalyst | 10/12/05
What point are you trying to make?  ye | 10/12/05
The Point I'm Trying To Make  itanalyst | 10/12/05
Again I repeat: Unless your intent...  ye | 10/12/05
...If you push someone in a wheelchair down the steps ...  benning | 10/12/05
Golf claps all around...  jasonp@... | 10/12/05
How is this unique to Microsoft?  ye | 10/12/05
I get that Mike Cox is a satirist...  Zogg | 10/12/05
8.0 (NM)  Outside T. Box | 10/12/05
What are you kidding me ?  I'm Ye, the MS SHILL . | 10/12/05
Remarkably, patches to malformations are being delivered at  michael_t | 10/12/05
MS drops the ball AGAIN  toomuchgreeatea@... | 10/11/05
MS drops ball...  X Marks The Spot | 10/11/05
Perhaps you guys don't understand.  ShadeTree | 10/12/05
This is plain stupid.  ye | 10/12/05
Old versus new!  ShadeTree | 10/12/05
Perhaps it's just because I don't know...  ye | 10/12/05
Gotta  Linux User 147560 | 10/12/05
What ever could your point be?  ShadeTree | 10/12/05
You must be joking  toomuchgreeatea@... | 10/12/05
You are still wrong about the redirect.  ShadeTree | 10/12/05
Pot, meet kettle  whisperycat | 10/12/05
Same old song and dance  Real World | 10/12/05
And you're defending MS?  toomuchgreeatea@... | 10/12/05
14 worm-holes! hahahahahahahehaha  An_Axe_to_Grind | 10/12/05
Please provide a link that lists ...  ShadeTree | 10/12/05
Hmmm...Aren't you that  Krazyken39 | 10/12/05
Microsoft plugs more than Wormholes.  foxie9876 | 10/12/05
Everyone calm down...  Mike Cox | 10/12/05
This one is a 10 (NT)  toomuchgreeatea@... | 10/12/05
Good one!  abcpc123 | 10/12/05
8.5!  Reverend MacFellow | 10/12/05
The real issue  papatator | 10/12/05
You are a good man  toomuchgreeatea@... | 10/12/05
It's only because the know how ineffective they are ... why bother ? wink nt  michael_t | 10/12/05
Gee .... you are backwards  michael_t | 10/12/05
9 for sure... (NT)  ju1ce | 10/12/05
You have done better, 6.5  roptik | 10/12/05
Another inflammatory story.  Elihion | 10/12/05
Message has been deleted.  Real World | 10/12/05
Wow, deleted...  Real World | 10/12/05
Ironically enough  Real World | 10/12/05
Hence why we  Linux User 147560 | 10/12/05
Please  Roger Ramjet | 10/12/05
VIP?  zeeper | 10/12/05
Another inflamatory story  _Harp_ | 10/19/05
They have to have a way...  steelebonz@... | 10/12/05
That wasn't Mom....  s_gamgee | 10/13/05
All updates and patches are good ...  MacGeek2121 | 10/12/05
It's called E x t o r t i o n!  An_Axe_to_Grind | 10/12/05
RE:  Krazyken39 | 10/12/05
Microsucks just want your money again  piggy_z | 10/13/05
RE Again ....! Another one who can't see It !  Krazyken39 | 10/14/05
Recent MS patches  alle2003@... | 10/20/05
Which of your major OS don't offer patches  Boot_Agnostic | 10/22/05
Microsoft releases patches and now msn messenger down now  gossimer | 10/12/05
Micro Slop Patches  bf45k@... | 10/12/05
1 hour!  An_Axe_to_Grind | 10/12/05
No Kiddin'!  s_gamgee | 10/13/05
errors trying to update Windows!!!  r_darling | 10/12/05
Windows Updates  bf45k@... | 10/12/05
budget doesn't allow upgrade...  r_darling | 10/12/05
What errors are you getting?  IT Scion | 10/12/05
You're running NT?  toadlife | 10/12/05
This is a joke, right?  Real World | 10/13/05
MicroSoft fixes  gjlloyd | 10/12/05
YEP they do!  pahollow@... | 10/13/05
MS has been plugging so many holes that one can  michael_t | 10/12/05
msi installer, broken OE_IE link, erratic network connection  nickel_z | 10/13/05

What do you think?

advertisement
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
Reduce risk. Reduce complexity. Increase reliability.
A simplified IT environment isn't just less complex. It's also more reliable. Standardize on a single Linux platform with SUSE Linux Enterprise from Novell, and get the world's most interoperable Linux
Learn more >>
Keep Up With The Latest In Document Management with The DocuMentor.
Doc delivers the scoop on today's enterprise content management, printer maintenance, and all other issues related to document management. It's the DocuMentor Blog.
Learn more >>
The best support in the Linux business
If Linux is going to power your mission-critical applications, you'd better have the best support known to business. Novell was rated the top provider of Linux technical support.
Learn more >>
Save time with automated shipping solutions
The Business Essentials Guide provides you useful tools and templates to help grow your business and save you time with automated shipping solutions.
Visit the UPS Business Essentials Guide
The more you simplify, the more you save
When you transition from your existing Red Hat environment to SUSE Linux Enterprise from Novell, you can recognize dramatic cost savings, perhaps as much 50%
Learn more >>
Microsoft Dynamics CRM Online - Free Six-Month Trial for Eligible Organizations
Microsoft Dynamics CRM Online provides fast online access, simple contact management and better sales performance for a low monthly cost - the best value on the market today.
Learn more about the free, six-month trial offer>>
advertisement

White Papers, Webcasts, and Downloads

SmartPlanet

  • Thought-provoking progressive ideas on diverse topics that intersect with technology, business, and life, and matter to the world at large. Visit SmartPlanet
  • More from IBM
  • Innovate your business' process model, play against the market, compete against others on our scoreboards and WIN! Try INNOV8 2.0: A BPM Simulator
  • Enabling Real-World Business Transformation through IBM Service Management Read the EMA Analyst Report
Click Here