|
|||||||
![]() |
|
|
Thread Tools |
|
|
#1 |
|
Richard Swinburne
bit-tech Staff
Join Date: Mar 2001
Location: Omnipwntent
Posts: 28,259
![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Microsoft warns of Windows flaw
http://www.bit-tech.net/news/2008/04...windows_flaw/1
Microsoft has released a security advisory alerting customers to the possibility for a privilege escalation attack against all current Windows releases - including Vista.
|
|
|
|
|
|
#2 | |
|
whatever
Join Date: Dec 2006
Location: Belfast
Posts: 1,879
![]() |
ouch...
let's hope for a quick fix.
__________________
920 D0, EX58-UD5, 6GB OCZ 1333 @ 1600 7-6-6, 4870x2, 128 GB Samsung PB22-J SSD and 2 old 500GB WD's, Seasonic M12 700W, Cosmos S Quote:
|
|
|
|
|
|
|
#3 |
|
Hypermodder
Join Date: Nov 2006
Location: US of A
Posts: 884
![]() |
just another day in the news for MS......nothing surprising to see here people.....
|
|
|
|
| devdevil85 |
| View Public Profile |
| Find More Posts by devdevil85 |
|
|
#4 |
|
quad fuelled, GTX200 powered
Join Date: Aug 2007
Location: in a room near Soton Uni. UK
Posts: 3,940
![]() ![]() ![]() |
if Mac and Windows found similar bug at the same time, i bet MS will fix the bug faster than Apple
__________________
of Corsair Dominators @ 1528Mhz 8-8-8-24 // BFG gtx260+ OC2 MaxCore 216SP 896MB // Samsung 64GB SSD // WD Raptor 74GB + Black 1TB + Green 1TB // Corsair Hx620w // Antec p182 // Samsung 24" T240 |
|
|
|
|
|
#5 | |
|
Mini Love
Join Date: Aug 2007
Location: England, South of.
Posts: 1,168
![]() |
Quote:
__________________
Death to consolification !!! [size=1]Give me my Windforce! I'm coming back! |
|
|
|
|
|
|
#6 |
|
Eat my...
Join Date: Jul 2004
Location: UK
Posts: 2,210
![]() |
The question is not who patches quicker, but who introduces more bugs while supposidly patching.
__________________
PSN: koola-uk |
|
|
|
|
|
#7 | |
|
whatever
Join Date: Dec 2006
Location: Belfast
Posts: 1,879
![]() |
Mac users dont download patches on releaseday though since they think their OS is save
__________________
920 D0, EX58-UD5, 6GB OCZ 1333 @ 1600 7-6-6, 4870x2, 128 GB Samsung PB22-J SSD and 2 old 500GB WD's, Seasonic M12 700W, Cosmos S Quote:
|
|
|
|
|
|
|
#8 |
|
mother into a board?!
Join Date: Jan 2007
Location: Canada, Montreal
Posts: 3,475
![]() ![]() ![]() ![]() ![]() ![]() |
At least it is Microsoft that found it and has balls to mention it and not a hacker and have the surprise of your life.
__________________
AMD Athlon 64 X2 4400+ S939 | 3GB of Corsair/Kingston (mix) RAM @ 400Mhz 3-3-3-8-2T | ASUS A8N32-SLI *Deluxe* | Geforce 260 GTX | X-Fi XtreamMusic | Western Digital 250GB SATA-II 16MB of Buffer | Corsair HX620W | Antec SOLO case | Monitor: 24inch Dell U2410 | Win 7 64-bit Go for Pro! |
|
|
|
|
|
#9 |
|
inch-perfect
Join Date: Jun 2007
Location: cannoning into the reds, Toronto, Canada
Posts: 2,456
![]() |
Not really that threatening if you look at the big picture. I personally don't know any typical home users who run an SQL database.
__________________
**Defunct** Socket 939 San Diego 4000+::2GB PC3200::Radeon 9600 SE 128MB::200GB HDD::24" Dell 2407WFP-HC::WinXP x64/x86 dual boot
Dell Vostro 1500 laptop::Socket P Merom T7100::2GB PC5400::Go 8600m GT 256MB::660GB HDD::15.4" WXGA+, 24" Dell 2407WFP-HC::WinXP::Fanatec 911 Wheel+Pedals |
|
|
|
|
|
#10 |
|
Minimodder
Join Date: Jan 2006
Location: Loughborough, UK
Posts: 44
![]() |
Annoyingly Visual Studio 5005/2008 install SQL server (a limited, testing version), even if you don't want it as I recently had to remove uninstall about half a dozen parts of the bloody thing (I don't do database work, so meh). So I can see a number of developer's being vulnerable.
|
|
|
|
| Laitainion |
| View Public Profile |
| Find More Posts by Laitainion |
|
|
#11 | |
|
Hypermodder
Join Date: May 2007
Posts: 887
![]() |
Quote:
Just another reason to use linux eh
|
|
|
|
|
| completemadness |
| View Public Profile |
| Find More Posts by completemadness |
|
|
#12 |
|
/dev/null
Join Date: Aug 2005
Location: Belgium
Posts: 4,102
![]() ![]() |
You need a reason for that?
__________________
There Are 10 Types Of People, Those Who Know Binary and Those Who Don't |
|
|
|
|
|
#13 |
|
Legomaniac
Join Date: Mar 2008
Location: USA
Posts: 256
![]() |
As a software developer myself, I tend to be understanding of MS on issues like this. I know that even during small application development, bugs get past QA testing. I couldn't begin to fathom the effort it takes to build an entire OS. I think MS does a damn good job at notifying the user community when there are issues like this and takes the appropriate steps to fix the security holes in a reasonable time.
No software product goes out the door bug-free. |
|
|
|
| LordPyrinc |
| View Public Profile |
| Find More Posts by LordPyrinc |
|
|
#14 |
|
CK is God!!!
Join Date: Oct 2006
Posts: 1,067
![]() |
as a guy running both IIS and SQL server on my Vista box i cant say im particularly happy about this but to be honest im not that pissed off either
__________________
Gaming Box:: q6600 @3.0 :: 9800gtx :: Abit IP35 :: 4gb :: 1.4TB :: akasa eclipse :: Win7 Development:: PhenomII 955BE @3.2 :: 4200 :: asus M4A785 M Evo :: 1.25TB ::Win7 Media Centre :: q6600 @3.0 :: x1950pro :: asus p35 epu :: 8gb :: 320 GB :: Lc17B :: Win7 server:: I7 860 :: p55 gd65 :: 3450 :: 8 TB :: 8gb :: Rebel 12 :: server 2008 R2 |
|
|
|
|
|
#15 |
|
Ultramodder
Join Date: Apr 2003
Location: Netherlands
Posts: 1,218
![]() |
Thats not the right question: Since the ratio Windows based systems: OsX systems is like 95:1 the discovery of bugs in OSx is also much much much less then Windows. It's more likely that OsX contains hundreds of undiscovered bugs but duo the small application base. I guess there are 1% Apple based SQL servers / Web servers / Application servers (Is OsX capable to run these things anyway?)
__________________
Mascleta: "The most accurate simulation of thunder, humans can simulate..." The answer is 42, so... whats the question again? If you know what 'Peek' and 'Poke' represents, then you are probably as old as me. |
|
|
|
|
|
#16 | |
|
What owl?
Join Date: May 2005
Location: Edinburgh
Posts: 3,981
![]() ![]() |
Quote:
__________________
No boom today, boom tomorrow... there's always a boom tomorrow. |
|
|
|
|
| steveo_mcg |
| View Public Profile |
| Find More Posts by steveo_mcg |
|
|
#17 | |
|
Ultramodder
Join Date: Apr 2003
Location: Netherlands
Posts: 1,218
![]() |
Quote:
__________________
Mascleta: "The most accurate simulation of thunder, humans can simulate..." The answer is 42, so... whats the question again? If you know what 'Peek' and 'Poke' represents, then you are probably as old as me. |
|
|
|
|
|
|
#18 |
|
What owl?
Join Date: May 2005
Location: Edinburgh
Posts: 3,981
![]() ![]() |
Same here... I loved my classic. Even then it was somewhat ahead of the windows curve (about 3-5 years ahead)
__________________
No boom today, boom tomorrow... there's always a boom tomorrow. |
|
|
|
| steveo_mcg |
| View Public Profile |
| Find More Posts by steveo_mcg |
|
|
#19 |
|
Spoon? What spoon?
Join Date: Dec 2006
Location: Daytona Beach, FL
Posts: 936
![]() |
I've known about it since Win2000
I filed a bug report, but it never got dealt with and I never got feedback it made a fun trick when I used to do penetration testing, as it was a hole no one knew existed and could be used to take over the entire system. also, there are bugs that allow SQL and IIS to be started without proper authentication, or proper access. I haven't got any feedback on those reports either. |
|
|
|
| Bluephoenix |
| View Public Profile |
| Find More Posts by Bluephoenix |
|
|
#20 |
|
CPC hang out zone (i Fix pcs i do )
Join Date: Jun 2006
Location: uk
Posts: 568
![]() |
SQL and IIS just seem plane insecure thay fix one thing and an 5 year old one comes along (or is it 8? heh)
any thing important or web sites should not be used an an windows box
__________________
Qx6850 (OC 3.3Ghz) <> 120 extreme<> rampage forumla <> 9800GX2 <> 8gb 4x2gb (2x gell / 2x adata)<> SSD powered Corsair S128 / WD Black 1TB <> Crative X-fi FalTy FPS <> TK 1000w Toughpower <win7 x64> Click me for folding stats greenfrog.biz / 35947 |
|
|
|
![]() |
| Thread Tools | |
|
|