Windows gets big security update


Recommended Posts

One of the biggest security updates for more than a year is being released by Microsoft to fix 12 software flaws.

Nine of the updates apply to the Windows operating system and one is deemed critical, a rating reserved for the most serious security problems.

At least one of the loopholes being patched is already being actively exploited by malicious hackers.

Windows users are being urged to download the patches as soon as they become available on Tuesday 13 June.

Support shift

Microsoft issues its security patches on the second Tuesday of every month and June's update will be the biggest for more than a year.

This is because Microsoft is not only tackling security problems but also the fallout of a legal case that the software giant lost.

Microsoft gives advance notice of what is in its security patches to help companies plan how best to install the software and limit the impact on day-to-day business.

While most of the updates apply to Windows, two are for the Office suite of products and one for the Exchange e-mail server software.

One of the security problems being tackled in Office was found in Microsoft's Word software and the virus created to exploit it has been dubbed Backdoor.Ginwui. The virus and loophole were first discovered in mid-May.

The virus travels in an e-mail bearing a Word document that purports to summarise the results of a US-Asia summit.

Legal woes

Another of the updates has come about as a result of a courtroom clash between Microsoft and Eolas over technology in the Internet Explorer browser. The lawsuit ended with a $521m (?283m) judgement against Microsoft.

Microsoft had to re-engineer Internet Explorer to stop a technology known as ActiveX automatically starting when users visit some websites.

Before now, users could choose to apply this change to their browser, but this update makes it mandatory.

At the same time as information about the update was being released, Microsoft mentioned that it will not be able to patch Windows 98 and ME against a loophole discovered in April 2006.

Fixing this bug in the ageing software would require a major re-write of the Windows Explorer program used in these old copies of the operating system.

Microsoft is not prepared to undertake this work, given that all support for Windows 98 and ME ends on 11 July 2006.

On its security blog Microsoft wrote: "We strongly recommend that those of you who are still running these older versions of Windows upgrade to a newer, more secure version, such as Windows XP SP2, as soon as possible."

Source:

http://news.bbc.co.uk/1/hi/technology/5071656.stm

Link to comment
https://www.neowin.net/forum/topic/469655-windows-gets-big-security-update/
Share on other sites

Thanks for the info.

Btw: it would be intresting to know how Vista (B2) handles these flaws - as it got public before these fixes. I really like to hear a statement, like "Vista doesn't need these fixes, because of the rewritten network parts: it defends you from these flaws out of the box". :p But i have a feeling it won't happen... :rolleyes:

High-priority updates

Microsoft Windows XP

Windows Malicious Software Removal Tool - June 2006 (KB890830)

Security Update for Windows XP (KB914389)

Security Update for Windows XP (KB918439)

Security Update for Windows XP (KB911280)

Security Update for Windows XP (KB917953)

Microsoft Office 2002/XP

Security Update for Word 2002 (KB917335)

Security Update for PowerPoint 2002 (KB916519)

Download size: 7.3 MB , less than 1 minute

Microsoft has released a security update for Microsoft PowerPoint 2002. This update resolves a security issue that could allow arbitrary code to run when you open a malicious presentation. Details...

(dunno why thats showing up,I'm not even using Powerpoint 2002,I'll save myself 7.3MB by not installing it,thus making my total download 8.5MB instead of 15.8MB)

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Any decent ITSM will A) have a web form that allows a user to raise a ticket, if you're writing an email you can write a ticket. B) Monitor a mailbox and auto-generate tickets based on inbound mails for those users that really can't get their heads around the concept that if you have an issue you go to support.mycompany.com and fill in the box. From your description you're having users email the desk, and then having a human read each one and manually raise a ticket on behalf of the user.
    • Microsoft PC Manager 3.21.6.0 (Offline Installer) by Razvan Serea With Microsoft PC Manager, users can easily perform basic computer maintenance and enhance the speed of their devices with just one click. This app offers a range of features, including disk cleanup, startup app management, virus scanning, Windows Update checks, process monitoring, and storage management. Microsoft PC Manager key features: Storage Manager- easily uninstall infrequently used apps, manage large files, perform a cleanup, and set up Storage Sense to automatically clear temporary files. Health Checkup feature -scans for potential problems, viruses, and startup programs to turn off. It helps you identify unnecessary items to remove, optimizing your system's performance. Pop-up Management - block pop-up windows from appearing in apps. Windows Update - scans your system for any pending updates. Startup Apps - enable or disable startup apps on your PC, allowing you to optimize your system's startup performance. Browser Protection - rest assured that harmful programs cannot alter your default browser. Also enables you to change your default browser. Process Management - allows you to conveniently terminate any active process, ensuring optimal system performance and resource utilization. Anti-virus protection - Fully integrated with Windows Security. Safeguard your PC anytime. Quick Steps: Download Microsoft PC Manager Offline Installer (APPX/MSIX) with Adguard Adguard serves as a third-party online service, offering a user-friendly method for directly downloading appx, appxbundle, and msixbundle files from the Microsoft Store. Official download links will be generated for both the app's various versions and its dependency packages. How to download Microsoft PC Manager Offline Installer (APPX/MSIX) 1. Initially, you must find the app URL within the Microsoft Store. Access the Microsoft Store via your browser and search for "Microsoft PC Manager". Once located, copy the app URL, which includes the product ID, either from the address bar or from the provided link below. https://apps.microsoft.com/detail/9PM860492SZD 2. Now paste the app URL into the designated area, then click the check mark button to produce a direct download link. 3. To download, right-click the relevant link and select “Save link as…” from your browser's menu. Occasionally, Microsoft Edge may flag the download as insecure. In such cases, consider utilizing alternative browsers such as Google Chrome or Firefox to successfully complete the download. Microsoft PC Manager is a completely free tool optimized exclusively for use on Windows 10 (19042.0 and above) and Windows 11. Download: Microsoft PC Manager 3.21.6.0 | from Microsoft Store View: Microsoft PC Manager Home Page | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • I've never even heard of this browser before seeing this article. How does it differ from other browsers?
    • Fixing things? Have you ever tried linux? Everything works out of the box nowadays in most common hardware. This includes Wifi and Bluetooth. If anything, if they return back to windows is because they haven't found an equivalent program which often used on windows.
    • 18 months ago I bought the 4TB variant for $380 CDN. Now it is $1500 CDN [$949 US].
  • Recent Achievements

    • Mentor
      grik went up a rank
      Mentor
    • Dedicated
      JKR earned a badge
      Dedicated
    • One Year In
      CHUNWEI earned a badge
      One Year In
    • Conversation Starter
      FBSPL earned a badge
      Conversation Starter
    • Week One Done
      I2D earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      484
    2. 2
      PsYcHoKiLLa
      272
    3. 3
      Skyfrog
      78
    4. 4
      Steven P.
      65
    5. 5
      FloatingFatMan
      61
  • Tell a friend

    Love Neowin? Tell a friend!