Microsoft to Issue 11 Security Patches


Recommended Posts

On October 10, Microsoft will issue 11 security bulletins as part of this month's Patch Tuesday. Six of the updates affect Windows, with the highest severity being "critical." Another four patches will cover Microsoft Office, also with critical severity, while a moderate fix is slated for the .NET Framework.

Among the fixes will likely be a patch for the WebViewFolderIcon ActiveX control, which is part of the Windows Shell. An exploit has surfaced for a vulnerability in the control that could result in an attacker gaining the same user rights as a local user. Unlike with the VML fix, Microsoft has waited to patch the WebViewFolderIcon flaw, saying it was unaware of any actual attacks taking place.

Source

On 10 October 2006 Microsoft is planning to release:

Security Updates

• Six Microsoft Security Bulletins affecting Microsoft Windows. The highest Maximum Severity rating for these is Critical. These updates will be detectable using the Microsoft Baseline Security Analyzer. Some of these updates will require a restart.

• Four Microsoft Security Bulletins affecting Microsoft Office. The highest Maximum Severity rating for these is Critical. These updates will be detectable using the Microsoft Baseline Security Analyzer. These updates may require a restart.

• One Microsoft Security Bulletin affecting Microsoft .NET Framework. The highest Maximum Severity rating for this is Moderate. These updates will be detectable using the Microsoft Baseline Security Analyzer and the Enterprise Scan Tool. These updates may require a restart.

Microsoft Windows Malicious Software Removal Tool

• Microsoft will release an updated version of the Microsoft Windows Malicious Software Removal Tool on Windows Update, Microsoft Update, Windows Server Update Services and the Download Center.

Note that this tool will NOT be distributed using Software Update Services (SUS).

Non-security High Priority updates on MU, WU, WSUS and SUS

• Microsoft will release No NON-SECURITY High-Priority Updates for Windows on Windows Update (WU) and Software Update Services (SUS).

• Microsoft will release two NON-SECURITY High-Priority Updates on Microsoft Update (MU) and Windows Server Update Services (WSUS).

Source

Edited by slimy

honestly: this is starting to get annoying.... it seems we are constantly updating lol

I am glad they are working on patches though, hopefully with Vista they have taught their programmers how to secure code... either way i'm waiting until SP1 or some great game :p before I purchase Vista

honestly: this is starting to get annoying.... it seems we are constantly updating lol

I am glad they are working on patches though, hopefully with Vista they have taught their programmers how to secure code... either way i'm waiting until SP1 or some great game :p before I purchase Vista

Annoying? "hopefully with Vista they have taught their programmers how to secure code"?

It's comments like that that **** me off because people can be ignorant enough to think that the most commonly used piece of software in the world can be perfect. Also Windows is the most complicated software engineering project ever attempted by humankind.

[sarcasm] Why don't you step into Linux or Mac OS... i've heard they are bug free and perfect.. but the rest of the world just hasn't clued in yet. [/sarcasm]

Just my 2 cents...

I also agree that it's a little annoying. What's worse is when we have to update the Windows Update or Microsoft Update software. Hopefully Vista's integrated update system won't need to be updated/restarted like XP's did on several occasions.

It's comments like that that **** me off because people can be ignorant enough to think that the most commonly used piece of software in the world can be perfect.

"Sloppy" and "not perfect" are not the same thing. And let's all be honest with each other: Vista is going to have exactly the same problem. Hopefully it will just be a little easier to update. Namely, we should be able to EASILY integrate individual updates into a Vista CD image. It sounds like that will be possible, but that doesn't mean it will be easy.

Yes.. Vista will be FAR from perfect. I just hope they patch things up quickly and release service packs more often than they are for XP. I would rather have a constant stream of updates that address the known issues.. than have them mark bugs as "not going to fix".

And Vista setup does check windows update for updates before it installs. So that makes it a lot easier for end users to update.

[sarcasm] Why don't you step into Linux or Mac OS... i've heard they are bug free and perfect.. but the rest of the world just hasn't clued in yet. [/sarcasm]

You know what the difference is? You can patch a Linux system without having to restart the entire system - also the patching system in most distributions is faster, better and more easily controllable than MS patching system.

Yes, MS could learn from here and there.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • When will the Photos app be updated to remember the window size and position when reopened? They addressed this issue in a 2024 version of the app (though I can't recall the build number). Unfortunately, after that specific version, the problem persists! Please prioritise this fix in your K2 schedule. Additionally, the Snipping Tool has lost the ability to capture the Windows Taskbar starting from the 2024 version!
    • Same, never saw it on Android or iOS. Guess only some people got it *shrugs*
    • Anthropic pulls Fable 5 and Mythos 5 after US export control order by Pradeep Viswanathan In April this year, Anthropic launched the Claude Mythos Preview frontier model with state-of-the-art cyber and coding capabilities for a select set of companies around the world. After preparing appropriate guardrails, early this week, Anthropic launched Claude Fable 5 and Mythos 5, its most capable AI models. Claude Fable 5 is for general users and comes with strict safeguards, while Mythos 5 is designed with fewer safeguards for cybersecurity and biology use cases. Today, Anthropic abruptly suspended access to its Fable 5 and Mythos 5 AI models for all customers after receiving an export control directive from the US government. The company received the directive from the government today at 5:21 p.m. ET, and the received letter did not provide any details regarding the national security concern. Anthropic understands that the government became aware of a method to bypass, or “jailbreak,” Fable 5, which might be the reason behind the directive. The order was issued under national security authorities and requires the company to suspend all access to Fable 5 and Mythos 5 by any foreign national, whether they are inside or outside the United States. The restriction also applies to foreign national employees working at Anthropic. As a result, the company has disabled both models for all customers to ensure compliance. Access to previous Anthropic models like Opus and Sonnet is not affected by this government order. The company highlighted that it had developed strong safeguards to reduce the possibility that Fable is misused for tasks related to cybersecurity. In fact, many developers are complaining that the safeguards are going overboard. Additionally, the company worked with the US government, the UK AISI, multiple private third-party organizations, and internal teams to red-team Fable’s safeguards for thousands of hours. Finally, Anthropic noted that no testers have yet been able to find a universal jailbreak on Fable 5. As expected, Anthropic disagrees that a narrow potential jailbreak should lead to the recall of a commercial model used by hundreds of millions of people. It warned that applying this standard across the AI industry could effectively halt new frontier model deployments. Anthropic concluded by mentioning that it is working to restore access to Fable 5 and Mythos 5 as soon as possible and plans to share more details within the next 24 hours.
    • Brave Browser 1.91.172 is out.
  • Recent Achievements

    • Contributor
      MarkHughes4096 went up a rank
      Contributor
    • Dedicated
      jordanspringer earned a badge
      Dedicated
    • Rookie
      Rimplesnort went up a rank
      Rookie
    • One Year In
      Markus94287 earned a badge
      One Year In
    • One Month Later
      Markus94287 earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      503
    2. 2
      +Edouard
      176
    3. 3
      PsYcHoKiLLa
      147
    4. 4
      ATLien_0
      92
    5. 5
      Steven P.
      79
  • Tell a friend

    Love Neowin? Tell a friend!