Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Microsoft fixes serious Windows flaws
Cnet News ^ | August 9, 2005 | Joris Evers

Posted on 08/09/2005 2:56:44 PM PDT by Panerai

Microsoft on Tuesday issued alerts on several security flaws in Windows, the most serious of which could allow an attacker to gain control over a victim's computer.

Microsoft released six security bulletins as part of its monthly patching cycle, three of which it deems "critical." The Redmond, Wash., software gives that rating to any security issue that could allow a malicious Internet worm to spread without any action required on the part of the user.

One bulletin addresses three flaws in Internet Explorer. Of all the issues Microsoft offered fixes for Tuesday, these put users at most risk of attack, said Oliver Friedrichs, senior manager at Symantec Security Response. Two other vulnerabilities, affecting the plug-and-play feature and printing in Windows, could also spell some trouble for users, he said.

An error in the way IE, Microsoft's widely used Web browser, handles JPEG images is especially alarming, according to Symantec. An attacker could commandeer a PC by crafting a malicious image and tricking the victim to look at it on, for example, a Web site or in an HTML e-mail, Microsoft said in its MS05-038 security bulletin.

"These vulnerabilities can be leveraged by malicious Web sites to install spyware, Trojan horses, bots, or other programs on an unsuspecting user's machine," Friedrichs said.

The other two IE flaws that Microsoft now has fixes for could also allow an attacker to take control of a user's computer. One relates to how the browser handles URLs related to a feature that lets users view file folders in IE. The other deals with the ability of IE to call on other parts of Windows and is similar to a problem patched last month.

(Excerpt) Read more at news.com.com ...


TOPICS: Technical
KEYWORDS: backdoor; bloatware; criticalflaw; exploit; getamac; internetexploiter; lookoutexpress; lowqualitycrap; malware; microsoft; patch; securityflaw; spyware; trojan; trojanhorse; userfriendly; virus; virusbait; windows; worm
Navigation: use the links below to view more comments.
first 1-5051-79 next last
Windows the OS that just keeps on giving and giving.
1 posted on 08/09/2005 2:56:44 PM PDT by Panerai
[ Post Reply | Private Reply | View Replies]

To: Panerai

they haven't fixed crap...

bandaids on an artery come to mind...


2 posted on 08/09/2005 2:58:14 PM PDT by MikefromOhio (When Judge Roberts is confirmed, FR will be EXTREMELY funny that day...Get your PROZAC here!!!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Panerai

See also:

Microsoft sees 3 'critical' Windows security flaws
http://www.freerepublic.com/focus/f-news/1460039/posts


3 posted on 08/09/2005 2:58:25 PM PDT by Boundless
[ Post Reply | Private Reply | To 1 | View Replies]

To: Panerai
Windows the OS that just keeps on giving and giving.

And if it wasn't here, you'd probably be posting to yourself and Steve Jobs...and that'd be about it.

4 posted on 08/09/2005 2:59:37 PM PDT by ErnBatavia
[ Post Reply | Private Reply | To 1 | View Replies]

To: MikeinIraq; Panerai
As I posted on another thread this morning, it's more appropriate to blame the hacker, not the victim.

Microsoft is doing everything they can to make their software more secure, but if there weren't so many criminals targeting Windows it wouldn't be such a problem. If Apple or Unix were the dominant platform, I guarantee you would see the same level of hacks on those platforms.

Your best bet is to use anti-spy and anti-virus software and enable Windows automatic update feature or visit the Windows Update web site every once in a while. If you do that you'll be fine. That's what I do with the 4 PCs I own, and they all have no problems.

5 posted on 08/09/2005 3:29:01 PM PDT by vrwc1
[ Post Reply | Private Reply | To 2 | View Replies]

To: vrwc1

It won't let me update. Says I don't have an original copy of XP on my computer


6 posted on 08/09/2005 3:35:56 PM PDT by hipaatwo (When you're in trouble you want all your friends around you...preferably armed!)
[ Post Reply | Private Reply | To 5 | View Replies]

To: vrwc1

Powder..Patch..Ball FIRE!


Micro$oft isn't doing Kr*p Their IE7 won't even be available for anything besides Xp.

Use Firefox. Use Linux. Use OpenOffice. Tell M$ to take a hike.


7 posted on 08/09/2005 3:36:50 PM PDT by BallandPowder
[ Post Reply | Private Reply | To 5 | View Replies]

To: hipaatwo

Where did you get your OS?


8 posted on 08/09/2005 3:44:36 PM PDT by vrwc1
[ Post Reply | Private Reply | To 6 | View Replies]

To: hipaatwo
It won't let me update. Says I don't have an original copy of XP on my computer

That means the Microsoft Authentication Software thinks you have a pirated copy of Windows XP on your machine.

9 posted on 08/09/2005 3:46:00 PM PDT by COEXERJ145 (Tom Tancredo- The Republican Party's Very Own Cynthia McKinney.)
[ Post Reply | Private Reply | To 6 | View Replies]

To: BallandPowder

Irrational anti-Microsoft jihadi mindset detected. Post ignored.


10 posted on 08/09/2005 3:46:00 PM PDT by vrwc1
[ Post Reply | Private Reply | To 7 | View Replies]

To: COEXERJ145

So what do I do?


11 posted on 08/09/2005 3:49:52 PM PDT by hipaatwo (When you're in trouble you want all your friends around you...preferably armed!)
[ Post Reply | Private Reply | To 9 | View Replies]

To: vrwc1

or just use Symantec and Mozilla and not have to worry too much...

Or just buy a MAC. When Apple comes out with the x86 Dell version, Windows days will be numbered....


12 posted on 08/09/2005 3:50:05 PM PDT by MikefromOhio (When Judge Roberts is confirmed, FR will be EXTREMELY funny that day...Get your PROZAC here!!!)
[ Post Reply | Private Reply | To 5 | View Replies]

To: vrwc1
you can't guarantee anything, and you obviously know very little about computers, UNIX is 1000 times more secure than winnows.
13 posted on 08/09/2005 3:51:17 PM PDT by tjblair (previewed)
[ Post Reply | Private Reply | To 5 | View Replies]

To: COEXERJ145; hipaatwo

Could be you have an OEM version installed when you bought your computer. If so they should update it. Otherwise you'll have to buy a copy. I suspect that a lot of the "problems" MS is coming up with now is just an excuse to get in your computer to see if you are legit.


14 posted on 08/09/2005 3:54:06 PM PDT by FreePaul
[ Post Reply | Private Reply | To 9 | View Replies]

To: tjblair

Sorry, my 22 years experience as a software developer says you're wrong. BTW, nice made up factoid about Unix there.


15 posted on 08/09/2005 3:56:31 PM PDT by vrwc1
[ Post Reply | Private Reply | To 13 | View Replies]

To: FreePaul

My ME crashed so my son's friend installed XP for me. It has been updating all along and now it won't do it anymore. Is my puter screwed if I don't buy a copy of XP? I do use firefox but I use IE to play computer games, it seems to work better. I use XP's firewall and an anti-virus.


16 posted on 08/09/2005 3:58:48 PM PDT by hipaatwo (When you're in trouble you want all your friends around you...preferably armed!)
[ Post Reply | Private Reply | To 14 | View Replies]

To: hipaatwo
My ME crashed so my son's friend installed XP for me.

Well there's your problem - your Windows XP isn't legit.

Is my puter screwed if I don't buy a copy of XP?

Yep - you need to get your own legit copy.

17 posted on 08/09/2005 4:02:23 PM PDT by vrwc1
[ Post Reply | Private Reply | To 16 | View Replies]

To: hipaatwo
My ME crashed so my son's friend installed XP for me. It has been updating all along and now it won't do it anymore. Is my puter screwed if I don't buy a copy of XP?

Yeah, you're screwed. Microsoft just recently installed a system that ensures only legit copies can download updates to try and slow down pirating of its products.

18 posted on 08/09/2005 4:04:14 PM PDT by COEXERJ145 (Tom Tancredo- The Republican Party's Very Own Cynthia McKinney.)
[ Post Reply | Private Reply | To 16 | View Replies]

To: vrwc1

1000 times was made up, my apology.
but the ms FUD regarding the "dominant platform" is just that, FUD. there are much bigger "prizes" to be had on machines running unix and linux, i don't buy or use ms products and i don't buy ms fud(wishful thinking).


19 posted on 08/09/2005 4:05:15 PM PDT by tjblair (previewed)
[ Post Reply | Private Reply | To 15 | View Replies]

To: Panerai

Ah, the latest monthly, at least, edition of, "MicroSloth Fixes Serious Windows Flaws." Thank you for this. I've been waiting for it.

Any truth to the rumor this may become a weekly or even daily publication?


20 posted on 08/09/2005 4:05:45 PM PDT by upchuck ("If our nation be destroyed, it would be from the judiciary." ~ Thomas Jefferson)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Panerai

in other news, a snowball survived in hell today...


21 posted on 08/09/2005 4:06:48 PM PDT by isom35
[ Post Reply | Private Reply | To 1 | View Replies]

To: COEXERJ145
Yeah, you're screwed. Microsoft just recently installed a system that ensures only legit copies can download updates to try and slow down pirating of its products.

Yeah. But if I recall correctly, they'll let you download critical updates but not the optional updates.

22 posted on 08/09/2005 4:10:51 PM PDT by upchuck ("If our nation be destroyed, it would be from the judiciary." ~ Thomas Jefferson)
[ Post Reply | Private Reply | To 18 | View Replies]

To: COEXERJ145

Actually security updates are available to everyone, even if you don't pass the genuine advantage test.


23 posted on 08/09/2005 4:12:02 PM PDT by cabojoe
[ Post Reply | Private Reply | To 18 | View Replies]

To: upchuck

won't let me get the new critical updates today.


24 posted on 08/09/2005 4:12:08 PM PDT by hipaatwo (When you're in trouble you want all your friends around you...preferably armed!)
[ Post Reply | Private Reply | To 22 | View Replies]

To: MikeinIraq

Mac OSx Tiger x86 developer version has been leaked
and will supposedly run on any newer Intel box. Praise be!
Damn... It's gonna be sweet! (now to ditch my AMD box)


25 posted on 08/09/2005 4:16:14 PM PDT by ron0909
[ Post Reply | Private Reply | To 12 | View Replies]

To: hipaatwo
So what do I do?

Back up your data frequently, and don't keep any sensitive data on your hard drive. Otherwise you'll be fine.

26 posted on 08/09/2005 4:17:12 PM PDT by ElkGroveDan (I'm sick and tired of being sicked and tired!)
[ Post Reply | Private Reply | To 11 | View Replies]

To: tjblair
Apology accepted.

but the ms FUD regarding the "dominant platform" is just that, FUD.

FUD stands for fear, uncertainty and doubt. How is it that there can be any FUD about Microsoft being the dominant platform? It is a known fact. I don't understand how you can say that is FUD.

there are much bigger "prizes" to be had on machines running unix and linux

That may be your opinion (I'm not sure what you mean by prizes), but it's no reason to beat up on Windows, which is the OS chosen by millions of people, and which Microsoft is trying earnestly to make as secure as possible. It's not like they're just ignoring this security issue - it's one of the top priorities for their company!

27 posted on 08/09/2005 4:23:03 PM PDT by vrwc1
[ Post Reply | Private Reply | To 19 | View Replies]

To: hipaatwo

Try turning on automatic updates and see if that works. That's the word I get from the grapevine.


28 posted on 08/09/2005 4:44:47 PM PDT by cabojoe
[ Post Reply | Private Reply | To 11 | View Replies]

To: vrwc1

Funny how these type threads always flush out the MSFT bashers; seems to me they would be too busy basking in their superior systems to take time out of their busy productive schedules to comment to mere mortals using MSFT Windows.


29 posted on 08/09/2005 4:55:11 PM PDT by E=MC<sup>2</sup> (Are liberals born stupid, or do they have to work at it???)
[ Post Reply | Private Reply | To 27 | View Replies]

To: ron0909

Yeah I saw some pictures the other day...

This may be the next computing revolution, especially since I think it's only a matter of time until Microsoft has bigger issues than they do now....


30 posted on 08/09/2005 5:47:33 PM PDT by MikefromOhio (When Judge Roberts is confirmed, FR will be EXTREMELY funny that day...Get your PROZAC here!!!)
[ Post Reply | Private Reply | To 25 | View Replies]

To: Panerai

Windows sucks..plain and simple.


31 posted on 08/09/2005 5:52:59 PM PDT by big'ol_freeper ("Freedom consists not in doing what we like, but in having the right to do what we ought." Pope JPII)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ErnBatavia

LOL. Bingo.


32 posted on 08/09/2005 5:54:15 PM PDT by BibChr ("...behold, they have rejected the word of the LORD, so what wisdom is in them?" [Jer. 8:9])
[ Post Reply | Private Reply | To 4 | View Replies]

To: vrwc1
...if there weren't so many criminals targeting Windows it wouldn't be such a problem. If Apple or Unix were the dominant platform, I guarantee you would see the same level of hacks on those platforms.

Would you clear your throat and say that bit of should-be-common-sense again, louder?

Dan

33 posted on 08/09/2005 5:55:34 PM PDT by BibChr ("...behold, they have rejected the word of the LORD, so what wisdom is in them?" [Jer. 8:9])
[ Post Reply | Private Reply | To 5 | View Replies]

To: hipaatwo

Guess I wuz wrong. Sorry.


34 posted on 08/09/2005 5:58:27 PM PDT by upchuck ("If our nation be destroyed, it would be from the judiciary." ~ Thomas Jefferson)
[ Post Reply | Private Reply | To 24 | View Replies]

To: E=MC<sup>2</sup>

It's more logical that non-Windows users would have more free time to visit these threads since they aren't updating their systems all day long.


35 posted on 08/09/2005 6:01:41 PM PDT by palmer (If you see flies at the entrance to the burrow, the ground hog is probably inside)
[ Post Reply | Private Reply | To 29 | View Replies]

To: hipaatwo

http://windowsupdate.62nds.com/ is a third party update sight for windows.

It makes the patches available shortly after MS.

Of course you should pay for windows (wink, wink), cheap versions are always on e-bay but you need to watch out for copied versions.


36 posted on 08/09/2005 6:02:42 PM PDT by Dinsdale
[ Post Reply | Private Reply | To 24 | View Replies]

To: hipaatwo

It won't let me update either. It says I'm running Linux!


37 posted on 08/09/2005 6:21:20 PM PDT by Maurice Tift
[ Post Reply | Private Reply | To 6 | View Replies]

To: upchuck

Guess I wuz wrong. Sorry.

No need to apologize. This place is wonderful and even if things don't work it's still nice to have people that try to help :)


38 posted on 08/09/2005 7:05:31 PM PDT by hipaatwo (When you're in trouble you want all your friends around you...preferably armed!)
[ Post Reply | Private Reply | To 34 | View Replies]

To: palmer

Yeah, but shouldn't users of superior OS's spend their time solving world hunger and modeling new energy sources and finding new prime numbers and inverting million by million arrays instead of gloating on every bash MSFT thread??? Seems sort of tacky to me.


39 posted on 08/09/2005 7:55:27 PM PDT by E=MC<sup>2</sup> (Are liberals born stupid, or do they have to work at it???)
[ Post Reply | Private Reply | To 35 | View Replies]

To: E=MC<sup>2</sup>
Funny how these type threads always flush out the MSFT bashers

It's also interesting how they just bash Windows, but can't seem to come up with any real reasons why Unix/Apple/etc. is "so much better". All you get from them are generalities like "it's more secure" or "it's way better".

Okaaay - whatever!

40 posted on 08/09/2005 8:14:21 PM PDT by vrwc1
[ Post Reply | Private Reply | To 29 | View Replies]

To: BibChr
Thanks Dan...as requested (*ahem*):

...if there weren't so many criminals targeting Windows it wouldn't be such a problem. If Apple or Unix were the dominant platform, I guarantee you would see the same level of hacks on those platforms.

41 posted on 08/09/2005 8:18:02 PM PDT by vrwc1
[ Post Reply | Private Reply | To 33 | View Replies]

To: vrwc1

I just have an aversion to willful ignorance; e.g., liberals unfairly and incessantly bashing Bush when in all probability his efforts are keeping their sorry asses from terrorist attacks. Same goes for MSFT bashers; MSFT isn't perfect by any means, but their OS has to operate on combinations and permutations of hardware/application software that dwarfs apple etc. and that isn't easy.


42 posted on 08/09/2005 8:30:06 PM PDT by E=MC<sup>2</sup> (Are liberals born stupid, or do they have to work at it???)
[ Post Reply | Private Reply | To 40 | View Replies]

To: E=MC<sup>2</sup>

I agree. They have absolutely no clue as to how extremely hard what Microsoft does is, and how well they do it in spite of those difficulties. Granted, it's good to push and challenge Microsoft to do better, but geez, the non-stop bashing of some is just childish.


43 posted on 08/09/2005 8:39:53 PM PDT by vrwc1
[ Post Reply | Private Reply | To 42 | View Replies]

To: All
This seems to be a good thread to ask fellow FReepers this question --
My Dell computer has a legit OEM copy of Win XP Home on it. I have decided I want to reformat to clean house, but so far, have misplaced the original discs and haven't yet found them.

A couple of questions -- could I successfully reformat my computer with my wife's OEM Win XP Pro disc from her newer computer? Would I be able to get subsequent Win updates?

We bought both computers new from Dell at different times.

Last question -- Since I have misplaced all my original discs, what do I do for drivers for all the other bits and pieces of hardware inside my computer, since I don't seem to have that disc or discs anymore either?

Thanks in advance for any assistance!

44 posted on 08/09/2005 8:48:14 PM PDT by Babu
[ Post Reply | Private Reply | To 42 | View Replies]

To: Panerai

In a related story, the people killed on 911 should have known better than to work in a tall building that had previously been attacked.

Let's be democrats for a day and blame the victims.


45 posted on 08/09/2005 8:53:59 PM PDT by js1138 (Science has it all: the fun of being still, paying attention, writing down numbers...)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Babu
could I successfully reformat my computer with my wife's OEM Win XP Pro disc from her newer computer? Would I be able to get subsequent Win updates?

You could, but the install won't last long, since you will have to activate the OS within a certain number of days, and I seriously doubt the activation will work, and you'll have wasted a lot of time, since it will be unusable. The Dell XP versions are linked to the specific motherboards, I believe. I have two that came with XP pre-installed, and an older machine for which I bought a non-Dell OEM version of XP. The latter asks for re-activation at the drop of a hat; I put a new video card in it yesterday, and as soon as I booted, it told me I had to reactivate. On the Dells with the original install, I've changed/switched hardware several times, with not a peep from XP.

As far as the drivers, etc., all of those can be downloaded from Dell's support website (click on Service & Support, choose "Downloads" and input your service tag number).

You might also try calling or emailing Dell support (include your service tag number) and ask about replacement disks -- it's worth a shot.

46 posted on 08/10/2005 5:58:31 AM PDT by browardchad
[ Post Reply | Private Reply | To 44 | View Replies]

To: Panerai

I use Firefox.

Should I worry?


47 posted on 08/10/2005 6:00:41 AM PDT by Pete'sWife (Dirt is for racing... asphalt is for getting there.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: vrwc1; BibChr
...if there weren't so many criminals targeting Windows it wouldn't be such a problem. If Apple or Unix were the dominant platform, I guarantee you would see the same level of hacks on those platforms.

So tell me--do Yugos and Volvos and Mercedes and Fords all have the same number of defects per car? Does quantity sold indicate quality of product?

Code is exactly the same. "Market share" or number of desktops in existance does not determine the number of hacks available to compromise the code.

48 posted on 08/10/2005 6:08:32 AM PDT by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 41 | View Replies]

To: ShadowAce; vrwc1

Flawed analogy.

Better analogy: does General Motors stay up nights working on ways to compete with Rico Motors' line of passenger cars? Do they come up with ways to make Rico's Motors' cars break down? Of course not. They focus on the bigs.

Hackers don't focus on the OS's that a relative handful use. But, as recent articles have shown, they're also vulnerable, once the cyberthugs turn their baleful eyes thither.

That's a better analogy. Not friendly to your grudge, maybe, but better.

Dan


49 posted on 08/10/2005 6:17:29 AM PDT by BibChr ("...behold, they have rejected the word of the LORD, so what wisdom is in them?" [Jer. 8:9])
[ Post Reply | Private Reply | To 48 | View Replies]

To: BibChr
But, as recent articles have shown, they're also vulnerable, once the cyberthugs turn their baleful eyes thither.

Yes, they are vulnerable. I freely admit that. I never claimed otherwise. But they're not AS vulnerable. There are FEWER problems with Linux/BSD than with Windows.

50 posted on 08/10/2005 6:21:24 AM PDT by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 49 | View Replies]


Navigation: use the links below to view more comments.
first 1-5051-79 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson