ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Microsoft plugs 'enormous' hole

Published: 17 Jul 2003 07:34 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Windows users should expect to have another update from Microsoft waiting for them on their computers.

The software giant issued a patch on Wednesday morning to plug a critical security hole that could allow an attacker to take control of computers running any version of Windows except for Windows ME.

A group of Polish hackers and independent security consultants, known as the Last Stage of Delirium, discovered the flaw and worked with Microsoft to fix it.

"It should be emphasised that this vulnerability poses an enormous threat, and appropriate patches provided by Microsoft should be immediately applied," the group said in an advisory posted to its Web site. The group said that programs designed to exploit the vulnerability will probably be available on the Internet soon.

The flaw is in a component of the operating system that allows other computers to request the Windows system perform an action or service. The component, known as the remote procedure call (RPC) process, facilitates such activities such as sharing files and allowing others to use the computer's printer.

By sending too much data to the RPC process, an attacker can cause the system to grant full access to the system.

"This would give the attacker the ability to take any action on the server that they want," Microsoft stated in its advisory. "For example, an attacker could change Web pages, reformat the hard disk, or add new users to the local administrators group."

Jeff Jones, senior director for Microsoft's Trustworthy Computing effort, said that, in addition to applying the patch, users and systems administrator should close down any unused communications channels, or ports.

"Customers should protect their network with a firewall," he said. "Individual users should use the Internet Connection Firewall or some other personal firewall." The Internet Connection Firewall is a feature of Windows XP and Windows 2003 that limits the ways that a potential intruder could attack from the network.

Ports are standardised software addresses that allow applications to exchange data. Firewalls routinely prevent access to such services from the Internet by blocking the specific port used by a computer to offer those services.

Internet Security Systems, a network protection company based in Atlanta, warned its customers of the flaw on Wednesday. The company said in an advisory that it had raised its measure of the danger posed by threats on the Internet because of the vulnerability's seriousness.

Microsoft is well into the second year of its Trustworthy Computing initiative. Aimed at boosting customers' trust in the company's products, the initiative has been both praised as a bold move to become a leader in security and criticised as largely ineffectual.

Jones says the company is learning from its mistakes. In this case, Microsoft analysed where the flaw crept in, and it developed plans to build in the expertise to detect it in the company's in-house development tools.

"It was primarily a process issue," he said. "We will be updating our automated scanning tool to make sure this type of issue is detected in the future."


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
96 out of 212 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:









Related Jobs

3 x SAP ABAP CONSULTANTS - 50-55k with excellent benefits

3 x SAP ABAP CONSULTANTS - 50-55k with excellent benefits A major IT company are currently looking for an experienced ABAP consultants to join a ...

TEST CONSULTANT POSITIONS (Tester) TESCOM UK Central London

We are seeking to grow our team with ambitious Test Consultants, who have the drive and desire to deliver projects to time and cost in high level ...

Service Delivery Manager - Global B2B Supplier & Service Quality Manager

These issues may arise from, but not limited to, the following areas: performance management process, root cause analysis studies, service request ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

2 comments