Advertisement
Promo

Security threats Toolkit

Microsoft repairs cursor vulnerability fix

Joris Evers CNET News

Published: 10 Apr 2007 07:44 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Microsoft on Tuesday plans to push out a fix to repair problems caused by last week's emergency cursor flaw patch.

The fix will be delivered as a "high priority" update alongside Microsoft's regular security updates, Christopher Budd, a Microsoft security staffer, wrote on a corporate blog on Friday.

Microsoft has identified three additional applications that conflict with last week's "critical" MS07-017 security update. Originally the company listed only the Realtek HD Audio Control Panel as software that would not function and cause error messages to appear. CD-Tag, ElsterFormular and TUGZip have been added to that list.

"While the impact of these issues is clearly not widespread, it is affecting some of our customers," Budd wrote. For example, in Germany the issue with ElsterFormular is causing headaches because companies use it to file their taxes, according to the Elster website.

Microsoft broke with its monthly patch cycle to repair a bug in the way Windows handles animated cursors. Cybercrooks had been using the hole to attack Windows PCs. Microsoft knew about conflicts with Realtek's audio software before releasing the fix and published a support article with the security bulletin.

Microsoft's Automatic Updates, the Windows feature that automatically downloads and installs fixes, will install the fix only on PCs that run conflicting applications, Budd wrote. The Windows Update and Microsoft Update websites will also offer it only if conflicting software is found on a PC, he wrote.

For organisations, Microsoft will make the fix available through its Windows Server Update Services and Software Update Services patch installation tools, though with a possible delay until later next week, Budd wrote. The fix is already available for download from Microsoft's website.

Microsoft on Tuesday also plans to release five security bulletins, four of which will address Windows flaws. The bulletins, part of Microsoft's monthly patch cycle, will provide fixes for an undisclosed number of security vulnerabilities.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
36 out of 39 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:





Video icon

Video

Sentry Posts Blog

Malicious Mobile Apps a Growing Concer...

Malicious Mobile Apps a Growing Concern Author: Eric Everson, MBA, MSIT-SE The phrase “mobile security” does not usually mean much to anyone, until of course they encounter their... More

Post a comment

Malicious Mobile Code: What You Need t...

Malicious Mobile Code: What You Need to Know. Author: Eric Everson, MBA, MSIT-SE The thought of someone hacking into your mobile phone to steal your personal data added to the growing... More

1 comment

Bletchley Park calls for operators for...

The home of World War II codebreaking has called for engineers to operate an electro-mechanical machine developed by mathematician Alan Turing. The Turing Bombe was a brute-force... More

2 comments


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters