Advertisement
Promo

Security threats Toolkit

Critical Windows patches announced

Joris Evers CNET News.com

Published: 09 Sep 2005 08:55 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

As part of its monthly patching cycle, Microsoft on Tuesday plans to release one security alert for flaws in the Windows operating system.

The security bulletin is deemed "critical", Microsoft's highest risk rating, the company said in a notice posted on the advance notification section of its Web site on Thursday. Last month's "Patch Tuesday" also included a critical alert for Windows flaws. One of the flaws was exploited days later by the Zotob worm that wreaked havoc on Windows 2000 systems worldwide.

Microsoft's Thursday notice did not specify whether one of the patches will be for Internet Explorer. Over the last few weeks, several security researchers have come forward with flaws in the Web browser. Some of these vulnerabilities could let an attacker gain control of a user's PC.

There are several unpatched vulnerabilities in IE 6, according to Secunia. The security monitoring company has issued 85 alerts on the Web browser since 2003; 19 of those security bugs remain unpatched, according to Secunia's Web site.

In addition to the Windows security fixes, Microsoft on Tuesday plans to release an update for Windows that it deems high priority, but is not security related, the company said. Furthermore, an updated version of the Windows Malicious Software Removal Tool will be released. The tool detects and removes malicious code placed on computers.

Microsoft gave no further information on Thursday's bulletins, other than stating that some of the Windows fixes may require restarting the computer.

The software giant provides information in advance of its monthly patch release day, which is every second Tuesday of the month, so people can prepare to install the patches. In August, Microsoft released six security bulletins, including three deemed "critical" for Windows.

Microsoft rates as critical any security threat that could allow a malicious Internet worm to spread without any action required on the part of the user.

Microsoft said it will host a Webcast about the new fixes on Wednesday at 1100 PDT.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
50 out of 113 people found this useful


Full Talkback thread

1 comment

  1. MS announces patches to 'critical' flaws on Thurs... Anonymous

Company/Topic Alerts

Create a new alert from the list below:









Video icon

Video

Sentry Posts Blog

Met will not reopen phone hack investi...

The Metropolitan Police will not reopen its investigation into alleged phone hacking by the News of the World. In a press statement delivered outside Scotland Yard on Thursday, Assistant... More

Post a comment

FUD over ChromeOS's security already?

It hasn't taken long for the security vendors to wake to the potential of Google's new ChromeOS. The potential that is, to create FUD – fear uncertainty and doubt. In a release today,... More

Post a comment

Feds take DDoS in their stride

The US Department of Homeland Security has said that a series of distributed denial-of-service attacks began on US government networks on 4 July. However, Amy Kudwa, deputy press... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters