internet.com
You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet |Refer-It

WinPlanet Software Downloads and Reviews for Small Businesses
Search
Power Search | Tips
-
Navigate WinPlanet
WinPlanet Home Page

Software
Download Index
In-Depth Reviews
Tips & Tutorials
Updates
News

Software Categories
Browsers
Chat / Conferencing
Desktop Utilities
Development
Internet Apps
Multimedia
OS Service Packs
Productivity Tools

Software Glossary

WinPlanet Newsletter

internet.commerce
Partners & Affiliates













Small Business Computing
Small Business Computing
Ecommerce Guide
Webopedia
WinPlanet

WinPlanet / News

Download of the day
Norton AntiVirus 2008

Most Popular Software Downloads
Ad-Aware 2008 Free
Windows XP Service Pack 3
Internet Explorer 7
QuickTime for Windows
Adobe Flash Player
AVG Anti-Virus Free
Paint Shop Pro
Windows Live Suite
CCleaner (Crap Cleaner)
Winamp

Most Popular Software Articles
Windows Vista Tips & Tricks, Part 1
Windows Vista: Worthy of the Hype?
Windows Wireless Zero Configuration: Five Steps to Sanity


Software Reviews

Microsoft Issues Critical Fixes to Windows, Apps
April Patch Tuesday Sees Eight New Security Bulletins
Andy Patrizio

In the first month following the release of Windows Vista Service Pack 1 and Windows Server 2008, Microsoft is already serving up a number of fixes for both operating systems, as it has issued eight security bulletins covering a total of 10 vulnerabilities.

Five of the eight are labeled as Critical, the most important of fixes, while three are labeled Important, the next level of severity. Two patches affect Office, four affect Windows across all versions, and the final two are related to Internet Explorer.

One of the more significant fixes, as noted by security firm McAfee, is MS08-021, which fixes two vulnerabilities in Windows that would allow an attacker to take control of a PC through specially crafted Windows metafiles, using the WMF or EMF formats.

McAfee noted that similar vulnerabilities were exploited in cyber attacks two years ago, forcing Microsoft at the time to rush out a fix (MS06-001) outside of its monthly patch cycle.

There were also three Internet-oriented fixes, two Critical and one Important. MS08-023 addresses a vulnerability in an ActiveX control, which could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer.

MS08-024 resolves a vulnerability in Internet Explorer, which could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer.

Finally, MS08-020 fixes a vulnerability in Windows which could allow an attacker to send specially crafted responses to DNS requests, thereby spoofing or redirecting Internet traffic from legitimate locations.

"Today's Microsoft patches underline the risk of surfing the Web unprotected," said Dave Marcus, security research and communications manager at McAfee Avert Labs in an e-mailed statement. "Many of the vulnerabilities addressed by the fixes could be exploited if a Windows user simply visits a malicious Web site, a favorite attack method among cybercriminals."

The patch collection also addresses a critical vulnerability in Microsoft Office that would allow for taking complete control of an affected system if a user opens a specially crafted Microsoft Office Project file. Another addresses a similar vulnerability in Visio files.

Finally two Windows patches will fix vulnerabilities that would allow taking control of an affected system.

More information on the eight fixes can be found at Microsoft's Security Update Archive.

Instead of adding a new set of malware threats to the monthly release, as it has in the past, Microsoft has updated the Malicious Software Removal Tool itself this month. It can be downloaded, along with the patches, through Windows Update.

Microsoft will hold a Technet webcast on Wednesday, April 9, 2007 at 11:00 AM PDT to discuss this month's fixes.

News courtesy of internetnews.com

April 9, 2008

Download Windows Vista SP1 Now!Download

Download Windows Server 2008 Now!Download

View All Microsoft Software

Contents:
1. April Patch Tuesday Sees Eight New Security Bulletins






JupiterOnlineMedia

internet.comearthweb.comDevx.commediabistro.comGraphics.com

Search:

Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

Jupitermedia Corporate Info


Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers

Solutions
Whitepapers and eBooks
Microsoft Article: Will Hyper-V Make VMware This Decade's Netscape?
Microsoft Article: 7.0, Microsoft's Lucky Version?
Microsoft Article: Hyper-V--The Killer Feature in Windows Server 2008
Avaya Article: How to Feed Data into the Avaya Event Processor
Microsoft Article: Install What You Need with Windows Server 2008
HP eBook: Putting the Green into IT
Whitepaper: HP Integrated Citrix XenServer for HP ProLiant Servers
Intel Go Parallel Portal: Interview with C++ Guru Herb Sutter, Part 1
Intel Go Parallel Portal: Interview with C++ Guru Herb Sutter, Part 2--The Future of Concurrency
Avaya Article: Setting Up a SIP A/S Development Environment
IBM Article: How Cool Is Your Data Center?
Microsoft Article: Managing Virtual Machines with Microsoft System Center
HP eBook: Storage Networking , Part 1
Microsoft Article: Solving Data Center Complexity with Microsoft System Center Configuration Manager 2007
MORE WHITEPAPERS, EBOOKS, AND ARTICLES
Webcasts
Intel Video: Are Multi-core Processors Here to Stay?
On-Demand Webcast: Five Virtualization Trends to Watch
HP Video: Page Cost Calculator
Intel Video: APIs for Parallel Programming
HP Webcast: Storage Is Changing Fast - Be Ready or Be Left Behind
Microsoft Silverlight Video: Creating Fading Controls with Expression Design and Expression Blend 2
MORE WEBCASTS, PODCASTS, AND VIDEOS
Downloads and eKits
Sun Download: Solaris 8 Migration Assistant
Sybase Download: SQL Anywhere Developer Edition
Red Gate Download: SQL Backup Pro and free DBA Best Practices eBook
Red Gate Download: SQL Compare Pro 6
Iron Speed Designer Application Generator
MORE DOWNLOADS, EKITS, AND FREE TRIALS
Tutorials and Demos
How-to-Article: Preparing for Hyper-Threading Technology and Dual Core Technology
eTouch PDF: Conquering the Tyranny of E-Mail and Word Processors
IBM Article: Collaborating in the High-Performance Workplace
HP Demo: StorageWorks EVA4400
Intel Featured Algorhythm: Intel Threading Building Blocks--The Pipeline Class
Microsoft How-to Article: Get Going with Silverlight and Windows Live
MORE TUTORIALS, DEMOS AND STEP-BY-STEP GUIDES