You are here: silicon.com > Software > Security Strategy

Security Strategy

Microsoft fixes patchy patch

Let's hope this one doesn't come unstuck...

Tags: microsoft

By Joris Evers

Published: 29 June 2006 09:15 GMT

Microsoft late on Tuesday updated a critical security patch to address the network connection trouble some people had with the first version of the fix.

The first patch, delivered in security bulletin MS06-025, was one of the dozen released by Microsoft on this month's Patch Tuesday. It repairs two high-risk security flaws in a Windows routing and remote access component which could allow an attacker to commandeer a vulnerable PC.

However, the fix can interfere with certain dial-up networking connections. Problems occur only with dial-up connections that use a terminal window, or dial-up scripting, Microsoft said. This type of connection may stop responding after the patch is applied, it added.

Microsoft had advised people who use those types of connections not to install the security update until it released a revised patch. That revision is now available.

While Microsoft was working on the updated fix, computer code that exploits the flaw in question was released on the internet. That raises the urgency to patch and prompted Microsoft to issue a security advisory earlier this week. However, the company said it is not aware of any attacks using this exploit.

The MS06-025 update was one of a dozen security bulletins sent out by Microsoft two weeks ago. At least one patch came after the vulnerability it addressed had already been used in a cyber attack. Exploits for some other flaws have also been published, further increasing the urgency to patch.

Joris Evers writes for CNET News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business

Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business


  • Jobs
IT Security Analyst - South

Must hold a current driving licence DESIRABLE Juniper SSL VPN RSA SecurID MailSweeper WSUS and patch management Ironport Web Content Filteringo ...

Web Applications Vulnerability Tester

You will conduct regular penetration tests using a variety of manual methods and specialist tools to find vulnerabilities and exploits and fix them. ...

FIX Connectivity Contractor On Boarder + Solid Equities Exp - Urgent

I am looking for a FIX Connectivity Contractor to work within Equities. Fix Client on Boarding within Equities is the key but essential part of this ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: