You are here: silicon.com > Software > Security Strategy

Security Strategy

Vista already on the Redmond patch treadmill

Security first...

Tags: patch tuesday, windows vista, vista, patch

By Joris Evers

Published: 18 August 2006 08:50 GMT

While Microsoft has touted Windows Vista as its most secure client operating system yet, the unfinished product is already getting regular security fixes.

Vista, slated to be broadly available in January, is the first major Microsoft product to get security updates while it is still in beta, Microsoft employee Alex Heaton wrote on a corporate blog on Tuesday.

Heaton, who works on Vista security, wrote: "We are committed to release Windows Vista updates for all MSRC (Microsoft Security Response Center) critical class issues that may arise during the beta-testing period." The goal is to release the fixes as soon as possible, he said - but versions of Windows that have been commercially released, such as Windows XP, get priority.

Two of the seven "critical" Windows updates that Microsoft delivered on 8 August affect Vista, Heaton wrote. These are MS06-042, for Internet Explorer, and MS06-051, which addresses a flaw in the Windows kernel.

Vista is not affected by the Windows flaw that is getting most of the attention among the Patch Tuesday bulletins. That flaw, MS06-040, affects file and printer sharing and has already been exploited in low-risk worm attacks.

Updates for the security issues that affect Vista have been sent out to Windows Update and are available in the Microsoft Download Center, according to the software maker.

These are not the first security fixes for Vista. In January, Microsoft released a security update to address the same image-rendering vulnerability found in earlier versions of the operating system. The patch fixed a flaw in the way the operating system's Graphics Rendering Engine processes Windows Meta File images. The WMF handling bug was being exploited in cyber attacks.

Joris Evers writes for CNET News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Tim Ferguson Exclusive: Former MySQL boss Marten Mickos talks open source Why Microsoft could become one of the "biggest friends of open source" and why Oracle getting its hands on MySQL could be "one of the biggest open source coups ever"...

Naked CIO Naked CIO: Cloud computing more expensive than we thought? Smart IT leaders will examine the impact of how they pay for tech


  • Jobs
1 x 1st/ 2nd line support analsyt (18,000- 24,000) North East London

1 x 1st/ 2nd line support analsyt (18,000- 24,000) > MCSE and MCP (ideally in Windows Vista) qualified within the last 2 years > 2 years 1st and 2nd ...

Desktop Support Analyst

Windows Vista Desktop Desktop Application experience from Microsoft Office products and Outlook, Printer/Sender issues (HP JetAdmin), Internet ...

Database Admin DB2 Mainframe

These services include providing support of the Operating System configuration and associated file systems, log files, processes, problem ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: