• On MovieTome: See the TRAILER for TERMINATOR 4!

December 1, 2005 2:11 PM PST

More exploits out for Windows flaws

  • Print
Two new pieces of computer code that could be used in cyberattacks on Windows users were posted on the Web on Wednesday and Thursday.

The exploit posted Thursday is another that could allow a remote attacker to gain complete control over a vulnerable computer. The code takes advantage of a flaw in a Windows component for transaction processing, called the Microsoft Distributed Transaction Coordinator. Microsoft addressed the flaw in security bulletin MS05-051 in October.

The attack code published Wednesday is another that exploits a flaw in the way Windows handles certain graphics files and could cause a vulnerable system to crash. Microsoft provided a patch for the flaw in November with security bulletin MS05-053 and warned that the vulnerability could create an opening for spyware and Trojan horse attacks.

Including these last two, a total of four exploits have been released for the same two Windows flaws since Sunday, according to the French Security Incident Response Team, a security research company.

"It is reasonable to assume as we have seen so much proof-of-concept code distributed for these vulnerabilities that we will eventually see some class of attack," said David Marcus, security research and communications manager at McAfee.

While availability of attack code could provide cybercriminals with ammunition, patches and security software should shield Windows users, said Steve Manzuik, security product manager at eEye Digital Security.

"I am sure some will try and use the exploits, but the reality is there are patches for these issues and almost every security vendor would have by now added signatures to protect against this stuff," Manzuik said.

Michael Sutton, director at security intelligence company iDefense, a part of VeriSign, agreed. "These vulnerabilities were patched, so fortunately clients have had weeks to patch," he said.

Unpatched IE bug is bigger threat
Microsoft is not aware of any attacks that use the latest exploits. However, the company warned this week of an attack that uses a yet-unpatched flaw in Internet Explorer. At least one exploit for that vulnerability also has been publicly released in the past two weeks.

"That's the biggest threat out there, the Microsoft Internet Explorer vulnerability which has no patch," Manzuik said. "Currently there are exploits on the Web for this that are not that malicious, but it wouldn't be too hard for someone to take this and make it malicious."

Sutton also warned computer users to be on guard for exploitation of the unpatched bug. "The one to pay attention to is the vulnerability that remains unpatched. Microsoft has released an advisory for this but no patch yet," he said. Microsoft may issue a fix outside of its monthly patching cycle for this problem, Sutton said.

Microsoft's next monthly patch release is scheduled for Dec. 13.

See more CNET content tagged:
exploit, flaw, vulnerability, McAfee Inc., attack

Add a Comment (Log in or register) 7 comments
It Never Ends
by Dead Soulman December 1, 2005 6:22 PM PST
I'm not going to stand here and defend one OS over another. I really don't care. I use WinXP, Panther, Ubuntu, and Fedora. They all have their issues. But, I have a cool solution for an outdated and not-cared-for internet browser. Use Firefox. www.firefox.com.
I never use IE unless I do Windows Update. If it wasn't for that, and the fact that Microsoft has made it impossible to uninstall, IE would've been removed from my systems a very long time ago.
Now, why is MS not addressing the IE issues is beyond me. And why haven't people switch to any of the many available browsers is the biggest question mark.
Reply to this comment
Windows Update web page is NOT needed
by Anonymous1234567890 December 1, 2005 10:22 PM PST
Just use it from the Control Panel instead -- no need to launch IE to get the latest MS patches!
Here is what they need to do.
by grabacontroller December 1, 2005 10:47 PM PST
They need to fix every flaw including the small ones. Also, who released the exploit to the public? If its Microsoft, they are idiots. If its some other sites, I would quickly shut them down. Also, Microsoft should rethink its thinking. Remotely controlling a computer is a flaw but other flaws have to be fixed no matter what. Being able to install software without nothing popping up etc is a flaw. If you can get spyware etc easier in IE thats a flaw. Security is more important than any extra feature in the software or imporvement in the software.
Reply to this comment
IE has no security flaws!!!
by Johnny Mnemonic December 2, 2005 3:58 AM PST
If you run it under Linux! I run ie5.0 ~ ie6.0
under Linux to test web page rendering differences.
IE even seems a pit peppier under Linux. Probably
because of all the underlying Windows limitations
are removed. Wine has really matured in the last
couple of years.

http://www.winehq.com/
Reply to this comment
I dont eat cheese.
by murophelia December 2, 2005 6:38 AM PST
"IE has no flaws-- if you run a Linux..." Well, there you go. We dont own/use anything Linux, dear people. Nor do my neighbours. Yet there is a new LAN "Linux" which has overthrown the gov't of my pc. Since I can't run the Linux myself I would imagine it's worked out swell for the Linux user with 600,000+ packets flying out my window and none coming in. Now that's peppier. And purely unwanted and unwarranted.

Next!
View reply
really mature
by Thunder Johny June 19, 2007 8:24 AM PDT
http://www.analogstereo.com/mazda_miata_owners_manual.htm

Latest tech news headlines

RSS Feeds

Add headlines from CNET News to your homepage or feedreader.

More feeds available in our RSS feed index.

Markets

Market news, charts, SEC filings, and more

Related quotes

Microsoft (12.26%) 2.15 19.68
VeriSign (3.11%) 0.53 17.57
McAfee (6.33%) 1.64 27.56
Dow Jones Industrials (6.54%) 494.13 8,046.42
S&P 500 (6.32%) 47.59 800.03
NASDAQ (5.18%) 68.23 1,384.35
CNET TECH (5.95%) 56.25 1,002.00
  Symbol Lookup
advertisement

Inside CNET News

Scroll Left Scroll Right