Domain: intelliadmin.com
Stories and comments across the archive that link to intelliadmin.com.
Stories · 10
-
Microsoft to Issue Emergency Patch For File-Sharing Hole
An anonymous reader writes "Microsoft said late Wednesday that it plans to release a critical security update today to plug a security hole present in all supported versions of Windows. The company hasn't released any details about the patch yet, which is expected to be pushed out at 1 p.m. PT. Normally, Redmond issues security updates on Patch Tuesday, the second Tuesday of each month. The Washington Post's Security Fix blog notes that each of the three times in the past that Microsoft has departed from its patch cycle, it was to fix some really nasty vulnerability that criminals already were exploiting to break into Windows PCs." Reader filenavigator points out an article which describes the hole as an SMB vulnerability, and says it "allows anyone to access a Windows machine remotely without any user name or password. Any machine that exposes Windows file sharing is vulnerable." Update: 10/23 17:42 GMT by T : Reader AngryDad adds a link to Microsoft's more detailed memo. -
Microsoft Admits Vista Has "High Impact Issues"
EggsAndSausage writes "Microsoft has granted, in a roundabout way, that Vista has 'high impact issues.' It has put out an email call for technical users to participate in testing Service Pack 1, due out later this year, which will address 'regressions from Windows Vista and Windows XP, security, deployment blockers and other high impact issues.' It's hard to know whether to be reassured that Service Pack 1 is coming in the second half of 2007, and thus that there is a timeframe for considering deployment of Vista within businesses, or to be alarmed that Microsoft is unleashing an OS on the world with 'high impact issues' still remaining." In other news, one blogger believes that Vista is the first Microsoft OS since Windows 3.1 to have regressed in usability from its predecessor (he kindly forgives and dismisses Windows ME). And there's a battle raging over the top 10 reasons to get Vista or not to get Vista. -
Unofficial Win2K Daylight Saving Time Fix
Saturn2003a writes "Microsoft has stated that they will not be offering a patch for the new US Daylight Saving Time for Windows 2000 and earlier. Only customers with an extended support agreement can get a Hotfix from Microsoft. To get around this, IntelliAdmin has created an unofficial patch (source code provided) that will fix Daylight Saving Time on Windows 2000 and Windows NT machines." -
Zero Day Exploit Found in Windows Media Player
filenavigator writes "Another zero day flaw has been reported in Windows Media player. It comes only one day after a serious zero day flaw was found in word. The flaw is dangerous because it involves IE and Outlook's ability to automatically launch .asx files. No fix from Microsoft has been announced yet." -
Auto Install of IE 7 Delayed In Japan
filenavigator writes "Microsoft has delayed the automatic install of IE 7 in Japan. There's an an interesting response in one of the MSDN blogs. IT pros are saying that they have done this because business users asked it to be delayed. It seems to me many business users here in North America wanted it to be delayed as well, but were forced to scramble and deploy IE 7 blocking software. This looks like more proof that the IE 7 automatic push was more for marketing reasons, than security. If it were a security issue, than why wait on the Japanese push?" Does anyone know the 'technical' reason that the autoinstall was delayed? -
Windows Media Player 11 Released
filenavigator writes "Microsoft issued a press release today publicizing the release of Windows Media Player 11. Looks like the major updates in this version are for the Microsoft marketing engine. Features boasted by Microsoft include better integration with media players sanctioned by them, and integration with their new URGE music service. Additionally, and more importantly, this version contains the latest in Microsoft DRM software. Interested parties can download a free copy" -
Security Firm Bypasses Patch Guard
filenavigator writes, "This week the security firm Authentium found a workaround for Patch Guard, the security feature Microsoft has embedded into the 64-bit version of Windows. It is supposed to keep out unsigned drivers, kernel modifications, and security company competitors. With Authentium's workaround it can be turned off, software installed, and turned right back on. Microsoft immediately responded by saying their reckless ways are endangering the security of Windows users and that they will disable this hack quickly." -
Take-Two Loses Another Round in Court
IntelliAdmin writes "A federal judge refused a request from Take-Two Interactive Software to immediately dismiss some claims in a lawsuit accusing it of selling Grand Theft Auto videogames containing sexually explicit images under the wrong content label." From the article: "Take-Two and its subsidiary, Rockstar Games, had argued in the motion to dismiss parts of the lawsuit that the plaintiffs could only file claims in the states where they resided, not in all 50 states. But U.S. District Judge Shirley Wohl Kram denied Take-Two's motion and said she would reconsider if class-action status were granted in the case." -
Bug Pushes Vista Out to November 8th
IntelliAdmin writes "Microsoft originally targeted October 25th for Vista's release to manufacturing, but a last-minute bug that 'took most of the Vista team by surprise' has caused an unexpected delay, said Ethan Allen, a quality assurance lead at a Seattle high-tech company that tests its products for Vista. Allen said the Vista team discovered the bug, which 'would totally crash the system, requiring a complete reinstall'. Vista now has a new RTM date of November 8th" A reader wrote in to point out this story originated with Paul Thurrott. -
Critical Flaw Found in VNC 4.1
jblobz writes "IntelliAdmin has discovered a critical flaw that allows an attacker to control any machine running VNC 4.1. The flaw grants access without the attacker obtaining a password. The details of the vulnerability have not been released, but their website has a proof of concept that allows you to test your own VNC installation for the vulnerability"