Microsoft Releases SP4 for Windows 2000
Snake_Plisken writes "I checked Windows Update today on a lark and found that Windows 2000 Service Pack 4 has been released." You can read a short CNet article discussing the media player patches as well as one more about
the fixes in SP4.
Any brave souls out there already applied this yet? I am looking at about 100 Win2K boxes that will potentially need this...so anyone with feedback would be greatly appreciated.
And here you can read about the newest security leak which is not patched by this servicepack ;) :)
That guy who analysed the buffer overflow also found a funny easteregg in the buggy dll file.
The Scary part is, I've found Win2000 to be the most stable and reliable Windows ever released. 63,000 defects? I wouldn't doubt it. The part that worries me with how well 2000 works, how many defects do the 9x, XP, and NT versions contain?
The preceding post was not a Slashvertisement.
Except this is what it was: a trojan, but with an all new date, and an all new filename. Someone has just rereleased this baby.
Fortunately, a few things clued me in:
(1) It said it was from Microsoft. But the URL said from a Verizon ad.
(2) It called me a Microsoft Client. I've never felt so humiliated. I do *NIX or Mac.
(3) It claimed to fix ALL the known security flaws in Windows. This one should have been obvious.
(4) It was advertised to work on Win9x, ME, and 2000. My guess is that Microsoft doesn't do a whole lot for Win95 people who haven't upgraded. I could be wrong.
(5) It included an executable. [??? how did that slip past my ISP??? They normally strip executables.]
Anyhow, for those of you who use Windows, be aware [once again, and again and again] that those trojans are not to be run.
Correct Horse Battery Staple: 72 bits of entropy. Enter "Correct H" into google. When it generates the phrase, that's
You can use the handy official Microsoft desktop support lifecycle wizard to see how long they plan to support each desktop OS version. Windows 2000 will be fully supported through 3/31/05, then it will enter "extended support" for two more years (extended=more expensive). After that you're on your own. Win2k server follows basically the same guidelines, except that in the "extended" support period you need to pay for non-security-related hotfixes.