Slashdot Mirror


Microsoft Sits on Security Flaw for Six Months

pmf writes "Yet another critical vulnerability affecting Windows 2000/XP/2003 has been just announced by eEye. It is worthy to note, that it took Microsoft over 6 months to fix it. The bug affects ASN.1 library and is remotely exploitable through authentication subsystems (Kerberos, NTLMv2) and applications that make use of SSL certificates." The AP has an overview.

3 of 741 comments (clear)

  1. Why would Microsoft *really* care? by PierceLabs · · Score: 2, Redundant

    What better way to make people want to move to Longhorn in droves than to make the cost of staying with the currently deployed operating system seem prohibitively expensive in comparrison.

  2. Re:And this is why M$ adverts won't work on /,! by dan_polt · · Score: 0, Redundant

    Learn to type, idiot.

    Yes, my bad, accidentally pressed submit instead of preview.

  3. P and GP MODS ON T3H 5P0K3 by Misinformed · · Score: 0, Redundant

    Not OT and not flamebait/troll. If you feel the need to moderate remember crap moderation results in crap meta moderation, and meta moderation is much more fun.

    --
    --

    Slashdot: Racism against Indians OK. China bad, USA good. Blue pill in water supply.