Slashdot Mirror


Businesses Urged To Use Unofficial Windows Patch

frankie writes "ZDNet is reporting on the latest dire pronouncements about the WMF vulnerability. The problem is so serious that security experts are urging IT firms to use the unofficial patch. Microsoft's current goal is to release the update on Tuesday." From the ZDNet article: "This is a very unusual situation -- we've never done this before. We trust Ilfak, and we know his patch works. We've confirmed the binary does what the source code said it does. We've installed the patch on 500 F-Secure computers, and have recommended all of our customers do the same. The businesses who have installed the patch have said it's highly successful" It's big enough that even mainstream media is covering the flaw.

16 of 374 comments (clear)

  1. Re:Does MS view this as important? by croddy · · Score: 4, Funny

    This'd be a hell of a lot easier if they'd just give over the source code already.

  2. Re:Does MS view this as important? by chrish · · Score: 5, Funny

    Presumably they do some sort of testing with their patches before they release...

    --
    - chrish
  3. This is slashdot, wheres the pictures? by LiquidCoooled · · Score: 5, Funny

    Its ok, I found th...!&^!")NO CARRIER

    --
    liqbase :: faster than paper
    1. Re:This is slashdot, wheres the pictures? by TheHawke · · Score: 5, Funny

      No Spot! Don't Chew on the power*ZAP!* %^@!NO TERRIER.

      Sorry, had to do that. ^.^

      --
      First rule of holes; When in one, stop digging.
  4. Re:Does MS view this as important? by Tim+Browse · · Score: 2, Funny
    I would image they are making sure everything is working the way it is supposed to before releasing it...

    Gah! Too late! You've been hit by the WMF image virus already!

  5. Oblig. Star Trek by Wilson_6500 · · Score: 2, Funny

    Kirk: Fix the WMF hole!

    ...

    Let me guess: Tuesday?

  6. investigation? by Fishstick · · Score: 3, Funny

    Microsoft (Research) said in a security bulletin on its Web site, "we are working closely with our antivirus partners and aiding law enforcement in its investigation."

    Cool - law enforcement is investigating Microsoft? About time!

    get a rope!

    --

    There is much cruelty in the universe, John.
    Yeah, we seem to have the tour map.

  7. How to proceed? by trollable · · Score: 2, Funny

    The problem is so serious that security experts are urging IT firms to use the unofficial patch.

    Do I have to install Wine first?
    Please help!

  8. Re:MS has to test very extensively by greysky · · Score: 4, Funny

    Our commitment is to protect all customers in all languages on all supported products at the same time, so it becomes a huge undertaking.

    So in other words, we won't release a cure for cancer until we have cures for all other diseases as well.

  9. Re:block wmf by Sebastopol · · Score: 1, Funny


    Then: Microsoft sucks because they use file extensions!

    Now: Microsoft sucks because they don't use file extentions!

    --
    https://www.accountkiller.com/removal-requested
  10. Re:Does MS view this as important? by advocate_one · · Score: 2, Funny

    the testing will be signed off as soon as the patch breaks one or more of the following: iTunes, Samba, GoogleDesktop, Palm Desktop... they only care about testing against their own applications, breaking third party programs in the process is a bonus, breaking old versions of ms apps while not breaking the latest versions is a double bonus... as it forces an upgrade

    --
    Donald 'Duck' Dunn: We had a band powerful enough to turn goat piss into gasoline.
  11. If I had invented the unofficial patch by Adelle · · Score: 2, Funny

    I'd be filing a patent on "a technique for patching security vulnerabilities relating to images"...

  12. That's great, it starts with... by rcw-work · · Score: 4, Funny

    ...zero-day
    SETABORTPROC Escape
    Linux geeks are not afraid.

    IDS, thanks for playin'
    Unofficial patch burn
    World serves its own needs
    Dummy serve your own needs.

    Feed the news from ISC,
    Go insane
    The blogs all start to clatter
    With fear fight down height.

    Wire is on fire
    On a new years' holiday
    And the mafia for hire
    At a pharma site.

    Tuesday now it's coming in
    A hurry with the worries
    breathing down your neck.

    Team by team the coders baffled,
    trumped, tethered cropped.
    Feature? That's insane!

    Fine, then. Uh oh,
    A week 'till it's released to you
    But it'll do

    Unregister a DLL
    World serves its own needs,
    Patch this at your own speed
    Crummy packet capture
    And it's never quite
    Right, right.

    Admin now an alcoholic
    Can't take bright light
    Feeling pretty tired.

    It's the end of the world as we know it.
    It's the end of the world as we know it.
    It's the end of the world as we know it and I feel fine.

  13. someone alert gw bush by circletimessquare · · Score: 4, Funny

    they found the Weapon of Mass Frustration

    --
    intellectual property law is philosophically incoherent. it is your moral duty to ignore it or sabotage it
  14. Good ol' patch Tuesday by dtfinch · · Score: 2, Funny

    The next big Windows worm will be unleashed on a Wednesday.

  15. Re:The issue was actually a feature... by wo1verin3 · · Score: 5, Funny

    When can I expect a patch for Windows for Workgroups 3.11?