Slashdot Mirror


Microsoft, Cisco Finally Patch TCP DoS Flaw

Trailrunner7 writes "Today vendors are finally releasing patches for the TCP vulnerabilities first publicized nearly a year ago that affect a huge range of networking products, including any device running a version of Cisco's IOS software, and a number of Microsoft server and desktop operating systems. Both Microsoft and Cisco released fixes for the vulnerabilities today. The Microsoft Patch Tuesday release included the fix for the TCP flaw, which affects Windows Server 2003 and 2008, as well as Windows Vista, both the 32-bit and 64-bit editions, and Windows 2000 SP4, for which no fix is coming. The TCP flaws were identified several years ago and were made public last year by two researchers at Outpost24, Jack C. Louis and Robert E. Lee. Louis, who has since died, developed a tool called Sockstress that tested for the flaw and was able to maintain extremely long-term TCP connections with remote machines using very little bandwidth."

5 of 114 comments (clear)

  1. cotton niggers, sand niggers, rice niggers by Anonymous Coward · · Score: -1, Troll

    kill all niggers

  2. wowzers by el_tedward · · Score: -1, Troll

    So, was this something that actually took a YEAR to figure out how to fix, or did M$ just say "Security? LOLWUT? Let's spend our billions of dollars on something else, like um.. uh.. HORSE SHIT! Yeah! We need some more horse shit to fertilize the grass outside."

  3. I've experiencd this bug daily in my Fortune-500. by Anonymous Coward · · Score: -1, Troll

    And we can't fire administrators from Microsoft.

    You see, what I like about "Free Software" is not that it costed money to buy but because the Software is not administratively held forever going back to the company that created and sold it (unlike the constant revisions from Microsoft). When that kike Richard Mathew Stallman means to say is just software that you can choose whom to maintain, and it just so happens that his Free software also costed as free if not for the CD to burn it onto.

    I've been wanting to fire Microsoft from maintaining my Windows XP for a long time, but it looks more like their software is not for sale because they wouldn't sell me the code with the controlling language and dialects.

    Microsoft gets an F.

  4. Re:Better Late than never? by dkleinsc · · Score: 0, Troll

    Well, for Windows 7 you'll just have to use the SMB packet of death instead. Which is really too bad: usually Microsoft has a much better track record on backwards compatibility.

    --
    I am officially gone from /. Long live http://www.soylentnews.com/
  5. More than Arrogance, Marketing. by inTheLoo · · Score: -1, Troll

    Another sorry lie by M$. They fixed these things in Windows 7 RTM, but not earlier versions of Windows, so that they could lie about Windows 7 having better "security" than Vista and XP. Very simple and very evil and also very obvious. The new SMB2 failure blows their little lie up even for the most ignorant of users. M$'s reputation can't get much lower.

    --
    No calls now, I'm ...