Submit a Story!
Microsoft Security Bulletin MS09-001 - Critical: Vulnerabilities in SMB Could Allow Remote Code Execution (958687)
This security update resolves several privately reported vulnerabilities in Microsoft Server Message Block (SMB) Protocol. The vulnerabilities could allow remote code execution on affected systems. An attacker who successfully exploited these vulnerabilities could install programs; view, change, ...
Microsoft On The Issues
microsoftontheissues.com — Workforce Development and Economic Stimulus Given the constant flow of dreary news battering American workers – including today’s announcement that jobless claims soared to 524,000 in December as the unemployment rate jumped to a 16-year high of 7.2 ... (more) Microsoft On The Issues
Microsoft Releases Tag, Its Second iPhone Application
Microsoft Releases Tag, Its Second iPhone Application
techcrunch.com — At CES, Microsoft has introduced its second iPhone app after dipping its toe with the release of Seadragon Mobile last month. The name of the application is Microsoft Tag , and it enables users to instantly access mobile content, videos, music, ... (more) Microsoft Releases Tag, Its Second iPhone Application
MS09-001: Prioritizing the deployment of the SMB bulletin
blogs.technet.com — This month we released an update for SMB that addresses three vulnerabilities. This blog post provides additional information that might help prioritize the deployment of this update, and help explain the risk for code execution. In the bulletin ... (more) MS09-001: Prioritizing the deployment of the SMB bulletin
Comments
Blog Reactions

Microsoft Patch Tuesday Fixes Vulnerabilities in SMB Protocol
eWeek - RSS Feeds — Microsoft released a single bulletin for this month's Patch Tuesday. The bulletin address three issues affecting Microsoft's Server Message Block Protocol. Microsoft’s inaugural Patch Tuesday of 2009 fixes three vulnerabilities in the Microsoft Server Message Block (SMB) Protocol software. Though the lone security bulletin itself is rated critical, only two of the three vulnerabilities have a critical vulnerability rating on their own. Both of those issues, if successfully exploited, could allow a hacker to remotely execute code. The two most serious flaws are labeled by ...

Microsoft, Oracle Issue Patches, While Zero-Day Exploits Surface
InformationWeek - All Stories And Blogs — Following a frantic December that featured an emergency patch for Internet Explorer, Windows administrators may be looking forward to a month with fewer security worries. And it might appear that they're getting a break: Microsoft on its Patch Tuesday released its January Security Bulletin featuring only one bulletin that addresses three vulnerabilities. "It's a great way to start the year," said Andrew Storms, director of security operations at nCircle Network Security , in a phone interview. "It's going to give everyone the opportunity to clean up from the patches of 2008." Oracle administrators have a ...

1 Security Patch for all Windows versions, also 2008 Core, no release for Windows 7 Beta
Bink.nu — MSSRB: Today Microsoft is releasing one new bulletin, MS09-001 . This bulletin is rated as ‘Critical' for Windows 2000, Windows XP and Windows Server 2003 and is rated as ‘Moderate' for Windows Vista and Windows Server 2008. My colleague Mark Wodrich has put together a posting over at the Security Vulnerability Research and Defense (SVRD) ...

Microsoft releases critical patch for SMB vulnerability
Download Squad — Filed under: OS Updates, Security, Windows, MicrosoftJust because it's relatively quiet on Patch Tuesday doesn't mean the one bulletin that was released should be ignored. Microsoft today issued MS09-001 to address a critical vulnerability in the SMB protocol that could allow an attacker free reign to cause havoc via the NetBIOS ports (139 and 445). According to Microsoft, "an attacker who successfully exploited these vulnerabilities could install programs; view, change, or delete data; or create new accounts with full user ...

Microsoft Security Vulnerabilities Pose Worm Threat
Technologizer — Vulnerabilitie s in Microsoft’s Server Message Block (SMB) file-sharing protocol could pose a serious threat to enterprise networks if companies fail to promptly patch their systems, ...

Microsoft Patch Released: 01/13/09
Technology - Channel Feed — ... all supported editions of Windows Vista, and Windows Server 2008. For more information, see the subsection, Affected and Non-Affected Software, in this section. The security update addresses the vulnerabilities by validating the fields inside the SMB packets. For more information about the vulnerabilities, see the Frequently Asked Questions (FAQ) subsection for the specific vulnerability entry under the next section, Vulnerability Information. The security bulletin is here. Tags: Microsoft, Vista, Windows, Windows 7 Share ...

Microsoft Security Bulletin Jan ‘09 Release - Skips Windows 7
D' Technology Weblog — ... Microsoft Security Bulletin MS09-001 is rated as ‘Critical’ for Windows 2000, Windows XP and Windows Server 2003 and is rated as ‘Moderate’ for Windows Vista and Windows Server 2008. Also comes with an updated version of Malicious Software Removal Tool (MSRT), that remove the Win32/Conficker and Win32/Banload families of malware. Impacted customers will be interested in the addition of Win32/Conficker.B; which has had a significant and sudden impact on some customers. ...

Related: ms09 001, ms09-001
Futility of Microsoft's Exploitability IndexInformationWeek - All Stories And Blogs
As far as Microsoft patch Tuesdays are concerned, 2009 treads in like a lamb, with the software maker issuing only one security bulletin in its MS09-001 January patch rollout. Yet, even as MS09-001 is rated as "critical" for popular versions of its ...
Microsoft fixes holes in SMB Windows network file sharing protocolCNET News - Security
Microsoft on Tuesday released a security update that fixes three vulnerabilities in the Windows network file sharing protocol Server Message Block (SMB) that could allow an attacker to remotely take complete control of a system. Microsoft ...