Results 1 to 2 of 2

Thread: Microsoft patching zero-day Windows 7 SMB hole

  1. #1
    iLOVENZB's Avatar FST Crew BT Rep: +1
    Join Date
    Sep 2008
    Location
    Land gurt by sea
    Posts
    8,333
    Microsoft patching zero-day Windows 7 SMB hole
    November 13, 2009 5:15 PM PST

    "Microsoft on Friday said it is working on a fix for a vulnerability in the Server Message Block file-sharing protocol in Windows 7 and Windows Server 2008 Release 2 that could be used to remotely crash a computer. The software giant had said on Wednesday that it was looking at the bug, discovered by researcher Laurent Gaffi?, who published proof-of-concept code on a blog.

    "Microsoft is aware of public, detailed exploit code that would cause a system to stop functioning or become unreliable. If exploited, this [denial-of-service] vulnerability would not allow an attacker to take control of, or install malware on, the customer's system but could cause the affected system to stop responding until manually restarted," Dave Forstrom, group manager for public relations at Microsoft Trustworthy Computing, said in a statement. "It is important to note that the default firewall settings on Windows 7 will help block attempts to exploit this issue."
    Microsoft is not aware of attacks to exploit the hole at this time, he said.

    In an advisory, Microsoft criticized the way Gaffi? handled the discovery. "Microsoft is concerned that this new report of a vulnerability was not responsibly disclosed, potentially putting computer users at risk," the advisory said. "We continue to encourage responsible disclosure of vulnerabilities." The advisory suggests that customers block Transmission Control Protocol, or TCP, ports 139 and 445 at the firewall, as a workaround until a patch is ready."

    Source: Microsoft patching zero-day Windows 7 SMB hole
    Last edited by Hairbautt; 11-14-2009 at 03:37 PM. Reason: image replaced.

  2. News (Archive)   -   #2
    ShadowsServant's Avatar Tomato BT Rep: +16BT Rep +16BT Rep +16BT Rep +16
    Join Date
    Nov 2007
    Posts
    372
    Well, that doesn't sound too promising.

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •