main

Microsoft warns of 22 new security flaws

malebolgia   on 12 October 2004 - 22:53 · 49 comments & 4744 views

Advertisement (Why?)
Microsoft on Tuesday published 10 software security advisories, warning Windows users and corporate administrators of 22 new flaws that affect the company's products.

The advisories, and patches published with the bulletins, range from an "important" flaw affecting only Microsoft Windows NT Server to a collection of eight security holes, including three rated "critical," that leave Internet Explorer open to attack. Microsoft's highest severity rating for software flaws is its "critical" ranking, while "important" is considered slightly less severe.

One flaw, in Microsoft Excel, even affects Apple Computer's Mac OS X. The abundance of flaws could leave corporate PCs vulnerable to attack if administrators are not able to patch quickly. A similar situation occurred in April, when Microsoft published seven advisories detailing 20 flaws. While one security hole stood out among those 20--and led to the widespread Sasser worm--there are no standouts in the current gaggle of goofs.

News source: C|Net News.com


Dice says: Do you think this game should be bannned? Or should we embrace the humurous content in a joking way or take it personally? Is this decision ment to keep kids away from our sex filled world? Or are we just being paranoid.

Post a comment · Send to friend Comments · There are 49 additional comments
(6 replies) #1 HellBender on 12 Oct 2004 - 22:56
*snipped* - spam.

Last edited by 52 on 13 Oct 2004 - 09:08
#1.1 excalpius on 12 Oct 2004 - 23:19
...and learn to be an inconsiderate shouting flame-baiter with SHIFT key dyslexia!
#1.2 moeburn on 12 Oct 2004 - 23:27
Its a facetious joke. You know, laugh laugh?
#1.3 GamblerFEXonlin on 12 Oct 2004 - 23:28
well with Linux I hear you usually don't have to reboot when patching, it just unloades any components in use.

with PC and software anything is possible - even keeping your Windows settings away from the registry on D: so you can reformat c: every time Windows get qeasy eh
#1.4 snake-eyes on 13 Oct 2004 - 02:42
If you're going to try to be cute and get attention by posting a flamebait for the first comment in a thread...at least try to spell 'Linux' right. Is it really that hard of a word?
#1.5 NyaR on 13 Oct 2004 - 03:27
no its right cos jeffk calls it lunix

but seriously though.. i think linux was originaly marketed as lunix
#1.6 dcook32p on 13 Oct 2004 - 12:43
Lunix is actually a POSIX-like operating system for the Commodore 64, if memory serves correctly.

Linux has always been Linux, thank you Linus Torvalds.
#2 M2Ys4U on 12 Oct 2004 - 23:00
*sigh*
#3 YKW on 12 Oct 2004 - 23:07
Already installed the IE patch. The auto update was faster than me this time: it notified me of the update before I heard about it on the net. Gotta love SP 2.
#4 webdenis12 on 12 Oct 2004 - 23:16
I guess thsi is BIG NEWS from microsoft that everybody talked about it
#5 IceDogg on 12 Oct 2004 - 23:50
Did anyone notice the date by this story is wrong??
(3 replies) #6 greatestfall on 12 Oct 2004 - 23:59
*insert apple or linux fan-boy propoganda here*

it's microsoft, seriously, should we expect anything different from them?
#6.1 STV on 13 Oct 2004 - 05:58
uh, hello. this means that they are working to find more bugs. the more bugs they find, the better off Windows will be. i hope this makes sense to you.

STV
#6.2 markjensen on 13 Oct 2004 - 11:26
Ummm... A question: Are more bug reports good or bad?

People seem to use reports such as this to say "Microsoft is FIXING bugs - it is a good thing", then point to Open Source bug fixes and say "Open Source has bugs, too! - and it's a bad thing".
#6.3 STV on 13 Oct 2004 - 14:05
actually mark, the reason that this said is because the linux community, in general, states that linux has less bugs than windows. so, to them less bugs is good, for them. however, on the other side, microsoft finds all of these bugs, and I see it as a good thing because it means that they are working harder to fix as many bugs as they can. i think that it is only said that way (the way you said it) because the open source people state that their software dont have bugs, which it obviously contains.

bug reports are good, but if one side is going to claim that they dont dont have any, and then a bug pops up, then it is bad. when has microsoft ever said that its software is bug free? is it just me or have all the recent patches been security patches rather than ones that improve stability? rights now, the main problem is security, but even then, if you know what you are doing, you can make a windows computer secure.

STV
(5 replies) #7 cork1958 on 13 Oct 2004 - 01:23
How many updates does this make since SP2 came out already?
#7.1 NyaR on 13 Oct 2004 - 03:30
would you rather it was 0?
#7.2 Hawkeye on 13 Oct 2004 - 05:39
QUOTE
How many updates does this make since SP2 came out already?

Well, let's see. Counting this one, there have been two critical updates for Windows XP since Windows XP SP2 came out. You make it sound like there have been a few dozen. I think two critical updates (the others aren't critical and are actually not all that necessary) in over a two month span is actually not bad.
#7.3 SaLiVa on 13 Oct 2004 - 13:01
Still its the fact that its critical that counts.
Though I do agree with the updating part, its become more of a chore than an experience for WinXP.
#7.4 diamonds on 13 Oct 2004 - 16:13
if you dont like it, switch to linux, a *bsd, or solaris. Or then again, just turn it off, start using a pen and paper, and go outside sometimes.
#7.5 SaLiVa on 14 Oct 2004 - 05:55
Yeah, hoping to gain some experience with Linux and using it as a file server in my older computer. You dont have to turn it off completely, you just need to reach to your modem's telephone socket and remove it.
(1 reply) #8 buzz99 on 13 Oct 2004 - 01:30
You guys always complaining about Windows...If you can't stand that, use another os. There are others you know...
#8.1 markjensen on 13 Oct 2004 - 11:28
Agreed.

I feel that it should be "put up, or SHUT up" in regards to this, but I guess that there are a lot of people who like to whine.

On the other hand, these Windows users have paid a good sum of money for their products (Win 98 + Upgrade XP, plus the different Office, etc. applications). They do have a right to complain about legitimate issues.
#9 oqwarrior on 13 Oct 2004 - 03:09
Real comforting...
#10 greg098 on 13 Oct 2004 - 04:09
that is very bad...but in true sense, your computer is never safe.......at this rate, i believe the internet is going to eventually crash and everything will be lost cuase viruses are getting smarter and wrecking more..look at how much badness the sasser and msblast virus caused!
(1 reply) #11 StaticX on 13 Oct 2004 - 04:23
what else is ****ing new
#11.1 STV on 13 Oct 2004 - 11:34
I would rather have microsoft find the vulnerabilities and patch them, than have some other organization or person find them. wouldnt you?

STV
(2 replies) #12 Randall_Lind on 13 Oct 2004 - 04:49
I got to say Autoupdate is now working I came home from a friend house and it was waiting to install something.

I was shocked. 22 secuirty holes about time Microsoft started a secuirty department that actually took secuirty for real. 22 is not funny it is pretty freaking sad for a company that delays products left and right due to secuirty issues and still let 22 secuirty holes leak out.

#12.1 STV on 13 Oct 2004 - 06:00
but they found them, and now they are patching it. is there something wrong with this. would you like this situation better if they didnt patch it?

you make it seem like nothing has been done about security and that microsoft doesnt take it seriously. if i recall correctly, the main features of SP2 were added security and the new Tablet PC 2005 addition to the current Tablet PC 2002 OS.

STV
#12.2 Hekx on 13 Oct 2004 - 15:15
The auto update even made me look rusty from manual checks.
(5 replies) #13 WindowsNT on 13 Oct 2004 - 07:13
As usual the Microsoft bashers have to whine like cry babies.

First you lot whine they tthere is no security in there software and now when they make every effort to make there software secure you whine again. If you think it's 'cool' to bash Microsoft then you so sad and need to get a life.

geeeezz some ppl
#13.1 Jon on 13 Oct 2004 - 08:28
Neowins journalism is supposed to be unprofessional, not it's readership. Now we've got some smart ppl posting news (even though Derek has some 'issues'!), and a readership of complete idiots. It's really off putting. I no longer recommend neowin news stories to co-workers as the following comments are so embarasingly retarded.
#13.2 configure on 13 Oct 2004 - 09:24
I hope that as we continue to grow and improve ourselves, we will be able to convince people with such perception otherwised.

One thing that I hope our readers will understand is that it is extremely difficult to control the behavior people's comments. The only thing that we can really do is just to remove anything that were deemed useless. Sometime things were overlooked and I'm sure that we would be very appreciated if people reports what doesn't belong
#13.3 Jon on 13 Oct 2004 - 09:48
I guess as you grow so do the problems, but Neowin has a good solid leadership. I (we) appreciate it when the staff make the effort to reply to comments like that.

Anyway, this is off topic and we should all be busy patching!
#13.4 WindowsNT on 13 Oct 2004 - 12:13
I fully understand your view being an IT Tech my self. I'm not usually that annoyed with fellow users but i do get annoyed with posts that are more or less the same anti-ms junk that happens when there is a patch for a scurity flaw.

I install the security patches more or less the same day the come out.

next time i'll keep shut up, ok?
#13.5 Jon on 13 Oct 2004 - 13:00
Sorry WindowsNT I wasn't even remotely getting at you, but agreeing with you
Sometimes I'm crap at getting my point across!
(2 replies) #14 mattking on 13 Oct 2004 - 08:01
What I love is that nearly all of the updates do not affect SP2 so there is no need to download them, shows SP2 is really improved.
#14.1 Prelude76 on 13 Oct 2004 - 12:40


wait another week or two, then open mouth, and insert foot

all SP2 did was roll in old patches and turn on firewall for all the n00bs

i'm sure the SP2-affect 'critical updates' will start rolling in soon enough.
#14.2 Randall_Lind on 13 Oct 2004 - 12:45
Beside the fire wall it made it a bitch to use IE now got warrnings on everything.
#15 Sporkguy on 13 Oct 2004 - 11:44
Great, got to fire up that infernal IE to update windows ¬_¬
#16 greg098 on 13 Oct 2004 - 12:12
god people are bitching tonight lol
#17 Prelude76 on 13 Oct 2004 - 12:28
Can I get another bandaid to put on my bandaid that on top of another bandaid thats on top of a big gauze pad thats wrapped over my original bandaid? i still got blood oozing out the sides.
(1 reply) #18 Zirus1701 on 13 Oct 2004 - 13:15
I think they need to work harder to get the patches out the door. 22 security flaws is insane. They should not ever let it pile up like this. I WANT PATCHES!!!!
#18.1 Prelude76 on 13 Oct 2004 - 13:55
they let it pile up while they were busy with XP SP2. i bet all these patches were incorporated into SP2, and then got SP2 rolling for a few weeks before releasing these patches for other window versions. that would explain why there are 22 all at once, and why most of them dont affect SP2.
#19 chuayw2000 on 13 Oct 2004 - 14:03
Wow. This is pretty scary when i read it.

And to think i Just installed SP2 not very long ago
#20 Hekx on 13 Oct 2004 - 15:13
"One flaw, in Microsoft Excel, even affects Apple Computer's Mac OS X."

*Eye twitches*
(1 reply) #21 cloakanddagger on 13 Oct 2004 - 18:03
STV, get off Microsoft's dick. Stop rebutting every little thing that people say that puts Microsoft in a bad light.
#21.1 STV on 13 Oct 2004 - 20:00
why are you being like that? why do you have to resort to personal attacks? why do you have to be so mean? what have I done to you? you olont have to be so vulgar and childish.

instead of being an ass, why dont you say something constructive.
in case you didn't know, I have the right, as a human being, to voice my opinions. I don't think that my opinions are hurting anyone.

now please be more reserved and polite when choosing your words. please calm down.

STV
#22 Raa on 15 Oct 2004 - 07:07
Wow..... So glad I dont have XP or Office installed =)

Commenting has either been disabled on this article or you are not logged in. Click here to login or register, its free!

Note: Anonymous commenting is disabled in order to keep the quality of responses to a high standard.

Advertisement (Why?)