Ramblings of an old Doc

A really HUGE Update is coming on Tuesday!

17  patches are coming: 8 rated “Critical” and 9 rated “Important” with fixes for 64 documented vulnerabilities across Microsoft Windows, Microsoft Office, Internet Explorer, Visual Studio, .NET Framework and GDI+.

From Pete Voss’s Technet Blog:

 

“This month we'll be closing some issues that Microsoft has already previously spoken to, including the SMB Browser (Critical) issue publicly disclosed Feb. 15. Microsoft assessed the situation and reported that although the vulnerability could theoretically allow Remote Code Execution, that was extremely unlikely.  To this day, we have seen no evidence of attacks.

We are also planning a fix for the MHTML vulnerability in Windows, rated Important. We alerted people to this issue with Security Advisory 2501696 (including a Fix-It that fully protected customers once downloaded) back in late January. In March, we updated the advisory to let people know we were aware of limited, targeted attacks.

The bulletin release scheduled for the second Tuesday of the month, April 12, at approximately 10 a.m. PDT.”

Voss didn’t address the vulnerabilities discovered in the “Pwn2Own” contest.

People, please get the updates and patches. Also, please update your Programs: Stardock’s, and others…. This is an important key to your security, and a fast, reliable computer.


Comments (Page 3)
6 Pages1 2 3 4 5  Last
on Apr 10, 2011

What is GDI+?

One of the many graphics libraries on Windows. One that has more features and is easier to use than the basic GDI (Graphics Device Interface) but is not hardware accelerated like DirectX.

on Apr 10, 2011

DrJBHL
And WGA is undesirable because?

Because I know I have a legit copy that came with my brand new machine and I don't need the system calling home to verify this every other month. I value my privacy. Besides Windows calling home eats up resources.

on Apr 10, 2011

meh.

on Apr 10, 2011

kona0197
Quoting DrJBHL, reply 30And WGA is undesirable because?

Because I know I have a legit copy that came with my brand new machine and I don't need the system calling home to verify this every other month. I value my privacy. Besides Windows calling home eats up resources.

 

what?!?

Allowing windows to "phone home" now and then eats up resources?   The last time I needed to be concerned about "resources" I was running a 386 with 16MB RAM and had to decide which proggy would get to use what ram (high/low).   Besides, there are benefits to running WGA like having access to their FREE antimalware suite which is actually quite good and getting additional software support that isn't deemed "critical".

What privacy?  You browse the internet right?  You're on this forum......in this thread......google analytics is SPYING on you right now!  hehe 

 

As Doc already so aptly put it!    meh

on Apr 10, 2011

I didn't want to say anything. Him did. ^^^^^^^

on Apr 10, 2011

Well,I knew some people got problems(reached a porn search) with the link posted from me to Secunia website.I can assure everyone I don't know anything about this.The link is not clickable for me,just copy/paste,and it goes to Secunia website(I checked several times).

However,I made some variations.

If the problem is still there I'll remove the post.

@ the_Monk - That could be right,I have got autocomplet add-on installed.But,in any case,no way at all for me to get a porn search!!

@Uvah- For what exactly PSI says you need a security patch? PS7 is the prog,but the patch can be needed,for example,for a plugin.Secunia PSI allows you to make a very detailed research about the problem.Always as example,around every month 1 version of Adobe Flash Player needs a patch(Insecure;contains vulnerability),until the updated version,that fix the problem,is released.

If something results end-of-life,please,check the element carefully;click on it in the scan result tab,go to the folder and open it.Although every software can make some mistakes,Secunia is not an antivirus,and it doesn't detect "false positive".

One more thing: did you enabled the Secure Browsing option? 

on Apr 10, 2011

There's a secure browsing option? In PSI or the browser? I use the one in FF4.

two things. One: I have an update for PS7, Its 7.01. When I tried to install it it says it cannot find Photoshop 7 in programs (x86) yet it is there and PSI found it with no problem. Two: I clicked on install solution and it very quickly took me to the download page for CS5. I do not have $1,000.00 US for CS5.

Its recommendation. Uninstall PS7. Not happening. False positive or no.

on Apr 10, 2011

Wait a minute. I just went through all the programs that PSI says are patched and up to date. One of them is XNview. I uninstalled XNview two weeks ago and put IrFanview in its place.

on Apr 10, 2011

Wait a minute. I just went through all the programs that PSI says are patched and up to date. One of them is XNview. I uninstalled XNview two weeks ago and put IrFanview in its place.

It must have left some data in the registry after the uninstall or something like that.

on Apr 10, 2011

Open PSI;in the main page,on the left,there is the section Configuration.Click on it,then Settings;check the box Enable "Secure Browsing" Page.

Next time  PSI will scan your PC you will get an additional page,Secure Browsing,that shows you the real time situaion of your browsers(loaded progs,plugins)and their security status as well. 

on Apr 10, 2011

Gwenio1

Quoting Uvah, reply 38Wait a minute. I just went through all the programs that PSI says are patched and up to date. One of them is XNview. I uninstalled XNview two weeks ago and put IrFanview in its place.

It must have left some data in the registry after the uninstall or something like that.

Don't see how as I used Revo to uninstall it. It searches the registry for left over files. Those I deleted. Could be a folder i left behind in programs x86. Seen that happen before.

@inthebloodofeden ... doing that right now. thanks.

All done. PSI says Fire Fox is secure. PSI also says IE8 is not secure. It also says there is no vendor solution.

on Apr 10, 2011

inthebloodofeden: Your space bar is getting jealous of the other keys...

on Apr 10, 2011

Oops .... no more unexpected excursions please.

on Apr 10, 2011

@Uvah-About XNView detection:you installed PSI just now,so there was no progs monitoring from the application.XNview detected elements could be in a "old" folder,as you said;however,if the result is patched no problem.Sometimes,if progs monitoring is not enabled in PSI,it could be possible you need some time(2 weeks,20 days..)before an unistalled prog is not detected anymore or a new one is.Anyway,if the detection is Patched,no problem.

This for progs,not for browsers.

In the scan result tab you can see everything OK.but you need to go to Secure Browsing Page to see the real situation about browsers.

I know IE8 is not safe,perhaps there will be a patch from Microsoft,maybe not.Now they released IE9...

@DrJBHL-I understood,Doc.I'll take care.

on Apr 10, 2011

Taht was entertaining....

The quickest solution is just to correct the link in the original post.....[dun that]....

6 Pages1 2 3 4 5  Last