<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.msdn.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Jie Li's GeekWorld : Security</title><link>http://blogs.msdn.com/opal/archive/tags/Security/default.aspx</link><description>Tags: Security</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Important: Check MS08-067 and Apply the Update!</title><link>http://blogs.msdn.com/opal/archive/2008/10/24/important-check-ms08-067-and-apply-the-update.aspx</link><pubDate>Thu, 23 Oct 2008 21:47:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:9013507</guid><dc:creator>Jie Li</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.msdn.com/opal/comments/9013507.aspx</comments><wfw:commentRss>http://blogs.msdn.com/opal/commentrss.aspx?PostID=9013507</wfw:commentRss><description>&lt;P&gt;This vulnerability is marked as “Critical”, and nearly all windows product are affected.&lt;/P&gt;
&lt;P&gt;Although it was reported privately to Microsoft and no expolit code leaked now, it is always safer to take action immediately. If you don’t do that, later hackers and worms might be able to attack your machines through RPC service from Internet, and take full control of your machine. &lt;/P&gt;
&lt;P&gt;If automatic update is turned on, you will receive the update now. Apply it, make a restart.&lt;/P&gt;
&lt;P&gt;For IT Pros, you need to check this for details:&lt;/P&gt;
&lt;P&gt;&lt;A title=http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx" mce_href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx"&gt;http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;In case you need to download the files manually:&lt;/P&gt;
&lt;P&gt;
&lt;TABLE id=ENC class=dataTable cellSpacing=0 cellPadding=0 width="85%" class="dataTable"&gt;
&lt;THEAD&gt;
&lt;TR class=stdHeader vAlign=top&gt;
&lt;TD id=colEQC width="38%"&gt;Operating System&lt;/TD&gt;
&lt;TD id=colEUC width="21%"&gt;Maximum Security Impact&lt;/TD&gt;
&lt;TD id=colEYC width="19%"&gt;Aggregate Severity Rating&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid" id=colE3C width="21%"&gt;Bulletins Replaced by this Update&lt;/TD&gt;&lt;/TR&gt;&lt;/THEAD&gt;
&lt;TBODY&gt;
&lt;TR class=record vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=E22EB3AE-1295-4FE2-9775-6F43C5C2AED3"&gt;Microsoft Windows 2000 Service Pack 4&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://go.microsoft.com/fwlink/?LinkId=70299"&gt;MS06-040&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=evenRecord vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=0D5F9B6E-9265-44B9-A376-2067B73D6A03"&gt;Windows XP Service Pack 2&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://go.microsoft.com/fwlink/?LinkId=70299"&gt;MS06-040&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=record vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=0D5F9B6E-9265-44B9-A376-2067B73D6A03"&gt;Windows XP Service Pack 3&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=evenRecord vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=4C16A372-7BF8-4571-B982-DAC6B2992B25"&gt;Windows XP Professional x64 Edition&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://go.microsoft.com/fwlink/?LinkId=70299"&gt;MS06-040&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=record vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=4C16A372-7BF8-4571-B982-DAC6B2992B25"&gt;Windows XP Professional x64 Edition Service Pack 2&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=evenRecord vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=F26D395D-2459-4E40-8C92-3DE1C52C390D"&gt;Windows Server 2003 Service Pack 1&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://go.microsoft.com/fwlink/?LinkId=70299"&gt;MS06-040&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=record vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=F26D395D-2459-4E40-8C92-3DE1C52C390D"&gt;Windows Server 2003 Service Pack 2&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=evenRecord vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=C04D2AFB-F9D0-4E42-9E1F-4B944A2DE400"&gt;Windows Server 2003 x64 Edition&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://go.microsoft.com/fwlink/?LinkId=70299"&gt;MS06-040&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=record vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=C04D2AFB-F9D0-4E42-9E1F-4B944A2DE400"&gt;Windows Server 2003 x64 Edition Service Pack 2&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=evenRecord vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=AB590756-F11F-43C9-9DCC-A85A43077ACF"&gt;Windows Server 2003 with SP1 for Itanium-based Systems&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://go.microsoft.com/fwlink/?LinkId=70299"&gt;MS06-040&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=record vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=AB590756-F11F-43C9-9DCC-A85A43077ACF"&gt;Windows Server 2003 with SP2 for Itanium-based Systems&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Critical&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=evenRecord vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=18FDFF67-C723-42BD-AC5C-CAC7D8713B21"&gt;Windows Vista and Windows Vista Service Pack 1&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Important&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=record vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=A976999D-264F-4E6A-9BD6-3AD9D214A4BD"&gt;Windows Vista x64 Edition and Windows Vista x64 Edition Service Pack 1&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Important&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=evenRecord vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=25C17B07-1EFE-43D7-9B01-3DFDF1CE0BD7"&gt;Windows Server 2008 for 32-bit Systems&lt;/A&gt;*&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Important&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=record vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=7B12018E-0CC1-4136-A68C-BE4E1633C8DF"&gt;Windows Server 2008 for x64-based Systems&lt;/A&gt;*&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Important&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR class=evenRecord vAlign=top&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?familyid=2BCF89EF-6446-406C-9C53-222E0F0BAF7A"&gt;Windows Server 2008 for Itanium-based Systems&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Remote Code Execution&lt;/P&gt;&lt;/TD&gt;
&lt;TD&gt;
&lt;P class=lastInCell&gt;Important&lt;/P&gt;&lt;/TD&gt;
&lt;TD style="BORDER-RIGHT: #cccccc 1px solid"&gt;
&lt;P class=lastInCell&gt;None&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/P&gt;
&lt;P mce_keep="true"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Although this is only a security fix for the OS, as a SharePoint Developer/Administrator, you will always be responsibile for the security issues. So let’s prevent things from happen at the beginning.&lt;/P&gt;&lt;img src="http://blogs.msdn.com/aggbug.aspx?PostID=9013507" width="1" height="1"&gt;</description><category domain="http://blogs.msdn.com/opal/archive/tags/Hotfix/default.aspx">Hotfix</category><category domain="http://blogs.msdn.com/opal/archive/tags/Security/default.aspx">Security</category></item></channel></rss>