Microsoft's solo patch will allow IT administrators to get ready for 2009

By
Follow google news

Microsoft's decision to only issue one patch will allow IT administrators to get their 'housecleaning' in order for 2009.


Microsoft's decision to only issue one patch will allow IT administrators to get their ‘housecleaning' in order for 2009.

The company claimed that after a heavy load of patches in December, the one critical update addresses a vulnerability in Windows but this ‘comes as good news for IT administrators'.

The company said: “The light load also presents a good opportunity for IT administrators to get their ‘housecleaning' in order to kick off the 2009 security planning process.

“This means getting their vulnerability and patching program in place by ensuring all previous patches, both Microsoft and non-Microsoft, have been deployed across their environment using best practices and re-evaluating ways to maximise on their patching process moving forward.”

However it expressed surprise that an out-of-band patch for Microsoft Security Advisory (961040), which addresses a vulnerability in SQL Server, was not released.

It said: “The company has published a workaround, however, it seems they will not correct the fundamental, architectural vulnerability. For administrators who failed to patch MS08-67 for the RPC vulnerability that was reported back in October 2008, this is the best time to go back and patch the issue as security experts are starting to see new variants appearing in the wild. We're seeing more widespread use of the vulnerability today than we did back in October.”

See original article on scmagazineus.com

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Poor WA gov M365 security led to $71k theft and children's data breached

Poor WA gov M365 security led to $71k theft and children's data breached

US medical device maker Stryker's Microsoft environment attacked

US medical device maker Stryker's Microsoft environment attacked

CBA chief impersonated in global investment fraud on Facebook

CBA chief impersonated in global investment fraud on Facebook

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Log In

  |  Forgot your password?