Surprise! More Flaws in WindowsAssociated Press04:35 PM Sep. 10, 2003 PTWASHINGTON -- Moments before a top Microsoft executive told Congress about efforts to improve security, the company warned on Wednesday of new flaws that leave its flagship Windows software vulnerable to Internet attacks similar to the Blaster virus that infected hundreds of millions of computers last month.
Microsoft urged customers to immediately apply a free repairing patch from its website, www.microsoft.com.
(snip)
"We definitely want people to apply this one," said Jeff Jones, Microsoft's senior director for trustworthy computing. Outside researchers and Microsoft's own internal reviews discovered the new flaws after the Blaster infection, he said.
Outside experts said some flaws were nearly identical to problems exploited by the Blaster worm, which spread last month with devastating damage.
Computer users who applied an earlier patch in July to protect themselves still must install the new patch from Microsoft.
"They're as close as you can be without being the same," said Marc Maiffret, an executive at eEye Digital Security of Aliso Viejo, California, one of three research groups credited with discovering some of the new problems. "It's definitely a big oversight on Microsoft's part that they missed these."
(much more at link)
http://www.wired.com/news/technology/0,1282,60393,00.htmlI propose we rename Microsoft Corporation to 'Central Services'... :eyes: