also @ TechSpot: Mozilla brings near-native application performance to the web with asm.js

Microsoft to release four critical patches next Tuesday

By

On September 5, 2008, 3:42 AM

Microsoft has just posted their advance notification for next week’s Patch Tuesday, which will include four critical fixes that deal with remote code execution exploits in several software packages. Among the affected software is Windows Media Player 11, Windows Media Encoder, Microsoft Office and various components and versions of the Windows operating system.

Starting next month, the software giant will make a major shift in its security strategy. The company plans to unveil a new exploitability index to rank vulnerabilities based on the likelihood of someone developing working exploit code for them in order to help system administrators prioritize the patches. In addition, Microsoft plans to share detailed vulnerability information with security vendors before the public announcement so as to enable them to develop signatures and filters prior to Patch Tuesday.

No tags on this story

User Comments: 3

Got something to say? Post a comment
  1. thanks for the update but can we have the same kind of updates for all operating systems? That would be more helpful.
  2. For ALL operating systems? Actually, we usually report on Linux kernel updates and major distro revisions, also a bit on OS X updates when it's worth saying something, since Apple tends not to disclose much details on the patches they apply to their systems in general.
  3. I'm a little concerned at how well this "new exploitability index" will work. I mean, doesn't the MalWare community typically reverse engineer the patch to learn what flaw it's fixing? And then don't they attempt to exploit that flaw as quickly as possible before it's closed on all systems? I suppose Internet facing products would be more easier to exploit than MS Word, which largely sits off the network for example. So certain products would natually be given a lower score. But as an administrator, I thought that the game was to test and patch as quickly as possible.

Recently commented stories

Post a new comment

Social Login & Guest Posting TechSpot Members
Login here or sign up for free,
it takes about a minute.
Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.
TechSpot on:

Subscribe to TechSpot

Get free exclusive content, learn about new features and breaking tech news.