also @ TechSpot: AMD Radeon HD 7770 & Radeon HD 7750 Review
Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Sign up or Login to participate.

Go Back   TechSpot OpenBoards > TechSpot Community > General Discussion

Collaborate in the cloud with Office, Exchange, SharePoint, and Lync

Why Microsoft left Windows 7 unpatched on Patch Tuesday

Thread Tools Search this Thread
  #1  
Old 01-14-2009
TechSpot Enthusiast
 
Member since: Dec 2008, 154 posts
Why Microsoft left Windows 7 unpatched on Patch Tuesday

Microsoft started 2009 by fixing just one security flaw in its software; this month's Patch Tuesday only had a single security bulletin, MS09-001.

The security update kills three birds with one stone: two privately reported vulnerabilities and one publicly disclosed vulnerability. This is possible since all three problems, which could allow remote code execution and give an attacker full user rights, are found in the Microsoft Server Message Block (SMB) Protocol.

While Microsoft issued the patch for Windows 2000, Windows XP (x86 and x64), Windows Server 2003 (x86 and x64), Windows Vista (x86 and x64), and Windows Server 2008 (x86 and x64), the company left Windows 7 out of the party. Microsoft gave the following explanation for this decision:

"We know that there might be some questions about the beta version of Windows 7 and today's bulletin. Windows 7 is affected only by the SMB Validation Denial of Service Vulnerability (CVE-2008-4114) and, like Windows Vista and Windows Server 2008, would be rated as Moderate because the vulnerability would require authentication for any attack to succeed. We provide security updates for beta versions of Windows through Windows Update for Critical issues only. So the SMB Validation Denial of Service Vulnerability (CVE-2008-4114) will be addressed in the next public release for Windows 7."

Full Story: http://arstechnica.com/journals/micr...-patch-tuesday
Closed Thread

Similar Topics
Topic Replies Forum
Patch Tuesday to plug 26 holes in Windows and Office 0 TechSpot News and Comments
Microsoft to address five critical vulnerabilities on Patch Tuesday 10 TechSpot News and Comments
Microsoft readies five critical fixes for Patch Tuesday 0 TechSpot News and Comments
Microsoft readies 10 updates for Patch Tuesday 0 TechSpot News and Comments
IE7 Can't open websites after Patch Tuesday 3 Windows OS

Thread Tools Search this Thread
Search this Thread:

Advanced Search
All times are GMT -4. The time now is 05:03 PM.