nCircle.com >> 360 Security

« Dirty Dozen? | Main | SCADAGard SIG To Be Established »

And so it starts...

Come one... Come all... to the Wonderful World of Dis... Patch Tuesday. The time again is on us and as Ross had previously mentioned, we're looking at 12 advisories. We just keep telling ourselves, “It could be worse.”

For those of you keeping count, the advisories start with MS06-021 and work their way up to MS06-032 and luckily, they come with a wide variety of choices.

We kick things off with a cumulative update for Internet Explorer… this is a regularly monthly occurrence and was to be expected… I’m sure, just like last month, tomorrow the mailing lists will see a flood of new vulns for IE, which will lead to another cumulative update in July.

Then we have a string of locals, or what the security community, for the most part, considers to be locals. Have you ever noticed that there are different opinions of what constitutes a local and a remote? If someone can trick you into visiting a malicious website, Microsoft considers that to be a remote. The security community in general seems to consider a remote to mean that a malicious person could run it against your computer without any interaction on your part… but that’s a discussion for another day… A quick rundown of the locals includes: ART Image Rendering, JScript, Windows Media Player, Word, Works Suite, PowerPoint, Outlook Web Access, and SMB.

There are also three remotes included in the Advisories… true remotes that require zero user interaction. They include vulns in Routing and Remote Access, TCP/IP, and RPC Mutual Authentication.

I’m going to be working with Routing and Remote Access today, so when time permits, I’ll be stopping in to let you know how that’s going and I’m sure others will join in to comment on the progress they’re making.

It’s going to be a long day and an even longer night… Even though I’m pulling an all-nighter, something I thought would end with college, I wouldn’t trade this job for anything. And on that note… back to the fun.

About

This page contains a single entry from the blog posted on June 13, 2006 12:10 PM.

The previous post in this blog was Dirty Dozen?.

The next post in this blog is SCADAGard SIG To Be Established.

Many more can be found on the main index page or by looking through the archives.