Home > Windows Security Tips > Patch Management Tips > MS06-040 review: 'Urgently critical' patch release
Windows Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

PATCH MANAGEMENT TIPS

MS06-040 review: 'Urgently critical' patch release


Tony Bradley, Contributor
08.16.2006
Rating: -4.17- (out of 5)


Advice for securing Windows
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


On the second Tuesday of each month, Microsoft releases its security bulletins and vulnerability patches for the month. Some months may have no new security bulletins or just a couple, but the month of August is not one of those.

What is different about this month is that one of them, Security Bulletin MS06-040, affects the Server Service and is capable of being exploited easily by a fast-spreading worm. Arguably, MS06-040 should have received an even higher designation, such as "Urgently Critical."
More information on security bulletin MS06-040

Mocbot update targets MS06-040 flaw

Microsoft fixes 23 flaws

The threat of a crippling worm attack was serious enough that even the Department of Homeland Security (DHS) took notice. The DHS issued a warning of its own recommending that all users expedite the application of the MS06-040 patch. As of Sunday, Aug. 13, there were already worm variants spreading in the wild that use an exploit of the MS06-040 vulnerability to propagate.

While users and companies scramble to apply the patch, there are some other mitigation steps that you can take as well, such as:

  • eEye Digital Security offers a free tool to scan for and identify vulnerable systems on your network (the eEye Web site may be difficult to get to due to the volume of users trying to download this tool).
  • Block ports 139 and 445 at the firewall to ensure that the worm is not able to spread to your internal network from the Internet.

While there isn't as much hype or urgency to the other patches, critical or otherwise, the majority of the critical patches, if exploited, could result in attackers being able to execute malicious code of their choice on the vulnerable machine. You may want to be more thorough in evaluating or testing these patches before rushing to deploy them, but you should still have a sense of urgency and work to expedite patch deployment as much as possible.

One patch has caused many companies problems. The Cumulative Security Update for Internet Explorer, related to Security Bulletin MS06-042, has been reported to cause the Internet Explorer Web browser to crash on Windows 2000 SP4 and Windows XP SP1 systems. (Editor's note: Microsoft has issued a fix for this glitch.) For more information about known issues with this patch, you can refer to Microsoft Knowledge Base Article 918899.

About the author: Tony Bradley is a consultant and writer with a focus on network security, antivirus and incident response. He is recognized by Microsoft as an MVP in Windows Security, and he is the About.com Guide for Internet / Network Security, providing a broad range of information security tips, advice, reviews and information. Tony is co-author of Hacker's Challenge 3 and author of the upcoming Essential Computer Security. He also contributes frequently to other industry publications. For a complete list of his freelance contributions you can visit S3KUR3.com.

Rate this Tip
To rate tips, you must be a member of SearchWindowsSecurity.com.
Register now to start rating these tips. Log in if you are already a member.


Submit a Tip




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


RELATED CONTENT
Patch Management Tips
Remote management for Windows system upgrades
How do I properly configure WSUS?
Have my Windows patches actually been installed?
Importance of managing unpatched third-party software
Critical September patch could hit Windows 2000 SP4 systems
What's hot in Microsoft security: Critical patches
Patch management; Windows Update for network security
Internet Explorer in Patch Tuesday limelight for August
One patch for Active Directory is a doozy
Microsoft delivers critical Vista patches in June

Product Flaws and Vulnerabilities
Exploit code targets unpatched PowerPoint flaw
Debunking the "Blue Pill" Vulnerability Theory
Anatomy of the Blue Pill attack
New Microsoft Word zero-day exploit discovered
An introduction to Google Hack Honeypots
Blocking peer-to-peer applications
Step 1: Blocking peer-to-peer applications
Step 3: Application-level filters
Step 2: Firewalls
Step 4: Software restriction with Group Policy

Post-Patch Problems
Microsoft releases April trove of patches
Have my Windows patches actually been installed?
Microsoft patch management policy
Microsoft patch maintenance and post-patch security
What's hot in Microsoft security: Critical patches
Patch Tuesday: An after-the-fact checklist
Attacks against MS06-040 on the rise
Handling patch emergencies
August patch management woes strike again
Unpatched Windows flaws affect Help Viewer
Post-Patch Problems Research

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.

HomeNewsTopicsITKnowledge ExchangeTipsAsk the ExpertsWebcastsWhite PapersIT DownloadsBlogs
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2004 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts