Re: updates...do they or don't they?

From: Miha Pihler [MVP] (mihap-news_at_atlantis.si)
Date: 11/20/05


Date: Sun, 20 Nov 2005 09:40:11 +0100

Hi,

I am not familiar with TM software. Personally I would trust Microsoft and
Windows Update.

Since these problems only arise after you install TM software -- you might
want to ask their technical support for an explanation.

You might also want to download MBSA and scan your computer with it.

Microsoft Baseline Security Analyzer (MBSA)
http://www.microsoft.com/technet/security/tools/mbsahome.mspx

-- 
Mike
Microsoft MVP - Windows Security
"Manfred" <Manfred@discussions.microsoft.com> wrote in message 
news:438AC843-64F4-47D1-A3C9-5E41C9A3A12B@microsoft.com...
> Without Trend Micro PC-cillian 2006... microsoft update says I'm up to
> date,with this program it says I have a security vunerablity 05-009, if I
> then go to get the patch I get two additional vunerablities.
>
> So the questions becomes who do you trust microsoft update or trend-micro
> upate?
> (I would also add that  my mouse pointer has a small cd image on it once 
> in
> a while as if I'm using the cd drive, which is that problem 05-009)
>
> "Miha Pihler [MVP]" wrote:
>
>> Hi,
>>
>> I am not sure what you question is here...
>>
>> If you would like to know what patches you are missing go to
>> http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us 
>> where
>> you can scan your computer and patch it if necessary.
>>
>> -- 
>> Mike
>> Microsoft MVP - Windows Security
>>
>> "Manfred" <Manfred@discussions.microsoft.com> wrote in message
>> news:56D0C717-5676-4F04-907F-988B00F33B33@microsoft.com...
>> >I recently updated to trend-micro pc-cillian Internet security 2006 from
>> > 2005. After a year of 2005 security,regularily updating windows with
>> > automatic update, religiously keeping,4 antispyware and adware prog. up 
>> > to
>> > date,unpluging my machine when not in use,cleaning my browsers with a
>> > privacy
>> > prog......etc I get  ms05-009 vuneralbility in the png processing could
>> > allow
>> > remote control execution.
>> >
>> > When I tried to get the patch manually I ended up with two more
>> > vuneralbilities one with the print spooler. I restored to an earlier 
>> > date
>> > and
>> > removed 2006 trend for now
>> >
>> > I use windows xp sp2, what gives ? ???????previously I've written here 
>> > on
>> > windows patches and apologized when I learnt that microsoft 
>> > automatically
>> > applies patches through windows automatic update.
>>
>>
>> 


Relevant Pages

  • SecurityFocus Microsoft Newsletter #242
    ... MICROSOFT VULNERABILITY SUMMARY ... PostNuke Blocks Module Directory Traversal Vulnerability ... Groove Networks Groove Virtual Office COM Object Security By... ... The Microsoft Windows IPV6 TCP/IP stack is prone to a "loopback" condition initiated by sending a TCP packet with the "SYN" flag set and the source address and port spoofed to equal the destination source and port. ...
    (Focus-Microsoft)
  • [NT] Vulnerability in HTML Help Allows Code Execution (MS05-001)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... * Microsoft Windows XP Service Pack 1 and Microsoft Windows XP Service ...
    (Securiteam)
  • SecurityFocus Microsoft Newsletter #176
    ... MICROSOFT VULNERABILITY SUMMARY ... Microsoft Windows XP HCP URI Handler Arbitrary Command Execu... ... PHPNuke Category Parameter SQL Injection Vulnerability ... Microsoft Baseline Security Analyzer Vulnerability Identific... ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #49
    ... Subject: SecurityFocus Microsoft Newsletter #49 ... Microsoft Windows NNTP Denial of Service Vulnerability ... Microsoft IIS SSI Buffer Overrun Privelege Elevation Vulnerability ... Microsoft ISA Server H.323 Memory Leak Denial of Service... ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #153
    ... MICROSOFT VULNERABILITY SUMMARY ... ZoneAlarm Random UDP Flood Denial Of Service Vulnerability ... FloosieTek FTGatePro Mail Server Path Disclosure Vulnerabili... ... Microsoft Windows NetBIOS Name Service Reply Information Lea... ...
    (Focus-Microsoft)