Telstra has revealed the addition of almost one million new mobile services in the six months to December 2011, but Sensis revenues plummeted 24 percent in 12 months.
The latest security fixes from Microsoft all concern Windows, including the current flagships Vista and Server 2008. Some of the vulnerabilities allow 'drive-by' attacks and Microsoft is recommending prompt action.
As foreshadowed, Microsoft has released five security bulletins this month, all rated critical. All of the bulletins relate to Windows itself, and all allow remote code execution.
A JScript vulnerability affects Windows 2000, XP, Server 2003, Vista, and Server 2008 (including Server Core installations). An update for Windows 7 Release Candidate was also released, although Windows 7 RTM is not affected by any of this month's issues. Microsoft warns that it is likely that consistent exploit code will appear for the JScript issue.
An issue concerning the Wireless LAN AutoConfig service in Vista and Server 2008 (excluding Server Core installation) is difficult to exploit reliably, according to Microsoft officials. Nevertheless, it is rated critical on Vista and important on Server 2008.
A pair of vulnerabilities in Windows Media Format can be exploited though maliciously crafted media files. Consistent exploit code is expected for both issues, which are rated critical on all currently supported versions of Windows (including Server 2008 Server Core installations, but excluding Server 2008 for Itanium).
Multiple vulnerabilities in Windows' TCP/IP implementation are fixed this month. While remote code execution is possible, the flaws are difficult to exploit reliably and attacks are more likely to result in denial of service.
The affected versions are Windows 2000, Server 2003, Vista, and Server 2008. The severity is reduced to important on Windows 2000 and Server 2003.
The fifth bulletin concerns a vulnerability in the DHTML Editing Component ActiveX control, which can be exploited via a malicious web page. Inconsistent exploits are likely, according to Microsoft officials, and the issue is rated critical on Windows 2000 and XP, and moderate on Server 2003. Vista and Server 2008 are not affected.
Jerry Bryant of the Microsoft Security Response Center said "we are not addressing the IIS/FTP vulnerability announced in Security Advisory 975191 with this month’s security bulletin release. Our teams are still working on an update for this issue and we encourage customers to review the advisory for the most current guidance on this issue.
David Bass
| For the fourth year in a row, IDC has placed content security provider Websense (NASDAQ: WBSN) at the top of the IDC Worldwide Web Security 2011 –…
How to Make Business Discovery Work for Your Business
Business Discovery takes its cues from consumer apps. Like Google, it encourages us- ers to hunt for and explore data without worrying about or even noticing the underly- ing technology. Their entire experience is working within an intuitive interface to get real-time, self-service results with only minimal training. ...more
Try an easy-to-use set of web-enabled
tools for business-class productivity services. Office 365 provides
anywhere-access to email, important documents, contacts, and calendars
on almost any device.