CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
spacer spacer
image Patches/SP's: Microsoft fixing another faulty patch (MS03-029) image
Microsoft
Microsoft fixing another faulty patch
By Paul Roberts, IDG News Service

JULY 30, 2003

Microsoft Corp. acknowledged yesterday that a recent security patch is causing problems on machines running the Windows NT 4.0 operating system.
The patch, released July 23 and described in Microsoft Security Bulletin MS03-029, causes the Routing and Remote Access Service (RRAS) on NT 4.0 machines to fail, Microsoft said.

MS03-029 patches a vulnerability in Windows NT 4.0 Server's file management function that could make machines running NT 4.0 vulnerable to denial-of-service attacks, Microsoft said.

Microsoft customers described a variety of problems immediately after downloading and installing the patch on vulnerable systems, including error messages and problems trying to log onto affected systems. RRAS allows remote users to securely connect to NT 4.0 systems over dial-up or broadband Internet connections.

More than 30 NT 4.0 users reported problems after applying the patch; reports of the problem surfaced on July 25, according to Russ Cooper, editor of the NTBugtraq mailing list.

Initially silent, Microsoft updated its Security Bulletin yesterday and sent out an e-mail message confirming that the patch was flawed. Microsoft is investigating the problem and will issue a fix to correct it soon, the company said.

A loosely tested hot fix is available for companies that need an immediate fix for the problem, Microsoft said. The company also noted that the patch is effective in guarding NT 4.0 systems against denial-of-service attacks, as intended.

Customers not using RRAS will encounter error messages after applying the patch, but other NT 4.0 functionality won't be affected, Microsoft said.

Although at least one affected NT 4.0 user encountered problems uninstalling MS03-029, most were able to restore RRAS service without problems, Cooper said.

The incident is the latest example of a security patch gone awry. In April, Microsoft was forced to acknowledge and fix a problem with a patch for Windows XP that caused slowdowns on systems that applied the patch.

http://www.computerworld.com/securitytopics/security/holes/story/0,10801,83584,00.html
Posted on Thursday, 31 July 2003 @ 07:00:00 UTC by phoenix22 (1593 reads)
[ Trackback ]
image

"Patches/SP's: Microsoft fixing another faulty patch (MS03-029)" | Login/Create an Account | 0 comments
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register
 
Login
spacer
Nickname

Password

Security Code: Type Security Code: Usage signifies AUP acceptance
· New User? · Click here to create a registered account.
block bottom
Related Links
spacer
· del.icio.us!
· digg it!
· reddit!
· TrackBack (0)
· Microsoft
· Microsoft
· HotScripts
· W3 Consortium
· Google Microsoft Search
· Microsoft
· Technet Online
· HotFix & Security Bulletins
· More about Microsoft
· News by phoenix22


Most read story about Microsoft:
Microsoft Security Bulletin MS06-001: Official WMF Patch

block bottom
Article Rating
spacer
Average Score: 0
Votes: 0

Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


block bottom
Options
spacer

Printer Friendly Page  Printer Friendly Page

block bottom
spacer spacer