General 8068 Published by Philipp Esselbach 0

Microsoft Security Bulletin MS00-031 announces the availability of a patch that eliminates two vulnerability in Microsoft:registered: Internet Information Server.

What´s the scope of the vulnerabilities?

There are two vulnerabilities here. The first, the "Undelimited .HTR Request" vulnerability, is a denial of service vulnerability that could be used to prevent an affected web server from providing useful service. The second, the "File Fragment Reading via .HTR" vulnerability could allow certain types of files to be read from the server under very unusual conditions.

Neither of these vulnerabilities would allow data to be changed, added or deleted on the server, nor would either allow administrative control over the machine to be usurped. If security recommendations have been followed, many customers will have disabled the functionality affected by the vulnerabilities; customers who have done this are not affected by the vulnerabilities.

Read more

General 8068 Published by Philipp Esselbach 0

Microsoft Security Bulletin MS00-030 announces the availability of a patch that eliminates a vulnerability in Microsoft:registered: Internet Information Server.

What´s the scope of the vulnerability?

This is a denial of service vulnerability. If a malicious user requested a file from a web server via an URL containing specially-malformed file extension data, the server could become unresponsive for some period of time.

There is no capability via this vulnerability to cause a server to fail, to cause any data to be lost, or to usurp administrative control of the machine. The vulnerability simply provides a way for a malicious attacker to consume most or all CPU availability. Given enough time, the server would resume normal operation on its own.

Read more

General 8068 Published by Philipp Esselbach 0

Microsoft is working on a patch that will prevent its Internet Explorer browser from inadvertently letting Web sites peer into any visitor´s cookie files.

Security enthusiasts Bennett Haselton and Jamie McCarthy demonstrated how a simple substitution in Web addresses (URLs) can foil IE´s security checks, exposing the cookie files that Web sites place on visitors´ computers. Cookies authenticate people´s identities when they return to Web sites and store data about visitors´ activities and purchases.

Read more

General 8068 Published by Philipp Esselbach 0

Tech Extreme has posted a article on the Single or Dual Processor debate. Here a clip:

General 8068 Published by Philipp Esselbach 0

The problems that have beset Intel with its i820 (Camino) chipset became compounded evermore today as the firm announced it was recalling motherboards with defective memory translator hub (MTH) parts.

Intel has put aside a sum believed to be in the order of hundreds of millions of dollars and is offering a "new lamps for old" replacement system which uses Rambus memory instead. It is also, apparently, offering to populate such boards with Rambus RIMMs, which is one way of fulfilling its contract with the memtech firm, we guess.

Read more

General 8068 Published by Philipp Esselbach 0

Philippines authorities are investigating a bank employee and his alleged live-in partner as well as 10 students of AMA Computer College (AMACC) for possibly spreading the devastating "I Love You" worm that caused billions of dollars in damage to computer systems worldwide.

The Department of Justice has already filed charges against Reomel Ramones, an employee of the Equitable Bank´s computer division, and his live-in partner Irene De Guzman. The couple were charged with violating Republic Act 8484 or the Access Devices Regulation Act of 1998.

Read more

General 8068 Published by Philipp Esselbach 0

In a corner of their booth at the Las Vegas Convention Center, Microsoft officials were offering a sneak peek at the future.

During his keynote speech earlier in the day, Microsoft chairman Bill Gates remained mum on any products under development. But that didn´t prevent his company from demonstrating an early version of its 64-bit version of Windows 2000 to a handful of interested attendees at the NetWorld+Interop show.

Read more

General 8068 Published by Philipp Esselbach 0

Coming off of a successful 1999 season as one of the fastest-growing PC game companies, Microsoft Corp. arrives at next week´s Electronic Entertainment Expo (E3) in Los Angeles with new versions of its popular PC games and innovative titles that have already received industry praise as sure-fire hits. From fall and holiday 2000 releases such as "Combat Flight Simulator 2", "MechWarrior 4" and "Links LS 2001" to next year´s lineup, which includes "Dungeon Siege" and "Freelancer," the company moves further toward its goal of becoming the worldwide games leader.

Read more