« 因特网执照 | Main | Symantec 推出安全设备些列 »

MS03-039

出差回来,各大安全站点都在拿微软新的RPC漏洞说事,真无聊:

绿盟:Windows RPC DCOM 接口多个堆缓冲区溢出漏洞
天天:专家称Windows新漏洞可引发新一轮网络攻击
ISC:Microsoft Windows RPCSS Vulnerability Update
CERT® Advisory CA-2003-23 RPCSS Vulnerabilities in Microsoft Windows
...

还是这条新闻有意思一点:天天:Windows系统频遭攻击 美国用户考虑起诉微软(原消息由新浪译自华盛顿邮报)。Windows 用户是该讨个说法了。前一段时间看到的一个笑话,说近期要切换到Windows系统,好向微软取得赔偿。

笑话归笑话,这一次的漏洞还是得认真对待,赶快打补丁。还有就是grc.com提供了一个测试和禁止DCOM RPC的工具:DCOMbobulator

Comments (2)

针对该漏洞的代码由红客联盟首次发布:http://www.cnhonker.com/index.php?module=releases&act=view&type=3&id=45

Anonymous:

Please check some helpful info about...

Post a comment

About

This page contains a single entry from the blog posted on September 14, 2003 8:41 PM.

The previous post in this blog was 因特网执照.

The next post in this blog is Symantec 推出安全设备些列.

Many more can be found on the main index page or by looking through the archives.

Creative Commons License
This weblog is licensed under a Creative Commons License.
Powered by
Movable Type 3.31