
Over the weekend, security firms saw a spike in sweeps trying to exploit this vulnerability. This may have been a reconnaissance mission. If that’s the case, we could be seeing a much bigger virus presented in the near future. The MS06-040 vulnerability is an issue with the server service in Windows. Microsoft has received information that this vulnerability is currently being exploited. As such, you would do well to understand what the server service does and which systems are affected.
…
“The Server service provides RPC support, file print support and named pipe sharing over the network. The Server service allows the sharing of your local resources (such as disks and printers) so that other users on the network can access them. It also allows named pipe communication between applications running on other computers and your computer, which is used for RPC.”
In other words, this is a very serious threat. It seems that the following systems are affected, but especially Windows 2000:
| • | Microsoft Windows 2000 Service Pack 4 — Download the update |
| • | Microsoft Windows XP Service Pack 1 and Microsoft Windows XP Service Pack 2 — Download the update |
| • | Microsoft Windows XP Professional x64 Edition — Download the update |
| • | Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1 — Download the update |
| • | Microsoft Windows Server 2003 for Itanium-based Systems and Microsoft Windows Server 2003 with SP1 for Itanium-based Systems — Download the update |
| • | Microsoft Windows Server 2003 x64 Edition — Download the update |
[tags]MS06-040, server service exploit, server service vulnerability[/tags]
If you would like to make a comment, please fill out the form below.
Recent Comments