| By Security News Desk | Article Rating: |
|
| January 3, 2006 06:45 AM EST | Reads: |
14,738 |
The Finnish-based antivirus company F-Secure is recommending that systems administrators block access to all WMF files at HTTP proxy and SMTP level, as the Windows Metafile (WMF) vulnerability reported on Monday is confirmed as still applying to all the main versions of Windows: Windows ME, Windows 2000, Windows XP and Windows 2003. As of yesterday there had still been no patch issues by Microsoft.
The vulnerability was first reported on December 27, says F-Secure, at which time Trojan downloaders were seen to be actively exploiting the vulnerability with fully patched Windows XP SP2 machines. At its "Windows Zero-Day Vulnerability Center," F-Secure reports as follows:
"So far WMF exploits have been typically used to install spyware and adware although the threat of virus and worm exploits remain. Users can be infected simply by visiting a web site with an image file containing the WMF exploit. Internet Explorer users are at the greatest risk of automatic infection while Firefox and Opera browser users are prompted with a question whether they’d like to open the WMF image or not. They get infected too if they answer ‘Yes’."
Microsoft and CERT.ORG issued bulletins on the WMF vulnerability and also announced a workaround while Microsoft is creating a patch, the Center update continues. But in this meantime, it notes, "there are hundreds of millions of vulnerable computers at the moment."
Published January 3, 2006 Reads 14,738
Copyright © 2006 SYS-CON Media, Inc. — All Rights Reserved.
Syndicated stories and blog feeds, all rights reserved by the author.
About Security News Desk
SYS-CON's Security News desk trawls the world of security for news of software, hardware, products, and services that seems likely to be of interest to infosec professionals and summarizes them for easy assimilation by busy IT managers and staff.
- "Virtualization Is Now a Key Strategic Theme," Says Citrix CTO
- Are you Application vAvailable?
- Cloud Computing Expo Europe 2009 in Prague: Themes & Topics
- Cloud Computing Expo 2009 West: Call for Papers Deadline July 15
- Cloud Computing Casts Shadow on Walled Gardens
- An A to Z of Cloud Computing Companies in 2009
- Virtualization Conference & Expo 2009 West: Call for Papers Closing
- Virtualization Conference Europe 2009: 18-19 May 2009 in Prague
- We Will Make the Cloud Hype a Reality: VMware CTO
- Ulitzer’s Amazing First 30 Days in Public Beta
- "Virtualization Is Now a Key Strategic Theme," Says Citrix CTO
- Are you Application vAvailable?
- Cloud Computing Expo Europe 2009 in Prague: Themes & Topics
- Cloud Computing Expo 2009 West: Call for Papers Deadline July 15
- SYS-CON's 5th International Virtualization Conference & Expo: Themes & Topics
- Cloud Computing Casts Shadow on Walled Gardens
- An A to Z of Cloud Computing Companies in 2009
- Citrix CEO "The Industry Needs Time"
- Virtualization Conference & Expo 2009 West: Call for Papers Closing
- Virtualization Conference Europe 2009: 18-19 May 2009 in Prague
- FullArmor GPAnywhere Secures Microsoft Application Virtualization Applications Through Group Policy
- SYS-CON's Virtualization Conference & Expo: Themes & Topics
- SYS-CON's Virtualization Journal Opens Its "Readers' Choice Awards" Nominations
- Application Virtualization: Instant Migration to Vista, Fast Delivery, Secure Access, Side-by-Side Deployments
- Integration with Windows Vista, Microsoft Excel, and Microsoft Application Virtualization
- "Virtualization Is Now a Key Strategic Theme," Says Citrix CTO
- mValent Extends Automated Application Configuration Management to Virtualization Environments
- Will Microsoft Buy Citrix?
- Are you Application vAvailable?
- Virtualization Conference Keynote Webcast Live on SYS-CON.TV






































