Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

General discussion

Microsoft Security Bulletin Advance Notification

Jan 5, 2006 4:27AM PST

Updated: January 5, 2005

Important Information for Thursday 5 January 2006
Microsoft announced that it would release a security update to help protect customers from exploitations of a vulnerability in the Windows Meta File (WMF) area of code in the Windows operating system on Tuesday, January 2, 2006, in response to malicious and criminal attacks on computer users that were discovered last week.

Microsoft will release the update today on Thursday, January 5, 2006, earlier than planned.

Microsoft originally planned to release the update on Tuesday, January 10, 2006 as part of its regular monthly release of security bulletins, once testing for quality and application compatibility was complete. However, testing has been completed earlier than anticipated and the update is ready for release.

In addition, Microsoft is releasing the update early in response to strong customer sentiment that the release should be made available as soon as possible.

Microsoft?s monitoring of attack data continues to indicate that the attacks are limited and are being mitigated both by Microsoft?s efforts to shut down malicious Web sites and with up-to-date signatures form anti-virus companies.

The security update will be available at 2:00 pm PT as MS06-001.

Enterprise customers who are using Windows Server Update Services will receive the update automatically. In additional the update is supported Microsoft Baseline Security Analyzer 2.0, Systems Management Server, and Software Update Services. Enterprise customers can also manually download the update from the Download Center.

more here
http://www.microsoft.com/technet/security/bulletin/advance.mspx

Discussion is locked

- Collapse -
Microsoft Security Bulletin(s) for January 5, 2006
Jan 5, 2006 4:51AM PST

I just received this:

January 5, 2006,

Today Microsoft released the following Security Bulletin(s).

Note: www.microsoft.com/technet/security and www.microsoft.com/security are authoritative in all matters concerning Microsoft Security Bulletins! ANY e-mail, web board or newsgroup posting (including this one) should be verified by visiting these sites for official information. Microsoft never sends security or other updates as attachments. These updates must be downloaded from the microsoft.com download center or Windows Update. See the individual bulletins for details.

Because some malicious messages attempt to masquerade as official Microsoft security notices, it is recommended that you physically type the URLs into your web browser and not click on the hyperlinks provided.

Bulletin Summary:



http://www.microsoft.com/technet/security/Bulletin/ms06-Jan.mspx



Critical Bulletins:



Vulnerability in Graphics Rendering Engine Could Allow Remote Code Execution (912919)
http://www.microsoft.com/technet/security/Bulletin/ms06-001.mspx





This special bulletin is outside of our scheduled monthly bulletin release (second Tuesday of each month). Please note that Microsoft may release bulletins out side of this schedule if we determine the need to do so.



If you have any questions regarding the patch or its implementation after reading the above listed bulletin you should contact Product Support Services in the United States at 1-866-PCSafety (1-866-727-233Cool. International customers should contact their local subsidiary.

- Collapse -
I just went to Microsoft Update and got
Jan 5, 2006 5:18AM PST

the official patch after I posted this. I had to reboot afterwords. I ran the unofficial WMF checker afterwords and it says I'm OK with the official patch also, as it did with the unofficial one. Happy

- Collapse -
(NT) (NT) Same here.
Jan 5, 2006 5:20AM PST
- Collapse -
(NT) (NT) Just Finished, Everything seems to be Fine.
Jan 5, 2006 7:30AM PST
- Collapse -
(NT) (NT) Thank you Roddy & Marianna..all's well here ;)
Jan 5, 2006 6:34AM PST
- Collapse -
(NT) (NT) Carol, You're Welcome :)
Jan 5, 2006 6:39AM PST
- Collapse -
(NT) (NT) You are welcome grasshopper :)
Jan 5, 2006 6:51AM PST
- Collapse -
(NT) (NT) "grasshopper" ??? Isn't that a bug?
Jan 5, 2006 6:56AM PST
- Collapse -
(NT) (NT) Inside joke. Did you ever watch the TV show Kung Fu?
Jan 5, 2006 6:59AM PST
- Collapse -
(NT) (NT) Kung Fu on TV ?? Nope - so, I am an "outsider" ;) LOL
Jan 5, 2006 7:06AM PST
- Collapse -
Marianna,
Jan 5, 2006 7:18AM PST

You are probably just to young to remember the show.
Larry

- Collapse -
(NT) (NT) ROFL
Jan 5, 2006 7:38AM PST
- Collapse -
(NT) (NT) too young?? - Hmm...... then why is Roddy laughing?
Jan 5, 2006 7:40AM PST
- Collapse -
(NT) (NT) I just "unfolded"... "ROFLMXO" ..the best yet!
Jan 5, 2006 7:44AM PST
- Collapse -
Marianna, Don't know why
Jan 6, 2006 3:27AM PST

Roddy is laughing. Maybe you need to retrain him LOL
and give him some extra work.
By the way, My Sincere Congrats on MSMVP!! and Thank You for being there when I needed Your Help.
You are a Fine Lady, and hope you don't Leave us. Someone has to keep Roddy straight.LOL
Sincerely
Larry

- Collapse -
Larry...
Jan 7, 2006 4:48AM PST

thanks Happy

Most of the time I let Roddy run his "own show" :^O as he is doing a great job Cool

In the 70s I was still in Europe and we didn't have a Kung Fu show on TV Cry

No, don't worry, I don't intend to leave, but I am very involved in other malware forums and I have to "keep an eye" on Roddy (just kidding)Silly

- Collapse -
I have a tendancy to get
Jan 7, 2006 5:07AM PST
- Collapse -
Don't Worry Roddy, Marianna will..
Jan 7, 2006 5:25AM PST

Keep an eye on you. LOL

Just for the Record, all kidding aside, You Do an Excellent Job!

Love that Link.LOL
Larry

- Collapse -
(NT) (NT) No! I DON'T believe they are. :D
Jan 5, 2006 7:07AM PST
- Collapse -
(NT) (NT) EEkkk, they have BIG hind legs for jumping ......
Jan 5, 2006 7:10AM PST
- Collapse -
(NT) (NT) They need them for stalking their prey. I fold ;)
Jan 5, 2006 7:25AM PST
- Collapse -
(NT) (NT)Conspicuous eyes ..... that's a BUG ... yikes ...
Jan 5, 2006 7:42AM PST
- Collapse -
(NT) (NT) Thank You Master Po!
Jan 5, 2006 8:16AM PST
- Collapse -
Glad that Carol and I are NOT the
Jan 5, 2006 8:30AM PST

only ones old enough to remember that show LOL

- Collapse -
Roddy, In The Early 1970's...It Was ...
Jan 6, 2006 7:43AM PST

....one of my favorite shows. At the time, I was working on my black belt in Shorin Ryu Karate and I loved the philosphy of the show. Just in case anyone's interested, see the link below:

http://www.kungfu-guide.com/

Hope this helps.

Grif

- Collapse -
LOL I sent Marianna that same link via e-mail when
Jan 6, 2006 7:53AM PST

I realized she had never seen the show. LOL. I loved that show too but having recently gotten out of the service after being overseas for 3 1/2 years I was more interested in partying at the time so I usually ended up watching the reruns. LOL

- Collapse -
Should the unoffical patch be removed first??
Jan 5, 2006 8:43PM PST

I remember talk of such when I installed it but cant seem to find clear instruction on what to do now that the offical one is here waiting to be installed.
EZ

- Collapse -
I did but from what I understand
Jan 5, 2006 9:57PM PST

it is not necessary. This is the way that I did it whether it be right or wrong. I removed the unofficial one from add/remove programs and rebooted, Then I ran CCleaner to make sure I got everything, then went and got the new one and rebooted again. That worked fine for me but my way was different than the official way which is here.

http://isc.sans.org/diary.php?n&storyid=1019

- Collapse -
(NT) (NT) Thanks for the info
Jan 5, 2006 11:18PM PST
- Collapse -
(NT) (NT) You're welcome
Jan 6, 2006 12:07AM PST