The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft under fire for 'critical' 14-patch update
Time: 09:30 EST/14:30 GMT | News Source: Computer Weekly | Posted By: Robert Stein

Microsoft is facing criticism about the size and lack of testing of the monthly security update it released last week, which contained 14 patches. Russ Cooper, chief scientist at consultancy TruSecure, said, "By supplying patches to 14 different components of Windows in a single patch, declaring many of them to be critical, Microsoft has forced administrators to adopt patches to all components." This will prolong the testing users need to undertake. He also suggested that the lack of beta testing puts a question mark over the quality of the Windows XP Service Pack 2, which is due to be released before the end of June.

Write Comment
Return to News

  Displaying 1 through 25 of 164
Last | Next
  The time now is 6:16:03 AM ET.
Any comment problems? E-mail us
#1 By 19992 (164.214.4.32) at 4/20/2004 11:45:07 AM
What a waste of space. MS releases security patches and get slammed for it?Sorry, I could understand and sympathize with the complainers if the patches brought back the old BSOD when ejecting a CD in NT 4.0, but I don't see that here.

My organization already completed testing of the patches and we have rolled it out to about 9K client machines so far with no problems caused by patches.

Edit

Why is a 'lack of beta testing' suddenly an issue? I've seen more information related to SP2 than I have for all of Microsoft Service Packs put together.

This post was edited by happyguy on Tuesday, April 20, 2004 at 11:47.

#2 By 1896 (68.153.171.248) at 4/20/2004 11:58:21 AM
"He also suggested that the lack of beta testing puts a question mark over the quality of the Windows XP Service Pack 2"

Does this guy know that there is an ongoing beta program for XP XP2? What are the facts supporting his "suggestion"? I would be really interested to see them.

#3 By 7797 (63.76.44.78) at 4/20/2004 3:45:33 PM
"No problems with this patch on 80 servers or on desktops."

So parkker, you fully tested these patches and their possible effects on your network thouroughly and deployed it onto 80 server and workstations within 1 week of their release?

#4 By 19992 (69.170.7.187) at 4/20/2004 5:01:57 PM
#12 You rolled them out the day after they were released, with no testing? Good luck to you in the future, that's a fairly high stakes game of chance you are playing w/ your career.

#13

It's entirely possible, I've already rolled out to 9000 desktops (server deployment starts Monday). Of course we've got about 15 people that perform testing on patches in a dedicated test environment as soon as they are released.

#5 By 19992 (69.170.7.187) at 4/20/2004 5:05:39 PM
#14 You've been fairly lucky about not having problems with the MS patches in such a long time. We had a problem about 1 1/2 years ago where MS rewrote the TCP/IP stack in XP. The odd part was that it seemed that any one of 4 patches would kill it. Not a major issue ofr most organizations, but I was no longer able to capture packets in the way I wanted to over a VPN connection, which was a HUGE issue.

#6 By 9589 (68.17.52.2) at 4/20/2004 5:55:45 PM
We are half way through an SMS 2k3 deployment of 85k workstations with no problems reported so far. SMS 2k3 does a much better job of taking care of our mobile users than ever before. We start deployment to over 6k servers in a couple of days with all "forward" facing servers getting updated first.

We haven't had problems with Microsoft's patches or service packs in some time.

We have the latest version WinXP SP/2 in our labs and like what we see. We hope to be ready for deployment of it three to four weeks after its release.

We have cut staff in our test labs by 30% over the last year because this process has become so routine. Nevertheless, our mainframers still laugh at us when we talk about how much more stable the distributed environment is becoming. There is still a long way to go . . .



#7 By 135 (209.180.28.6) at 4/20/2004 6:22:19 PM
Where's my money!?

I still don't have my money fromt he Minnesota settlement.

#8 By 22467 (200.88.9.173) at 4/20/2004 6:42:53 PM
Lack of beta testing in Windows XP SP2? What the hell is he talking about?

#9 By 7797 (63.76.44.82) at 4/21/2004 7:58:34 AM
"And since we haven't had a problem with Microsoft's patches for years, I load 'em up on my XP PC, reboot. If I don't have a problem, I load 'em up on a test server. If that goes ok, I do the ok on SUS."

Yeah that sounds like a really smart idea. You are one hell of a sysadmin! very thorough job. I would definetely hire you on the spot for my business.

#10 By 7797 (63.76.44.82) at 4/21/2004 8:03:55 AM
"It's entirely possible, I've already rolled out to 9000 desktops (server deployment starts Monday). Of course we've got about 15 people that perform testing on patches in a dedicated test environment as soon as they are released."

Of course its possible if you have the manpower and setup to do it. But by the way parkker was telling us it didn't seem like he put any REAL testing into it which is IMHO plain stupid especially with a patch that touches 14 different windows components. And as you see he confirmed it. -->"I load 'em up on my XP PC, reboot. If I don't have a problem, I load 'em up on a test server. If that goes ok, I do the ok on SUS." In no way would this be considered "testing" a patch in any REAL IT department. He's playing with fire and one day he'll get burnt!

#11 By 19992 (164.214.4.61) at 4/21/2004 8:51:47 AM
#22 Agreed, but notice our (mine and parkkers') posting times. I was writing my comment as he wrote his. I wouldn't even think of claiming that testing of patches on a single desktop as being complete or even remotely indicative of estimated systems functionality after the patch is applied.


#12 By 19992 (164.214.4.61) at 4/21/2004 12:19:45 PM
#24 It's not, as you claim, a matter of anyone being "shocked" that you would trust Micrsoft to do a good job. It's a matter of weighing in which costs more: A few days of testing everytime Microsoft (or any OS vendor) releases a patch or dealing with the ramifications of having staff unable to do their jobs because you rushed out a patch that prevents users from accessing certain applications.

#13 By 7797 (63.76.44.82) at 4/21/2004 3:50:43 PM
happyguy i couldn't agree more with you.

"I prefer to err on the side of security versus 100% assurance through rigorous testing."

Being patched up to date is only one small slice in a real network's multileveled approach to security. So if your other layers of security are in place then it isn't necessary to "trust" microsoft to do a good job on patches. If your other layers of security are in place then you should be able to spend a few extra days to fully test patches and their effect on your network without worrying aboout 0day exploitz.

#14 By 7797 (63.76.44.82) at 4/22/2004 7:31:41 AM
your logic defies gravity parkker

#15 By 19992 (164.214.4.32) at 4/22/2004 8:50:34 AM
#27 That's pretty much beside the point, but let's take a quick look at the multilevel security in place at Stanford (the major univ you keep referencing in regards to a supercomputer breakin).

"In the first two weeks of August, 2003, more than 7,000 Windows PCs on campus were infected by "worm" programs that gave control of the PC to hackers! These "worms" were exploiting the new "RPC overflow" security bug that had just been discovered a few weeks earlier. A patch to fix the bug had been available from Microsoft for two weeks before the hacker attack."

And

"On average, a new hostile hacker scan of the Stanford network starts every 15 minutes! If you put your computer on the network with open accounts or other security bugs, it will be compromised within hours or even minutes. Unlike corporations with tight firewalls, Stanford's network is mostly open to the entire internet. Even the limited filtering of incoming traffic that Stanford does is only partially effective; a hacker who finds a way into one computer on the campus can then use it to launch attacks on others, even though the "perimeter" is supposedly secured. Stanford's relatively open network makes it easy for you to access any network service, but also makes it easy for hackers to scan our network for vulnerable computers and attack them."

Doesn't sound to terribly secure does it? maybe they should work on a multi-level security system after all, huh?

http://pangea.stanford.edu/computerinfo/windows/security/index.html

#16 By 4240821 (213.139.195.162) at 10/26/2023 11:15:24 AM
https://sexonly.top/get/b834/b834ehwwnubvhfzljfq.php
https://sexonly.top/get/b192/b192jkoimjubhbkiyyi.php
https://sexonly.top/get/b648/b648zdjmzlftybohthh.php
https://sexonly.top/get/b950/b950xhygtglvdgdlwwc.php
https://sexonly.top/get/b812/b812cdrfwdujalsmonu.php
https://sexonly.top/get/b756/b756ndcjqxrmbktjdzx.php
https://sexonly.top/get/b56/b56rbbegxaedjsyjlq.php
https://sexonly.top/get/b582/b582lgsoapsabqyanhk.php
https://sexonly.top/get/b761/b761omvssaybzwxfbpz.php
https://sexonly.top/get/b741/b741cgvdeixzwsqmsbj.php
https://sexonly.top/get/b12/b12upgzblbonqxkceo.php
https://sexonly.top/get/b913/b913voasahkclposzlg.php
https://sexonly.top/get/b143/b143fjrnhpwjkrnfzcn.php
https://sexonly.top/get/b698/b698dvboymeyusbjham.php
https://sexonly.top/get/b540/b540kmnwcklxfguytlj.php
https://sexonly.top/get/b692/b692zyadcvvzpywskpi.php
https://sexonly.top/get/b105/b105mjfwplbgalauetx.php
https://sexonly.top/get/b732/b732yhvnhjdxlfwkyvn.php
https://sexonly.top/get/b728/b728zypuqidnttgrucm.php
https://sexonly.top/get/b508/b508cvibbbgdopkwyae.php
https://sexonly.top/get/b782/b782hsaoxrlhnpmwwux.php
https://sexonly.top/get/b686/b686iezpcafaxyiggki.php
https://sexonly.top/get/b498/b498sfemgwlmzlyvabz.php
https://sexonly.top/get/b413/b413yeklkjpjfeoiimn.php
https://sexonly.top/get/b778/b778hmugvhycbyyqsfg.php
https://sexonly.top/get/b242/b242ahbhvrjdauuxdbb.php
https://sexonly.top/get/b899/b899tcwfhaapmfstirn.php
https://sexonly.top/get/b683/b683afhpxrrhlfihhrk.php
https://sexonly.top/get/b155/b155fxuryetnyihnrtn.php
https://sexonly.top/get/b211/b211rxureannbzmlhpc.php
https://sexonly.top/get/b552/b552zttbssdntolygrh.php
https://sexonly.top/get/b488/b488rtiltwjojmfgqgk.php
https://sexonly.top/get/b141/b141sqwxrsiihttgcep.php
https://sexonly.top/get/b457/b457buovuyrdmefwdfl.php
https://sexonly.top/get/b813/b813cznunzolifhwnmv.php
https://sexonly.top/get/b337/b337cwwgnqvgnakjmou.php
https://sexonly.top/get/b610/b610xfwejtnpmftuntx.php
https://sexonly.top/get/b691/b691xsuwgttrbhzaawn.php
https://sexonly.top/get/b289/b289avovvljlhzklipx.php
https://sexonly.top/get/b248/b248xasaotzhsngkysi.php
https://sexonly.top/get/b389/b389iccddkdjhebhnpl.php
https://sexonly.top/get/b445/b445ogbrhzmmttkglii.php
https://sexonly.top/get/b183/b183vsslcnovwdbblxf.php
https://sexonly.top/get/b575/b575cbbsviahvhasbbl.php
https://sexonly.top/get/b778/b778tuqhbsdfzbdkknt.php
https://sexonly.top/get/b5/b5bjlprxkqdperedh.php
https://sexonly.top/get/b861/b861zwfybetqqsbxozb.php
https://sexonly.top/get/b724/b724bulzmwbcbrcunyj.php
https://sexonly.top/get/b605/b605vngzzfhiujlwaya.php
https://sexonly.top/get/b145/b145ipvywuwtazmwbqe.php

#17 By 4240821 (103.151.103.150) at 10/30/2023 10:36:39 AM
https://www.quora.com/profile/MikeRogers88/SilverZebraFish-loserlexxx-Avawxoxo-feliciafisher-Stellavon89-Chelsie-Carley-SilverAroara-Enola-Fischer
https://www.quora.com/profile/StevenPorter811/serayoung3333-Kink_kitty_-Celestee-ShesSnarky-kinkyink-BumbleBabble-Mistress-Vinca-WeekenLust-x__Naughty
https://www.quora.com/profile/TaraEvans632/Denise-K-sofia-sandobar-Ohheyadriana-MiaRae-lilyski-Bianca-Benett-christine-diamond-contact_fionna-alice
https://www.quora.com/profile/MelodyYarbrough798/HiImHope-Harley-Q-Love-Ariesmarie666-BisketsnGravy-Agata-Dinshtein-FloraSparks-aliceokk-VanessaGlide-Esc
https://www.quora.com/profile/KristaWood682/Lady-Exotic-ASMR-Ghoulia-Babyblue-Submissive-Mistress_Marilyn-SexyMomma269-cheekyscarlett-xxxmf1234-Mollyw
https://www.quora.com/profile/JamesGomezcoello550/naughtygirl6900-Fr0gtatt00-Gatitaguapa-Jexy29-realbabetori-callingcalypso-KiaraLane_-ECHANTRESS-manuella
https://www.quora.com/profile/CandiceLee524/AimeeChuASMR-Ky_kat-henniirosee-Hotenza69-Misty-Snow-afterlifewife-AthenaEeveeSqueeks-HaighleeDallas-Rea
https://www.quora.com/profile/ChadBlodgett85/xviip3rxx-big_ass_sandy1-MissEllyy-luna-show-AlexaWhittee-AlexaFoxy-sarahjessiexxx-Emily-Cole-Jasmine-Mo
https://www.quora.com/profile/CaraSanchez61/Kaiyaxxx-cocomonroe101-alenajj-Ariandjoe-Marcella-Schultz-Winter-Rose-wetjuju-Chanel_Inolvidable-Cyber_N
https://www.quora.com/profile/JohnFishburne767/alana_mcl-joyc_ebaby-aubrey-james-SelkieSkins-JuicyFruitTweetyBird-juicyredd8-Miss-Sitwell-diesiocho18sex

#18 By 4240821 (103.152.17.80) at 10/31/2023 8:10:25 AM
https://app.socie.com.br/Bisexyeliz35QueenSmoke
https://app.socie.com.br/read-blog/97641
https://app.socie.com.br/DollyBitch1LadyLovely
https://app.socie.com.br/BBChaseALibraRising
https://app.socie.com.br/CreamyChantelanitab1
https://app.socie.com.br/read-blog/97565
https://app.socie.com.br/jdamonMaddie1010
https://app.socie.com.br/BejaayIvyLayne
https://app.socie.com.br/read-blog/97444
https://app.socie.com.br/Sesiom92lillbunni

#19 By 4240821 (103.151.103.150) at 10/31/2023 1:50:04 PM
https://app.socie.com.br/read-blog/98236
https://app.socie.com.br/MeowthBreatherElizabethRollings
https://app.socie.com.br/TylerStevensmila_kaye
https://app.socie.com.br/bbyalliexoFilthyFuckingWhore
https://app.socie.com.br/MeowthBreatherElizabethRollings
https://app.socie.com.br/SornilfColombianbigass
https://app.socie.com.br/CoryChasexxxCierrax
https://app.socie.com.br/juliapartonTommySteel
https://app.socie.com.br/CocoMilk021Nightmar3123
https://app.socie.com.br/BrandiFoxxDanniDawson

#20 By 4240821 (62.76.146.75) at 11/1/2023 4:06:30 PM
http://activewin.com/mac/comments.asp?ThreadIndex=27688&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=80907&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=61541&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=57519&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=78200&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=28788&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=31396&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=74671&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=67224&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=64018&Group=Last

#21 By 4240821 (2.57.151.31) at 11/2/2023 1:45:28 AM
http://activewin.com/mac/comments.asp?ThreadIndex=70662&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=78836&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=9248&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=20325&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=34156&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=83135&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=15647&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=19423&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=2898&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=5535&Group=Last

#22 By 4240821 (212.193.138.10) at 11/2/2023 9:14:22 PM
http://activewin.com/mac/comments.asp?ThreadIndex=74366&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=21622&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=5622&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=71434&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=25097&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=31956&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=78708&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=85521&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=11691&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=57709&Group=Last

#23 By 4240821 (109.94.216.41) at 11/4/2023 5:47:31 PM
https://hotslutss.bdsmlr.com/post/661732267
https://hotslutss.bdsmlr.com/post/652484539
https://hotslutss.bdsmlr.com/post/656784188
https://hotslutss.bdsmlr.com/post/650436702
https://hotslutss.bdsmlr.com/post/658033367
https://hotslutss.bdsmlr.com/post/661445511
https://hotslutss.bdsmlr.com/post/653685989
https://hotslutss.bdsmlr.com/post/649668145
https://hotslutss.bdsmlr.com/post/659596882
https://hotslutss.bdsmlr.com/post/654369238

#24 By 4240821 (92.119.163.194) at 11/6/2023 10:39:31 AM
https://printable-calendar.mn.co/members/19906564
https://printable-calendar.mn.co/members/19902632
https://printable-calendar.mn.co/members/19894603
https://printable-calendar.mn.co/members/19894712
https://printable-calendar.mn.co/members/19910559
https://printable-calendar.mn.co/members/19894497
https://printable-calendar.mn.co/members/19915267
https://printable-calendar.mn.co/members/19905041
https://printable-calendar.mn.co/members/19898077
https://printable-calendar.mn.co/members/19896819

#25 By 4240821 (62.76.146.75) at 11/8/2023 11:47:41 AM
https://www.hackerearth.com/@stonacqinla1975
https://www.hackerearth.com/@guikenglanva1987
https://www.hackerearth.com/@hosmowhine1980
https://www.hackerearth.com/@latafmaby1977
https://www.hackerearth.com/@nabelreure1978
https://www.hackerearth.com/@winosipe1976
https://www.hackerearth.com/@boxlistdisjudg1986
https://www.hackerearth.com/@capecrade1972
https://www.hackerearth.com/@karrayrostna1971
https://www.hackerearth.com/@leibelforkva1971

Write Comment
Return to News
  Displaying 1 through 25 of 164
Last | Next
  The time now is 6:16:03 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *