In association with heise online

21 September 2009, 08:52

Microsoft offers "1-Click Workaround" for SMB2 hole

  • Twitter
  • Facebook
  • submit to slashdot
  • StumbleUpon
  • submit to reddit

Two weeks ago, a vulnerability in the implementation of the SMB2 protocol for Windows Server 2008 and Vista was discovered, and still no patch has been provided. Microsoft is now offering a "1-Click Workaround": switch off SMB2. The process can be undone with a second click.

On September 8, Microsoft admitted that the SMB hole exists and also confirmed that the security hole can be used to inject and execute arbitrary code. Originally, it was assumed that attackers would only be able to reboot systems. However, in the two weeks following, working exploits that take over systems entirely have begun to circulate.


Print Version | Send by email | Permalink:

  • July's Community Calendar

The H Open

The H Security

The H Developer

The H Internet Toolkit