Wednesday, January 04, 2006

Update on my WINDOWS VULNERABILITY ALERT (12-28-2005)

This is an update on my post last December 29, 2005 regarding the serious vulnerability on Windows. In that post, I mentioned that there was no fix but when I listened to one of my favorite podcast this morning (Security Now by Leo Laporte and Steve Gibson), they mentioned that a fix written by a fellow named Ilfak Guilfanov that fixes this security hole.

Steve Gibson, the security expert at grc.com has reviewed the source code and certified that it works as advertised.


Ilfak Guilfanov's fix can be downloaded here. If the server is too busy, it has been mirrored at the Security Now Podcast shownotes here.

Do yourself a favor -- download and install the patch as soon as you read this.


Addendum: Ilfak's website has been down due to VERY high traffic. The patch can be downloaded at the second link above *or* just copy and paste this to your browser: http://www.grc.com/sn/notes-020.htm

technorati tags: ,

3 comments:

Señor Enrique said...

Thank you for your post (warning).

I clicked on your link for download of the patch but I got this:

Account for domain hexblog.com has been suspended

Any other resource?

Bernard Theo Janda said...

Its at the second link. Anyway, here's the exact link: http://www.grc.com/sn/notes-020.htm

Its actually the Security Now! podcast shownotes.

Señor Enrique said...

Thank you, Bernie. I had just downloaded and installed it on my laptop.