Hi everyone,  just wanted to quickly point out that the Anti-malware team has posted a short note on the Win32/Mywife.E mass mailer worm.  Pretty much all current AV protects against this worm, so running updated anti-virus is an important thing to do.  In addition Windows OneCare members are also protected.  The worm doesn’t exploit a…


Trivia: and Windows development

Why is an auto-responder and not a redirect to Well, is the Microsoft internal physical security alias, and has been since we started using email.  As I am sure you can imagine, the amount of email we get at that alias that is external is quite a lot. Thus the autoresponder instead…


Looking at the WMF issue, how did it get there?

Hi everyone, Stephen Toulouse here.  Now that the monthly release has passed and people are deploying the updates I wanted to take a moment to discuss some things related to questions we’ve been receiving on the recent WMF issue.  (Which was addressed in MS06-001).  One question we’ve gotten is about SetAbortProc, the function that allows…


Security updates available on ISO-9660 image files

I wanted to let you know about a new offering that those of you enterprise customers  that download multiple security updates in multiple languages might find useful.  Starting with the January 2006 release, each month we’re making security and high-priority non-security updates that are available on Windows Update also available on an ISO-9660 CD image….


MU and WSUS Information about Today’s Bulletin Release

Hey folks – Mike Reavey here stepping in for Craig as he continues to work through some last minute issues on this Tuesday’s release.  Today we’ve released two Security Bulletins.  The first one, MS06-002 resolves a vulnerability in Font processing in Windows and is rated Critical.  The second bulletin, MS06-003 is also rated Critical, and…


Information on new WMF Posting

Lennart Wistrand here. I wanted to write a few lines about the public post made over the weekend about a new specially crafted WMF image that could potentially cause the application using the Windows Graphics Rendering Engine to crash. As it turns out, these crashes are not exploitable but are instead Windows performance issues   that…


Mike Nash on the Security Update for the WMF Vulnerability

Hi there.  Mike Nash from Microsoft here.  For those of you who don’t know me, I am the Corporate Vice President responsible for security at Microsoft.  Given the recent events around the Windows Meta File format vulnerability, an ongoing dialogue I have had with some customers and our recent decision to release an update for…


Microsoft Security Advisory on Win32/Sober

Hi everyone, Stephen Toulouse here. There is a lot of activity happening within the MSRC this week so I wanted to make sure that, in addition to the guidance we’ve put out around the WMF vulnerability, that we also let you know that we’ve issued a security advisory regarding recent variants of the Win32/Sober worm. …


WMF Vulnerability Security Update

Mike Reavey here from the MSRC- I just wanted to provide another quick update on the WMF vulnerability situation.  Microsoft is continuing to work on finalizing a security update for the vulnerability in WMF that is currently being exploited by some malicious attackers. The update has been on an expedited track since Microsoft became aware of…


Updated Advisory: WMF Vulnerability

Hi folks- Kevin Kean here again.  We here in the MSRC have been hard at work on this WMF vulnerability and so I wanted to provide you all with an update on the situation.   When the MSRC learned of the attacks on December 27, 2005, we mobilized under what we call the Software Security…