Massive Windows vulnerability could be just as bad as Heartbleed

TECHi's Author Sal McCloskey
Opposing Author Thenextweb Read Source Article
Last Updated
TECHi's Take
Sal McCloskey
Sal McCloskey
  • Words 78
  • Estimated Read 1 min

As scary as Heartbleed was this past spring, it looks like virtually every Microsoft Windows user is in for a little deja vu. Microsoft just released a critical patch for a huge server vulnerability—one that affects quite a few current versions of Windows out there. As of now, Microsoft isn’t aware of anyone actually taking advantage of this vulnerability, which allows “a remote code execution vulnerability… due to the improper processing of specially crafted packets.” 

 

Thenextweb

Thenextweb

  • Words 141
  • Estimated Read 1 min
Read Article

Remember Heartbleed? You know, the exploit in SSL that was so bad it got its own brand? Microsoft may have an issue of similar scale on its hands with a critical patch issued via Windows Update today. The patch in question is MS14-066, or otherwise known as the cryptically named “Vulnerability in Schannel Could Allow Remote Code Execution,” which affects Windows Server 2003/2008/2012, Vista, 7, 8, 8.1 and Windows RT. Microsoft gives few details about the exploit, other than saying that the bug would “allow remote code execution if an attacker sends specially crafted packets to a Windows server.” In other words, if an attacker modified packets in a particular way and attacked your machine, they may be able to execute whatever code they like remotely without an authorized an account. The attack appears to only affect those running a server on affected platforms.

Source

NOTE: TECHi Two-Takes are the stories we have chosen from the web along with a little bit of our opinion in a paragraph. Please check the original story in the Source Button below.

Balanced Perspective

TECHi weighs both sides before reaching a conclusion.

TECHi’s editorial take above outlines the reasoning that supports this position.

More Two Takes from Thenextweb

Telegram denies rumors that it’s being acquired by Google
Telegram denies rumors that it’s being acquired by Google

Google was in a perfect position to dominate the mobile messaging and social networking markets while they were still in…

Here’s proof that a smartphone company can develop a car
Here’s proof that a smartphone company can develop a car

LeEco is one of the numerous smartphone companies that are pretty big in China, but virtually non-existent elsewhere. However, whereas most of…

Japan wants tourists to use their fingerprints to make purchases
Japan wants tourists to use their fingerprints to make purchases

Japan is already one of most tourism-friendly countries in the world, even going so far as to offer free Wi-Fi…

The leaked images of the Nintendo NX controller were fake
The leaked images of the Nintendo NX controller were fake

In case you haven't been keeping up with this week's batch of gaming rumors, images of the controller for Nintendo's next…