| Date: Thu, 20 May 2010 01:07:18 -0500 To: "Win7 Kaffee Klatchers via BCC": ; From: Dale Cockle <kaffeeklatch@sctxcompclub.org> Subject: [KaffeeKlatch-Win7] Microsoft Warns of Windows 7 Flaw Microsoft warns of serious, unpatched Windows 7 flaw
By Ryan Naraine | May 18, 2010 <http://www.zdnet.com/blog/security/microsoft-warns-of-serious-unpatched-windows-7-flaw/6474> A serious security vulnerability in Microsoft’s newest operating system could expose users to code execution and denial-of-service attacks, the company warned in an advisory issued late Tuesday. The vulnerability, which only affects Windows 7 and Windows Server 2008 R2, was publicly discussed ahead of Microsoft’s advisory but the company said there are are no reports of attacks attempting to exploit the flaw. The flaw was found in the Canonical Display Driver (cdd.dll), which is used by desktop composition to blend the Windows Graphics Device Interface (GDI) and DirectX drawing. More information from the MSRC <http://blogs.technet.com/msrc/archive/2010/05/18/security-advisory-2028859-released.aspx>:
The company has activated its security response process and promises a patch once the investigations are complete. In the meantime, affected Windows 7 or Windows 2008 R2 users should consider disabling the Windows Aero Theme to prevent the issue from being exploited. To disable Windows Aero by changing the theme, perform the following steps for each user on a system: 1. Click Start, select the Control Panel, and then click on Appearance and Personalization. 2. Under the Personalization category, click on Change the Theme. 3. Scroll to the bottom of the listed themes and select one of the available Basic and High Contrast Themes. Copyright © 2010 CBS Interactive. All rights reserved. |