Windows Media and Outlook Express Both at High Risk   - 2,261 Views,

Summary: Microsoft has issued alerts and updates this week for both Windows Media Player and Outlook Express, explaining that both are open to serious attack, which could render a user's computer under the control from someone out on the Internet. The Outlook Express update affects Microsoft Outlook Express 5.5 and 6, and the Windows Media Player issue affects both Windows Media Format Series Runtime, and Windows Media Player 6.4 (and even affects people running later versions of Windows Media Player such as Windows Media Player 11).

Previous Article « eBay Auctioning Off Walt Disney’s Birth Home
Read Next Article » BlackBerry Sues BlackJack

  Follow Anne on Twitter

Microsoft has issued alerts and updates this week for both Windows Media Player and Outlook Express, explaining that both are open to serious attack, which could render a user’s computer under the control from someone out on the Internet.

The Outlook Express update affects Microsoft Outlook Express 5.5 and 6, on almost all versions of Windows including XP and 2000 (Win2k).

Explains Microsoft of the Outlook Express security bulletin, “This update resolves a newly discovered, privately reported vulnerability… We recommend that customers should apply the update at the earliest opportunity.”

According to Microsoft, the Outlook Express security problem is with the address book system. The bulletin explains that the Outlook Express vulnerability “allows an attacker who sent a Windows Address Book file to a user of an affected system to take complete control of the system.” Once the infected Windows address book file is on the user’s system (unbeknownst to the user), the attacker can remotely install programs and access all of the user’s data.

Follow this link to find the update for your version of Microsoft Windows Outlook Express.

Also this week Microsoft issued a critical security update for Windows Media Player.

“This update resolves two newly discovered vulnerabilities… If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system,” warned Microsoft, adding that “We recommend that customers apply the update immediately.”

There are two components to both the Windows Media Player vulnerability and the Windows Media Player update; one has to do with the Windows Media Format Series Runtime, and the other with Microsoft Windows Media Player 6.4. It is important to note, as Microsoft does, that even if you have upgraded to a later version of Windows Media Player, you still need to do the Windows Media Player 6.4 security update, because many versions of Windows “will still have Windows Media Player 6.4 installed on the system for backwards compatibility.”

You can find the Windows Media Format Series Runtime and Windows Media Player 6.4 updates here.

Windows Media and Outlook Express Both at High Risk

 Follow Anne on Twitter

 Twitter Explained in Plain English

Previous Article « eBay Auctioning Off Walt Disney’s Birth Home
Read Next Article » BlackBerry Sues BlackJack

Read more:

»  Outlook Express Flaw Elevated to Higher Risk

»  Microsoft Offers Outlook Bundled with Paid Email Service

»  Windows XP and 2000 Users Beware - New “High Risk” Flaws in Outlook and Internet Explorer

»  June’s Security Updates for Windows Include IE, Outlook and Telnet

For additional similar stories check out our archives on Microsoft, Security, Windows

NOTE: We never, ever, ever will recommend any product or service on this site that we have not regularly used ourselves and do not wholeheartedly believe in. That said, in some cases after being very pleased with a product or service, we may enter into a relationship with the provider of that product or service such that if someone purchases that product or service based on our recommendation, we may get a small payment. Such payments go towards the upkeep of the Internet Patrol.

 

No Comments »

No comments yet.

RSS feed for comments on this post.

Leave a comment

Warning! All comments which contain URLs and are clearly just spam to generate a link back to the URL will be deleted on sight. Don't bother wasting your time!

If you are going to include a URL in your comment,
please keep it under 25 characters in length,
or use TinyURL to shorten it before including it in your comment.

Line and paragraph breaks are automatic, your email address is never displayed.
HTML allowed: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

(required)

(required)


If you have not posted a comment here before, we apologize for having to ask you to enter the letters and numbers you see in the image above to validate your comment, but we are being attacked by thousands of comment form spams every day! You only need to do this once; once you have successfuly posted a comment here you will not be asked to do this again. Thank you for your understanding!

 
 This article first appeared on 12/15/2006
The Internet Patrol
Patrolling the Internet for You!