Educause Security Discussion mailing list archives

Re: what is your advice to your users


From: Gary Flynn <flynngn () JMU EDU>
Date: Wed, 4 Jan 2006 09:44:54 -0500

Todd Kisida wrote:

Just an update after 1 day of mitigation:

Deploying the Ilfak Guilfanov's patch via Suuronen's  msi seems to be
effective.  Using the related checker from hexblog indicates that
machines are "invulnerable" after the patch is installed.  So far I've
seen no ill effects.  I suspect problems may come up later in the week
as more faculty members return to campus.  I've now started deploying
the 1.1.14 msi available at
http://handlers.sans.org/tliston/WMFHotfix-1.1.14.msi which should be a
more reliable deployment on systems other than XP SP2.

How many computers did you deploy this to?

I have mixed feelings about classes not being in session.  On one hand
it means less desktop systems are being used this week so they are less
likely to be affected.  On the other hand many laptops are being used
off campus where I can't deploy the patch to them.

And they're on a home network without the benefit of any
network and email security precautions you provide them
on campus.  :)



--
Gary Flynn
Security Engineer
James Madison University
www.jmu.edu/computing/security

Current thread: