Security Incidents mailing list archives

Re: AIM Password theft


From: "Meritt James" <meritt_james () bah com>
Date: Thu, 25 Sep 2003 09:13:51 -0400

How about blaming him for not applying a fix for a terrible flaw and
then trying avoid the blame by passing it to someone else?

This is a widespread problem, in my opinion.  Fixes and patches exist
but are not applied by "administrators."

Jim

Valdis.Kletnieks () vt edu wrote:

On Wed, 24 Sep 2003 08:35:32 EDT, Jamie Pratt <jamie () nucdc org>  said:
Anyone know when this will terrible flaw be fixed by MS?

Fixed back on August 20.  Can't blame Microsoft for not fixing it.

http://www.microsoft.com/technet/security/bulletin/MS03-032.asp

  ------------------------------------------------------------------------
   Part 1.2Type: application/pgp-signature

-- 
James W. Meritt CISSP, CISA
Booz | Allen | Hamilton
phone: (410) 684-6566

---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: