RE: FYI: Hex blog: Windows WMF Metafile Vulnerability HotFix

  • From: "John T \(Lists\)" <johnlist@xxxxxxxxxxxxxxxxxxx>
  • To: "'[ISAserver.org Discussion List]'" <isalist@xxxxxxxxxxxxx>
  • Date: Mon, 2 Jan 2006 10:13:43 -0800

David, what is the confidence with this "beta" version and if a problem is
found, is regression as easy as running a previous version exe?

 

John T

eServices For You

 

-----Original Message-----
From: David Farinic [mailto:davidfa@xxxxxxx] 
Sent: Monday, January 02, 2006 7:03 AM
To: [ISAserver.org Discussion List]
Subject: [isalist] RE: FYI: Hex blog: Windows WMF Metafile Vulnerability
HotFix

 

http://www.ISAserver.org

For WebMon3 users:

 

As there are more than 50 variants of this exploit in wild, we added wmf
real file-type signature checking so now you can block this filetype
"whatever" extension content type it hides under.

However you need to update to build 20060102  or later version:

ftp://ftp.gfisoftware.com/temp/Netmon/del/20060102/webmonitor3.exe

Handle with care as this version is currently under testing and once proves
bug free we will replace version of WM3 on our main site.

 

With Kind Regards DavidFA.

 

P.S: Please trust info/email like this (about WM3 updates) only if they
point to *.gfisoftware.com or *.gfi.com domains for updates.

 

 

  _____  

From: Thomas W Shinder [mailto:tshinder@xxxxxxxxxxx] 
Sent: Monday, January 02, 2006 3:31 PM
To: [ISAserver.org Discussion List]
Subject: [isalist] FYI: Hex blog: Windows WMF Metafile Vulnerability HotFix

 

http://www.ISAserver.org



Hex blog: Windows WMF Metafile Vulnerability HotFix:
http://www.hexblog.com/2005/12/wmf_vuln.html 

------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Visit TechGenix.com for more information about our other sites:
http://www.techgenix.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
davidf@xxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx 

------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Visit TechGenix.com for more information about our other sites:
http://www.techgenix.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
johnlist@xxxxxxxxxxxxxxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx 

  

This mail was checked for viruses by GFI MailSecurity. GFI also develops
anti-spam software (GFI MailEssentials), a fax server (GFI FAXmaker), and
network security and management software (GFI LANguard) - www.gfi.com 

Other related posts: