Follow Slashdot stories on Twitter

 



Forgot your password?
typodupeerror
×
Cloud Microsoft Network Security Windows IT

Microsoft: RDP Vulnerability Should Be Patched Immediately 126

wiredmikey writes "Microsoft is urging organizations to apply the sole critical update in this month's Patch Tuesday release as soon as possible. The critical bulletin – one of six security bulletins issued as part of Tuesday's release – addresses two vulnerabilities in the Remote Desktop Protocol (RDP). Those IT admins who use RDP to manage their machines over the internet, which is essentially the default in cloud-based installations such as Amazon's AWS, need to patch as quickly as possible, said Qualys CTO Wolfgang Kandek. Besides the RDP bugs, this month's Patch Tuesday addressed five other vulnerabilities: two denial-of-service bugs and an escalation of privileges issue in Microsoft Windows; a remote code execution vulnerability in Microsoft Expression Design; and an escalation of privileges issue in Microsoft Visual Studio."
This discussion has been archived. No new comments can be posted.

Microsoft: RDP Vulnerability Should Be Patched Immediately

Comments Filter:
  • by hcs_$reboot ( 1536101 ) on Wednesday March 14, 2012 @03:01AM (#39349583)
    Ok, so there are some weaknesses / bugs and patches to be applied to Linux. There are, there were, and there will be. Always. But are we on the same scale here? We are talking about a remote administration GUI security hole ; that nice graphics and windows based environment that allows almost any brainless geek to damage the system from any angle, visually, like a game.
  • by hcs_$reboot ( 1536101 ) on Wednesday March 14, 2012 @03:22AM (#39349655)
    RDP [wikipedia.org] is a GUI, SSH (for instance) is not. From wiki:

    Remote Desktop Protocol (RDP) is a proprietary protocol developed by Microsoft, which provides a user with a graphical interface to another computer

    Don't you think it is easier to hack a computer from a windowed based tool where you see the menus and all, than from an austere text based prompt?

  • by TheInternetGuy ( 2006682 ) on Wednesday March 14, 2012 @03:25AM (#39349671)

    And having a vulnerability in a GUI (RDP) protocol is somehow worse than having vulnerabilities in SSH how exactly?

    Any fool can use the GUI, but with SSH at least you can be sure that you are being hacked and exploited by a fellow geek.

  • by SuricouRaven ( 1897204 ) on Wednesday March 14, 2012 @07:53AM (#39350857)
    Windows: So awkward to use, even the hackers will get mired in in the GUI.

Real Programmers don't eat quiche. They eat Twinkies and Szechwan food.

Working...