The Register® — Biting the hand that feeds IT

Feeds

MS withdraws ineffective security update

  • alert
  • print
  • tweet

The patch that failed

Free whitepaper – Enabling Datacenter and Cloud Service Management for Mid-Tier Enterprises

Microsoft has withdrawn an update for Windows Server because the patch, issued eight days ago, does not treat the root cause of the problem it was meant to fix.

MS10-025 was designed to address a flaw specific to Windows 2000 Server installations also running Windows Media Services.

The bug was critical for affected users, who are now advised by Microsoft to relying on previously published mitigations against attack while they wait for an effective patch, promised for next week. Redmond assured users that the bug is not being actively exploitated by hackers.

Microsoft's explanation for withdrawing the update can be found on its Security Response blog here. A brief note on the issue from the Internet Storm Centre is here. ®

Free whitepaper – Enabling Datacenter and Cloud Service Management for Mid-Tier Enterprises

Sign up, sign up for The Register's weekly IT security newsletter - click here