For a variety of reasons, however, companies with Microsoft SQL Server software didn't apply the patches. The worm takes advantage of a flaw in how Microsoft SQL Server handles certain input. Customers have been able to protect themselves," he added.
While the appropriate measures are being taken to protect the Sprint Internet backbone, issues may arise with traffic that is handed off to other carriers, if those carriers have not taken the measures that Sprint has, to protect their networks...
People in Australia haven't been diligent in installing patches or using anti-virus protection, we think there are many un-patched machines out there that aren't being looked after by their users" Hartman said.
The problem may result in more apprehension among users when it comes to applying Windows patches, Adusumilli noted. Ullrich said: "Many companies have come to rely on high patch quality to use accelerated deployment procedures for critical patches.
Patches are available for most systems. The worm exploits three vulnerabilities to propagate the XML-RPC for PHP Remote Code Injection vulnerability; AWStats Rawlog Plugin Logfile Parameter Input Validation vulnerability; and Darryl Burgdorf's...
They fix an issue in the "download validation" function, a feature designed to protect Mac users from installing harmful code from a malicious website or email - a risk more familiar to Windows users.