Computing Facilities    links to the SCS and CMU home pages Carnegie Mellon School of Computer Science Carnegie Mellon University
 
Advanced search tips 
 Documentation
 » Introduction to Facilities 
 » Accounts & passwords 
 » AFS 
 » Application software 
 » AV help 
 » Backups & restores 
 » Calendaring 
 » E-mail 
 » Networking 
 » Printing 
 » Purchasing 
 » Resource management 
 » Security 
 » Software licensing 
 » Support charges 
 » Web publishing 
 » Your health 
 » Mac support 
 » Linux support 
 » Windows PC support 

SCS Computing Facilities has received the following alert from Computing Services

Subject: DEPT: MS05-011 SMB vulnerability exploit code

If you haven't installed the latest hotfixes from Microsoft; you should get on it immediately. A public exploit for the SMB vulnerability is readily available (looks like Win2k only for now).

This is really bad because the vulnerability impacts all Windows Operating Systems. This is a huge vector for attacks. Dave Stevens from the Windows group pointed out that port 445 scans were up considerably. That was likely identifying targets or early versions of this exploit.

Once again, please get the latest hotfixes installed ASAP.

--------------------------------------------

Departmental Computing Group Mailing List dept-computing-group@lists.andrew.cmu.edu http://www.cmu.edu/computing/dept-computing

--------------------------------------------