• On TV.com: Sexy summer bodies photo gallery
October 27, 2008 3:51 PM PDT

Microsoft issues security patch for unreleased software

by Elinor Mills

Updated October 28 to correct that security patch was released last week and security advisory was released on Monday.

LOS ANGELES--Microsoft has released a security patch for software that won't be available publicly until Tuesday at the company's Professional Developer Conference.

Windows

Microsoft will be providing attendees of PDC 2008 on Tuesday with a pre-beta version of Windows 7, the successor to Windows Vista.

"A security issue has been identified that could allow an authenticated remote attacker to compromise your Microsoft Windows-based system and gain control over it," the security update says.

The more than 6,000 attendees who will be walking away from the sold-out event with the Windows 7 operating system software in hand could have been vulnerable to an attacker exploiting the security hole.

"The code that will be distributed at PDC for Windows 7 was put on CD before last week's security update was developed, so it will not contain the update," a Microsoft spokeswoman wrote in an e-mail request for comment. "However, when users install the pre-beta bits, they will be prompted to get the update from Windows Update, just like other Windows customers."

The security patch has been available since Wednesday. The critical security hole also affects Windows 2000, Windows XP, and Windows Server 2003.

Elinor Mills covers Internet security and privacy. She joined CNET News in 2005 after working as a foreign correspondent for Reuters in Portugal and writing for The Industry Standard, the IDG News Service, and the Associated Press. E-mail Elinor.
advertisement
Click here!
Recent posts from Security
Symantec's Ramzan on solving the antivirus puzzle
Apple fixing iPhone SMS security hole
Waledac worm targeting July 4 spam offensive
ATM vendor gets security talk pulled from conferences
Postini: Google's take on e-mail security
Botnets lead the way for spam
Stallman warns of Mono 'risk'
China delays rule for Net-screening software
Add a Comment (Log in or register)
by Vegaman_Dan October 27, 2008 5:53 PM PDT
Part of the install process is checking for updates, so this would have been a moot point regardless. If the system was connected to the internet, it would get patched. If it wasn't connected, then it wouldn't be vulnerable in any case.

Considering the hard drives that the PDC attendees will be given were imaged long before this came to light, this is a pretty good indicator that MSFT is dliigent in addressing security issues as soon as they can.
Reply to this comment
by jaclimer October 28, 2008 6:27 AM PDT
This patch was released for Vista and XP as well. It makes sense that they would include Win7 this late in the game--instead of putting off the beta release.

This post almost reads as if Win7 is buggy and that MS is already releasing patches even before it has been released in beta. I think it would be more accurate to say that a patch has been released to fix a vulnerability in XP, Vista and even Win7 beta.
Reply to this comment
advertisement

Making sense of Windows 7 upgrades

faq The basics and the fine print on Microsoft's options for those eyeing the next operating system from Redmond.
• Full Windows 7 coverage

Road Trip 2009: Big Sky Country

CNET News reporter Daniel Terdiman takes his car full of gadgets to the Rockies and the Great Plains in search of tech, science, nature, and more.
• America's Fortress: Cheyenne Mountain

About Security

Online security is threatened by more than hacking and phishing attempts. Check here for the latest updates on software vulnerabilities, data leaks, and rapidly spreading viruses--and learn how to protect your systems.

Add this feed to your online news reader

Security topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right