March 8, 2007 11:51 AM PST
Microsoft takes a 'Patch Tuesday' break
- Related Stories
-
IT pros battle clock and code in time change
March 5, 2007 -
Zero-day attack hits Word
February 15, 2007 -
Microsoft patches 20 security flaws
February 13, 2007 -
Microsoft to deliver patches by the dozen
February 8, 2007
In a note on its Web site Thursday, Microsoft said it won't release any security bulletins, yet it will release several updates that are not related to security. The second Tuesday of the month is Microsoft's scheduled patch release day.
Also on Tuesday, Microsoft will go ahead with an updated release of its Windows Malicious Software Removal Tool. The program detects and removes common malicious code placed on computers and is pushed out monthly.
The patch break could be a welcome respite for IT managers still busy testing the dozen fixes Microsoft released last month. Also, many IT pros may be occupied with the switch to daylight saving time, which at the behest of Congress, is happening three weeks earlier this year. Many computer systems don't have that change programmed in and require patching.
Microsoft occasionally has months when it has not released security updates. The last time Microsoft did not offer security updates as part of its monthly update cycle was September 2005, the company said.
"Microsoft continues to investigate potential and existing vulnerabilities in an effort to help protect our customers," a company representative said on Thursday. "Creating security updates that effectively and comprehensively fix vulnerabilities is an extensive process involving a series of sequential steps."
Still, the lack of security updates also means that cybercrooks have more time to exploit known security vulnerabilities. There are five known zero-day holes in Microsoft products, according to eEye Digital Security. Microsoft has warned that a bug in Word is being exploited in attacks. The company has said it is working on a fix.
See more CNET content tagged:
security update,
vulnerability,
security,
Microsoft Corp.







Personally I think they need to be pushing out security updates as soon as they are available. They can wait on feature updates.
Please take some advice and learn from the Open Source people when it comes to patches. If there is a flaw, then patch it and release the patch as soon as possible. It doesn't help companies, not normal people that you not release patches for know security flaws.
There is no such thing as Windows Security.
On the number of flaws, it is quite unfair to compare Microsoft flaws to Firefox. A better comparison is between Microsoft and Firefox, Linux, Oracle database, open office, and Apache. You will be suprised to find how many flaws that these other software have in combination, and how many flaws are not yet patched.
Anyway, it an article is critical of Microsoft, people will believe it automatly, right? The golden rule of jounalism is that you want to write what people want to read, in order to entertain them.
And yet MS takes "a break"?.
Need a headline re-write...
Microsoft renigs on it's security vow...
OR
Microsoft decides to ignore critical zero-day flaws...
OR
Microsoft abandons users to give their patch people a break...
Now those are headline making material... but being on the Microsoft payroll... I CANNOT AGREE... But understand the watering down of the headline!!!
GET YOUR STAFF OFF THE MS PAYROLL and report it LIKE IT IS!!!
Walt