**** This Security Alert is brought to you by the Security Hot Topic on the Windows IT Pro Network ****
http://list.windowsitpro.com/t?ctl=1905A:1F548
============================================================
Meeting Enterprise Management Needs: The Integration of Microsoft SMS
2003 and Afaria
Learn about the capabilities offered by the integration of Microsoft SMS 2003 and Afaria.
In this free white paper you'll learn about new functionality and benefits of Microsoft SMS specifically targeted to improving management of remote and mobile devices, challenges of managing frontline systems, how the combined solution creates value around the successful use of technology at the front lines of business and more.
http://list.windowsitpro.com/t?ctl=19057:1F548
============================================================
Vulnerabilities in Microsoft Graphics Rendering Engine by Randy Franklin Smith, rsmith@ultimatewindowssecurity.com
There's just one patch from Microsoft this month, but it's important for workstations and terminal servers. For my full commentary on the patch, you can visit
http://list.windowsitpro.com/t?ctl=19059:1F548
MS05-053--Vulnerabilities in Graphics Rendering Engine Could Allow Code Execution (896424)
This critical bulletin addresses remote code, root privilege, and Denial of Service (DoS) risks related to a certain image file format.
You can probably avoid loading the patch on most servers, but given the impact and wide use of image files, I recommend updating your workstations as soon as possible. For testing, I recommend loading it on a typical workstation for your environment and then putting the computer through its paces, exercising each application, especially any related to graphics or authoring.
The patch actually fixes three vulnerabilities that all reside in the same files. At least one of the three security holes exposes Windows XP Service Pack 2 (SP2) and Windows Server 2003 SP1 to critical risk, but the general trend holds true that vulnerabilities being discovered have less impact on these two latest versions of Windows.
Getting your systems upgraded to these two baselines will definitely pay off.
This email newsletter is brought to you by Windows IT Security, the leading publication for IT professionals securing the Windows enterprise from external intruders and controlling access for internal users. Subscribe today.
http://list.windowsitpro.com/t?ctl=19058:1F548
Windows IT Pro, a division of Penton Media, Inc.
221 East 29th Street, Loveland, CO 80538
Attention: Customer Service Department
Copyright 2005, Penton Media, Inc. All Rights Reserved.