SimplerCloud Pte Ltd

×
×

News: Critical Advisory: Microsoft Windows Schannel Vulnerability

Published: 12/11/2014 Back

Critical Alert: Microsoft Windows Schannel Vulnerability


Reference: Microsoft Security Bulletin MS14-066 - Critical: Vulnerability in Schannel Could Allow Remote Code Execution (2992611)


This advisory is provided as a courtesy.


We would like to bring to your attention a newly discovered security bug affecting Microsoft Secure Channel (Schannel) security package in Microsoft Windows systems. This vulnerability is rated as Critical and all customers' Windows systems are affected. You are strongly advised to apply the relevant fixes to any affected systems immediately.


Impact


The vulnerability could allow remote code execution if an attacker sends specially crafted packets to a Windows server.


Affected Operating Systems


Windows Server 2003


Windows Server 2003 Service Pack 2
Windows Server 2003 x64 Edition Service Pack 2
Windows Server 2003 with SP2 for Itanium-based Systems


Windows Vista


Windows Vista Service Pack 2
Windows Vista x64 Edition Service Pack 2


Windows Server 2008


Windows Server 2008 for 32-bit Systems Service Pack 2
Windows Server 2008 for x64-based Systems Service Pack 2
Windows Server 2008 for Itanium-based Systems Service Pack 2


Windows 7


Windows 7 for 32-bit Systems Service Pack 1
Windows 7 for x64-based Systems Service Pack 1


Windows Server 2008 R2


Windows Server 2008 R2 for x64-based Systems Service Pack 1
Windows Server 2008 R2 for Itanium-based Systems Service Pack 1


Windows 8 and Windows 8.1


Windows 8 for 32-bit Systems
Windows 8 for x64-based Systems
Windows 8.1 for 32-bit Systems
Windows 8.1 for x64-based Systems


Windows Server 2012 and Windows Server 2012 R2


Windows Server 2012
Windows Server 2012 R2


Windows RT and Windows RT 8.1


Windows RT
Windows RT 8.1


Server Core installation option


Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)
Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation
Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
Windows Server 2012 (Server Core installation)
Windows Server 2012 R2 (Server Core installation)


How To Fix The Vulnerability


To fix this problem and to ensure that your servelets/servers are not affected by this vulnerability, please proceed to install the latest patches by running Windows Update. In most Windows systems, log in as Administrator and then go to Start > All Programs > Windows Update.


Customers are advised to run Windows Update to patch their servelets/servers immediately.


More information:


Microsoft posts critical patch for huge Windows vulnerability that affects all modern machines
Potentially catastrophic bug bites all versions of Windows. Patch now
Microsoft Schannel Bug Latest in Long Line of Serious Crypto Flaws


Request Assistance


If needed, we will perform the patch installation for you at a one-time discounted fee of $25. Please submit your order at Order -> Additional Services -> Select Vulnerability Fix: Bash Bug/ Shellshock OR Windows SCHANNEL FIX - $25


Or please first open a support ticket and give us the hostname, ip address and OS template.You can find this information on your servelet's control panel.


For example:Hostname: test-dd
IP Address: 103.25.202.81
OS Template: CentOS 6.5 (64-bit) 20140123a

Thank you.


 


SimplerCloud Support Team