Microsoft Scrambles to Fix Security Hole in Vista, Server 2008

REDMOND, Wash. — Microsoft has alerted users to a critical security hole in both Windows Vista and Windows Server 2008. The flaw does not affect users of Windows 7.

The flaw leaves both operating systems vulnerable to malicious remote control, though in many cases, the systems will simply stop responding and restart.

Microsoft Server 2008 is the tech giant’s latest entry into server-management operating systems. The security flaw specifically affects Microsoft Server’s server message block, or SMB, functionality. SMB functionality oversees shared access to files, printers, serial ports and other communications.

"Microsoft is investigating new public reports of a possible vulnerability in Microsoft Server Message Block (SMB) implementation," Microsoft said. "We are not aware of attacks that try to use the reported vulnerabilities or of customer impact at this time."

Admins and other tech professionals should be advised that the security breach is what’s known as a “zero-day” flaw, meaning that hackers figured it out before Microsoft did.

But that doesn’t mean Microsoft is waiting around. The company has enlisted the aid of other security software companies to plug the hole. Microsoft may be forced to release an extra patch outside of its usual software release cycle to address the problem.

Users who are still working with the “release candidate” version of Windows 7 are still vulnerable to the attack. Release candidates are preliminary versions of software that companies distribute in hopes of ferreting out bugs and other problems.

The final version of Windows 7 is not vulnerable to the flaw. Neither are Windows XP or Windows 2000.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Pineapple Support Partners with Better Life Science's 'STD Hero'

Pineapple Support has partnered with Better Life Science brand STD Hero.

Brazil Sets Enforcement Timeline for New AV Rules

Brazil’s National Data Protection Authority (ANPD) on Friday published a timeline outlining planned steps for monitoring and enforcing age verification under the country’s Digital Statute for Children and Adolescents (Digital ECA), which took effect Tuesday.

Utah Governor Signs 'Porn Tax' and VPN Rule Into Law

Governor Spencer Cox on Friday signed into law a bill to tax adult websites and make them liable if minors circumvent geolocation.

BranditScan Launches 'White Glove' Subscription Tier

BranditScan has launched its new White Glove subscription tier for creators.

German Court: Regulator Can't Block Creator's IG Account, Only Posts

A German court has ruled that while a regional media regulatory agency may block specific Instagram posts that include material deemed harmful to minors, it cannot ban an entire Instagram account due to such a post.

Brazil Lays Out Preliminary Guidelines for New AV Requirements

President Luiz Inácio Lula da Silva on Wednesday signed a decree establishing guidelines for new regulations requiring adult websites to age-verify users located in Brazil.

Senate Committee Debates Section 230 Reform

The U.S. Senate Committee on Commerce, Science, and Transportation held a hearing Wednesday on potential changes to Section 230 of the Communications Decency Act, which protects interactive computer services — including adult platforms — from liability for user-generated content.

Pearl Industry Network Offers Free Creator Memberships

Industry trade group Pearl Industry Network (PiN) has launched its free creator membership initiative.

Sam Bird Acquires Fanblast

Sam Bird, former co-director of global talent agency Surge, has acquired creator monetization tool Fanblast and named himself CEO.

'SheHerGirls' Launches Through Paysite.com

The braintrust behind PoleVixens has officially launched a new membership site, SheHerGirls, also through Paysite.com.

Show More