Microsoft Scrambles to Fix Security Hole in Vista, Server 2008

REDMOND, Wash. — Microsoft has alerted users to a critical security hole in both Windows Vista and Windows Server 2008. The flaw does not affect users of Windows 7.

The flaw leaves both operating systems vulnerable to malicious remote control, though in many cases, the systems will simply stop responding and restart.

Microsoft Server 2008 is the tech giant’s latest entry into server-management operating systems. The security flaw specifically affects Microsoft Server’s server message block, or SMB, functionality. SMB functionality oversees shared access to files, printers, serial ports and other communications.

"Microsoft is investigating new public reports of a possible vulnerability in Microsoft Server Message Block (SMB) implementation," Microsoft said. "We are not aware of attacks that try to use the reported vulnerabilities or of customer impact at this time."

Admins and other tech professionals should be advised that the security breach is what’s known as a “zero-day” flaw, meaning that hackers figured it out before Microsoft did.

But that doesn’t mean Microsoft is waiting around. The company has enlisted the aid of other security software companies to plug the hole. Microsoft may be forced to release an extra patch outside of its usual software release cycle to address the problem.

Users who are still working with the “release candidate” version of Windows 7 are still vulnerable to the attack. Release candidates are preliminary versions of software that companies distribute in hopes of ferreting out bugs and other problems.

The final version of Windows 7 is not vulnerable to the flaw. Neither are Windows XP or Windows 2000.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

2026 XBIZ LA Conference Schedule Announced

XBIZ is pleased to announce the release of the full show schedule for the XBIZ 2026 conference, set to take place Jan. 12-15 at the Kimpton Everly Hotel in Hollywood.

Needemand Joins ASACP as Corporate Sponsor

French startup company Needemand has signed on as the latest corporate sponsor for Association of Sites Advocating Child Protection (ASACP).

Utah State Legislator Proposes New 'Porn Tax'

A Utah state senator introduced a bill on Monday that would impose a 7% tax on the gross receipts of adult websites doing business in that state, plus require adult sites to pay an annual $500 fee.

Carlotta Champagne is LoyalFans' 'Featured Creator' for January

LoyalFans has named Carlotta Champagne as its Featured Creator for January.

Pineapple Support Relaunches Site

Pineapple Support has updated and relaunched its website.

Arcom-Targeted Sites Implement Age Verification in France

Five high-traffic adult websites based outside of France have implemented age verification as required under the nation’s Security and Regulation of the Digital Space (SREN) law, after receiving warnings from French media regulator Arcom.

Goddess Lilith Launches 'Adultpreneurs' Networking Site

Goddess Lilith has launched Adultpreneurs, a new community and networking site.

Adult Shoot Location Marketplace 'FckSpace' Launches

FckSpace, a new platform aimed at simplifying location sourcing for adult productions, is now live

Florida Attorney General Dismisses AV Suit Against Segpay

The Florida attorney general’s office on Monday agreed to dismiss claims against payment processor Segpay in a lawsuit over alleged noncompliance with the state’s age verification law.

FTC Weighs Reboot of 'Click to Cancel' Rulemaking Process

The Federal Trade Commission has invited public comments on a petition to renew trade regulation rulemaking concerning negative option plans, after a federal court previously vacated a “click-to-cancel” rule aimed at making it easier for consumers to cancel online subscriptions.

Show More