<?xml version="1.0" encoding="ISO-8859-1" ?>
 <rss version="0.91">

 <channel>
 <title>Windows-Help.NET Newsletter</title>
 <link>http://windowsnewsletter.com/</link>
 <description>Windows-Help.NET Newsletter</description>
 <language>en-us</language>

<item>
 <title>01. Microsoft Issues Highly Critical Windows Fix</title>
 <link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70616</link>
 <description>
&lt;b&gt;&lt;i&gt;by Arie Slob&lt;/i&gt;&lt;/b&gt;
&lt;/p&gt;&lt;p&gt;
Hello Windows users,
&lt;/p&gt;&lt;p&gt;
&lt;table width=&quot;100%&quot; border=&quot;0&quot; cellspacing=&quot;3&quot; cellpadding=&quot;3&quot; valign=&quot;TOP&quot;&gt;
&lt;tr&gt;&lt;td valign=&quot;TOP&quot;&gt;
This week, Microsoft published two new Windows security fixes (see below) for the month February (after it had published a fix for Internet Explorer the previous week). 
&lt;/p&gt;&lt;p&gt;
One of the fixes has attracted more attention then usual however. It is the &lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70601&quot; target=&quot;_blank&quot;&gt;MS04-007&lt;/a&gt;&lt;/b&gt; fix, pertaining to a vulnerability in the ASN.1 library.
&lt;/td&gt;&lt;td width=&quot;160&quot; bgcolor=&quot;#FFCCCC&quot;&gt;
&lt;div align=&quot;center&quot;&gt;&lt;b&gt;Affected software:&lt;/b&gt;&lt;/div&gt; 
&lt;ul&gt;&lt;li&gt;&lt;p class=&quot;footer&quot;&gt;Windows NT
&lt;li&gt;&lt;p class=&quot;footer&quot;&gt;Windows 2000
&lt;li&gt;&lt;p class=&quot;footer&quot;&gt;Windows XP
&lt;li&gt;&lt;p class=&quot;footer&quot;&gt;Windows Server 2003&lt;/ul&gt;
&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;
&lt;/p&gt;&lt;p&gt;
The vulnerability is caused by an unchecked buffer in the ASN.1 Library, which could result in a buffer overflow. An attacker who successfully exploited this buffer overflow vulnerability could execute code with system privileges on an affected system. The attacker could then take any action on the system, including installing programs, viewing data, changing data, deleting data, or creating new accounts with full privileges.
&lt;/p&gt;&lt;p&gt;
The controversy surrounding this fix is caused by the fact that this vulnerability had been discovered 7 months ago by &lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70602&quot; target=&quot;_blank&quot;&gt;eEye Digital Security&lt;/a&gt;&lt;/b&gt;. According to eEye the ASN vulnerability is more dangerous than previous flaws that spawned Nimda, Code Red and Sapphire worms, because the ASN library is widely used by Windows security subsystems, so the vulnerability is exposed through an array of authentication protocols.
&lt;/p&gt;&lt;p&gt;
Marc Maiffret, chief hacking officer and cofounder of eEye Digital Security criticized Microsoft for the lag time between eEye's discoveries and Microsoft's fixes saying: &quot;We contacted Microsoft about these vulnerabilities 200 days ago, which is insane.&quot; Microsoft defends the whopping 7 months it took to fix the flaws as necessary because the company needed to ensure that a patch to such central Windows components didn't break software or cause other problems. &quot;We really took the steps to make sure our investigation was as broad and deep as possible,&quot; Microsoft security program manager Stephen Toulouse said. 
&lt;/p&gt;&lt;p&gt;
Security experts Sophos, said computer users should keep a sense of proportion about the flaw, however. 
&lt;/p&gt;&lt;p&gt;
&quot;At the moment, we haven't seen any hackers or worms exploiting this hole, but that doesn't mean computer users don't need to protect their PCs,&quot; said Sophos' Graham Cluley, senior technology consultant for Sophos. &quot;Everyone should ensure their computer is patched against this vulnerability as soon as possible. This announcement couldn't have come at a worse time for Microsoft, as they try and build their reputation for security.&quot; 
&lt;/p&gt;&lt;p&gt;
So, go and visit &lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70603&quot; target=&quot;_blank&quot;&gt;windowsupdate.com&lt;/a&gt;&lt;/b&gt; and get all your friends &amp; relatives to do likewise!
&lt;br&gt;&lt;p class=&quot;footer&quot;&gt;
&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70604&quot; target=&quot;_blank&quot;&gt;Give your comments on this article.&lt;/a&gt;&lt;/b&gt;
  </description>
 </item> 
<item>
<title>02. Microsoft Security</title>
<link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70617</link>
<description>
&lt;b&gt;Microsoft Windows Security Bulletin Summary for February, 2004&lt;/b&gt;
&lt;/p&gt;&lt;p&gt;
&lt;b&gt;Severity Rating: Critical&lt;/b&gt;
&lt;/p&gt;&lt;p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70605&quot; target=&quot;_blank&quot;&gt;Microsoft Security Bulletin MS04-007 - ASN .1 Vulnerability Could Allow Code Execution&lt;/a&gt;
&lt;/ul&gt;&lt;/p&gt;&lt;p&gt;
&lt;/p&gt;&lt;hr&gt;&lt;p&gt;
&lt;b&gt;Severity Rating: Important&lt;/b&gt;
&lt;/p&gt;&lt;p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70606&quot; target=&quot;_blank&quot;&gt;Microsoft Security Bulletin MS04-006 - Vulnerability in the Windows Internet Naming Service (WINS) Could Allow Code Execution&lt;/a&gt;
&lt;/ul&gt;&lt;/p&gt;
</description>
</item>
<item>
<title>03. Recent Support BBS Postings</title>
<link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70645</link>
<description>
&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70607&quot; target=&quot;_blank&quot;&gt;Changing Taskbar Clock Info&lt;/a&gt; - Windows XP
&lt;br&gt;
&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70608&quot; target=&quot;_blank&quot;&gt;Going to raid, need info&lt;/a&gt; - Hardware
&lt;br&gt;
&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70609&quot; target=&quot;_blank&quot;&gt;Links won't open in a new window&lt;/a&gt; - Internet Explorer
&lt;br&gt;
&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70610&quot; target=&quot;_blank&quot;&gt;Mozilla Firefox 0.8 Release&lt;/a&gt; -  Netscape and Mozilla
</description>
</item>
<item>
<title>05. Recommended Web sites</title>
<link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70614</link>
<description>
Each month we will feature a few Web sites here, ones which sent us the most visitors to our Web site in the previous month. We would encourage you to visit these popular Web sites yourself!
&lt;/p&gt;&lt;p&gt;
Here are some sites in the Top 15 for January 2004:
&lt;li&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70611&quot; target=&quot;_blank&quot;&gt;Home Sight &amp; Sound &lt;/a&gt; - Comprehensive collection of links and home sight &amp; sound information.
&lt;li&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70612&quot; target=&quot;_blank&quot;&gt;Refdesk.com&lt;/a&gt; - &quot;The single best source for facts on the Net.&quot;
&lt;li&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70613&quot; target=&quot;_blank&quot;&gt;Experts Exchange&lt;/a&gt; - IT Professional Collaboration Network.
&lt;/ul&gt;&lt;p&gt;
The Top 15 sites are listed on our &lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70614&quot; target=&quot;_blank&quot;&gt;Web site&lt;/a&gt;.
</description>
</item>
<item>
<title>06. Web Site Updates</title>
<link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70615</link>
<description>
These pages were added/updated in the past week. Information on previously updated/added pages is available on the &lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70615&quot; target=&quot;_blank&quot;&gt;What's New?&lt;/a&gt; page for 1 month.
&lt;/p&gt;&lt;p class=&quot;lft&quot;&gt;
&lt;b&gt;Windows-Help.NET&lt;/b&gt;
&lt;/p&gt;&lt;p class=&quot;lft&quot;&gt;
Added: &lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70616&quot; target=&quot;_blank&quot;&gt;Microsoft Issues Highly Critical Windows Fix&lt;/a&gt;
&lt;br&gt;
Updated: &lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70617&quot; target=&quot;_blank&quot;&gt;Microsoft Windows Security Bulletin Summary for February, 2004&lt;/a&gt;
&lt;/p&gt;&lt;p class=&quot;lft&quot;&gt;
&lt;b&gt;Windows XP&lt;/b&gt;
&lt;/p&gt;&lt;p class=&quot;lft&quot;&gt;
Added: &lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70618&quot; target=&quot;_blank&quot;&gt;Critical Update for Windows Media Player (All Versions)&lt;/a&gt;
</description>
</item>
<item>
<title>7. Critical Update for Windows Media Player (All Versions)</title>
<link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70621</link>
<description>
This update contains a change to the behavior of Windows Media Player's ability to launch URLs in the local computer zone from other zones. You can help protect your computer by installing this update from Microsoft. After you install this item, you may have to restart your computer.
&lt;br&gt;&lt;br&gt;
&lt;b&gt;Supported Operating Systems:&lt;/b&gt; Windows 2000, Windows Server 2003, Windows XP
&lt;br&gt;&lt;br&gt;
&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70619&quot; target=&quot;_blank&quot;&gt;Download&lt;/a&gt;&lt;/b&gt;&lt;br&gt;[2.77 MB - English]
&lt;br&gt;&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70620&quot; target=&quot;_blank&quot;&gt;Other Languages&lt;/a&gt;&lt;/b&gt; 
&lt;br&gt;&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70621&quot; target=&quot;_blank&quot;&gt;More Info&lt;/a&gt;&lt;/b&gt;&lt;br&gt;
</description>
</item>
<item>
<title>8. Windows 2000 &amp; Windows NT 4 Source Code Leaks</title>
<description>
Microsoft Corp. says incomplete portions of the source code were leaked over the Internet, but analysts caution it's too early to say how much damage the leak may cause. 
&lt;br&gt;&lt;br&gt;
Sources indicate that the data is roughly 650 MB (the size of a typical CD-ROM), whereas the entire source code would probably exceed 40 GB.
&lt;br&gt;&lt;br&gt;
&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70622&quot; target=&quot;_blank&quot;&gt;Microsoft Statement&lt;/a&gt;&lt;/b&gt;
</description>
</item>
<item>
<title>9. Excel 2003/2002 Add-in: MSN Money Stock Quotes</title>
<description>
This add-in for Excel 2003 and Excel 2002 allows you to get dynamic stock quotes from the MSN Money Web site. The tools and features found in Excel are particularly well suited to analyzing financial data such as stocks. This add-in allows you to easily gather and study the stocks of interest to you, refresh your quotes when you want, and readily change or modify the quotes gathered.
&lt;br&gt;&lt;br&gt;
&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70623&quot; target=&quot;_blank&quot;&gt;Download&lt;/a&gt;&lt;/b&gt;&lt;br&gt;[387 KB - English]
&lt;br&gt;&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70624&quot; target=&quot;_blank&quot;&gt;Other Languages&lt;/a&gt;&lt;/b&gt; [FR/IT/DE]
</description>
</item>
<item>
<title>10. Tip: Internet Explorer Cannot Connect to Secure Web Sites</title>
<link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70625</link>
<description>
Quite a number of people have been reporting problems connecting to Secure Web sites (the ones that start with &lt;b&gt;https://&lt;/b&gt; ). There are a number of possible causes, which in turn have a number of suggested fixes.
&lt;br&gt;&lt;br&gt;
&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70625&quot; target=&quot;_blank&quot;&gt;Read Full Article&lt;/a&gt;&lt;/b&gt;
</description>
</item>
<item>
<title>11. Tip: Kernel32.dll errors caused by IEXPLORE</title>
<link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70627</link>
<description>
When you use Microsoft Internet Explorer to access the Internet, you may receive error messages caused by IEXPLORE.
&lt;br&gt;&lt;br&gt;
&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70627&quot; target=&quot;_blank&quot;&gt;Read Full Article&lt;/a&gt;&lt;/b&gt;
</description>
</item>
<item>
<title>12. Clicking hyperlink in an Outlook Express e-mail message, causes Internet Explorer to display a 404 Object Not Found error page</title>
<link>http://windows-help.net/cgi-bin/2004/7.06.cgi?70628</link>
<description>
When you click a hyperlink in an e-mail message in Microsoft Outlook Express, the wrong page appears in Microsoft Internet Explorer, or the following error page appears: 
&lt;br&gt;&lt;br&gt;
&lt;b&gt;http:/1.0 404 Object Not Found&lt;/b&gt;
&lt;br&gt;&lt;br&gt;
&lt;b&gt;&lt;a href=&quot;http://windows-help.net/cgi-bin/2004/7.06.cgi?70628&quot; target=&quot;_blank&quot;&gt;Read Microsoft Knowledge Base Article&lt;/a&gt;&lt;/b&gt;
</description>
</item>

</channel>
</rss>

