WINDOWS WORM WARNING: 'W32.Reatle.I@mm' exploiting MS05-039 and MS04-011 Vulnerabilities http://www.microsoft.com/technet/security/Bulletin/MS05-039.mspx http://www.microsoft.com/technet/security/bulletin/ms04-011.mspxACTION: Windows users need to apply MS05-039 and MS04-011 updates immediately. Anti-virus definitions should also be updated.
SUMMARYPreviously Microsoft announced vulnerabilities in Windows and Internet Explorer. One bulletin, MS05-039, described a vulnerability in the Windows Plug-and-Play feature. Another bulletin, MS04-011, described a vulnerability in the Windows Local Security Authority Service.
This week a worm was released that exploits these vulnerabilities. This worm, known as 'W32.Reatle.I@mm,' is quickly spreading across the Internet.
Microsoft systems lacking the Windows updates released to address the vulnerabilities described in MS05-039 & MS04-011 are at the greatest risk of being victimized.
RESOURCESMicrosoft Security Bulletin MS05-039:
http://www.microsoft.com/technet/security/Bulletin/MS05-039.mspxMicrosoft Security Bulletin MS04-011:
http://www.microsoft.com/technet/security/bulletin/ms04-011.mspxWindows Security Updates Summary for August 2005:
http://www.microsoft.com/security/bulletins/200508.mspxMicrosoft Security Bulletin Summary for August 2005:
http://www.microsoft.com/technet/security/bulletin/ms05-aug.mspxSymantec Advisory for Microsoft Windows Plug and Play Buffer Overflow
Vulnerability:
http://securityresponse.symantec.com/avcenter/security/Content/14513.htmlW32.Reatle.I@mm:
http://securityresponse.symantec.com/avcenter/venc/data/[email protected]Symantec Removal Tools
http://securityresponse.symantec.com/avcenter/tools.list.html