Microsoft warns of first critical Windows 8, RT security flaws
Summary: Plug everything in and prepare the systems: Patch Tuesday is coming. Microsoft will release six security patches, four of them considered 'critical' for Windows 8, and Surface-ready Windows RT operating systems.
It's been less than a month since Windows 8 and Windows RT-powered Surface tablets were launched and went on sale, but Microsoft is already warning that the two next-generation operating systems contain critical security vulnerabilities that are due to be patched this coming Tuesday.
Among the various flaws, versions from Windows XP (Service Pack 3) all the way through to Windows 8 are affected, including versions of the Office suite, and versions of Windows Server. Released only in September, Windows Server 2012 requires patching to maintain maximum security.
The latest vulnerabilities include three critical security vulnerabilities for Windows 8, and one critical security vulnerability for the Surface-based Windows RT operating system. These flaws are considered "critical" and could allow remote code execution on vulnerable systems.

Among the flaws, a few patches will be delivered for Internet Explorer that will fix a flaw that allows drive-by attacks on vulnerable systems, such as if the user visits a malicious Web page through the browser. Older versions of Internet Explorer, versions IE6, IE7 and IE8, which run on Windows XP, will not be patched.
The latest version of Internet Explorer 10, exclusive to Windows 8 and Windows RT machines, contains no vulnerabilities that Microsoft is yet aware of.
For Office, where a machine could allow remote code execution if a user opens a malicious Office document. Rated as "important," it requires user intervention -- in this case, the code can only run if the user opens up the document.
In all, the six patches will fix 19 vulnerabilities, and will be released through the usual channels in the coming days -- on so-called "Patch Tuesday."
Kick off your day with ZDNet's daily email newsletter. It's the freshest tech news and opinion, served hot. Get it.
Talkback
...and here we go!
Re:
Moronic
Re:
Big difference
Update
My god..
Going through dumpsters is
iOS security updates
http://www.zdnet.com/apple-provides-197-security-reasons-to-upgrade-to-ios-6-7000004535/
BTW, did Apple fixed those security issues for devices that cannot run iOS 6, like the first generation iPad?
still no response to this
Do Windows users go on Apple threads to do the same thing? You guys are tools.
All the frickin' time
But think about it, 19 vulnerabilities identified in one month after TWO YEARS of development! Demand better. There are tools in every shed...
There are billions of vulnerebilities in every software
I'd much rather be informed of issues when they're detected and get a patch for it within a month than remain vulnerable for a year (in the case of Crapple) or officially vulnerable forever (in the case of Google, unless I make another hundreds dollor worth of payment to get the latest device)
And where does it say...
You don't work for anyone
Civility
OS Security "Flaws"
well said
it only comes to who fixes it fast..
as long as you only use apps from windows store your as safe as your are in
Compare android with WP8 and IOS, that makes more sense.
Microsoft fixes everything in very short time
But then, it's an Tamagotchi reincarnated, so you need to take care of the poor thing, or it dies.
Apple way
So you prefer the Apple way, don't fix security issues and keep users exposed until the next major release, like they did with iOS 6. BTW, did Apple make available the security fixes in iOS 6 to users that cannot upgrade, like the first gen iPad? Maybe the Tamagotchi way of MS is better, don't you think?