Page 1 of 1

Microsoft patching EOL Windows versions?

Posted: Sat May 13, 2017 4:29 pm
by barbaz

Re: Microsoft patching EOL Windows versions?

Posted: Sat May 13, 2017 7:47 pm
by GµårÐïåñ
Yes, they did. It is a greater good situation.

It is nice to see some companies still have a soul; even if for nothing else than avoiding bad reputation for themselves. Although in all fairness, since they told you a long time ago they are done supporting it, any bitching on the part of the public is just ignorant anyway.

Re: Microsoft patching EOL Windows versions?

Posted: Sat May 13, 2017 9:57 pm
by morganism
MsMpEng: Remotely Exploitable Type Confusion in Windows 8, 8.1, 10, Windows Server, SCEP, Microsoft Security Essentials, and more.

https://bugs.chromium.org/p/project-zer ... 252&desc=5

and the twit feed for the discoverer is pretty good info for other researchers too

Tavis Ormandy

https://twitter.com/taviso

Re: Microsoft patching EOL Windows versions?

Posted: Sat May 13, 2017 10:22 pm
by GµårÐïåñ
Yes, even Tavis was impressed by the unprecedentedly quick patch and release by Microsoft before a single in the wild event ever took place. I am the last guy to be a M$ fanboy but when credit is deserved, it is due and sincerely given.

Re: Microsoft patching EOL Windows versions?

Posted: Wed Jun 14, 2017 6:35 pm
by barbaz
Looks like this might not be a one-time thing - https://arstechnica.com/security/2017/0 ... w-brokers/

Re: Microsoft patching EOL Windows versions?

Posted: Wed Jun 14, 2017 8:48 pm
by therube
(Thanks for posting that.)

Re: Microsoft patching EOL Windows versions?

Posted: Wed Jun 14, 2017 8:58 pm
by GµårÐïåñ
Yes, Microsoft is generally pretty generous with their backward compatibility and doing damage control beyond their duty.

They tend to respect and honor public interest, but I think on a level it is a mistake.