<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Microsoft Jet Database Engine Attacked Through Word</title>
	<atom:link href="http://blogs.mcafee.com/mcafee-labs/2008/03/21/microsoft-jet-database-engine-attacked-through-word/feed" rel="self" type="application/rss+xml" />
	<link>http://blogs.mcafee.com/mcafee-labs/microsoft-jet-database-engine-attacked-through-word</link>
	<description></description>
	<lastBuildDate>Sat, 12 May 2012 04:55:36 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Petievich</title>
		<link>http://blogs.mcafee.com/mcafee-labs/microsoft-jet-database-engine-attacked-through-word/comment-page-1#comment-15744</link>
		<dc:creator>Petievich</dc:creator>
		<pubDate>Mon, 07 Apr 2008 16:24:51 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com/2008/03/21/microsoft-jet-database-engine-attacked-through-word/#comment-15744</guid>
		<description>I have noticed rumbling about something called &quot;Postcard&quot;.   Is this a present threat?........George</description>
		<content:encoded><![CDATA[<p>I have noticed rumbling about something called &#8220;Postcard&#8221;.   Is this a present threat?&#8230;&#8230;..George</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Craig Schmugar</title>
		<link>http://blogs.mcafee.com/mcafee-labs/microsoft-jet-database-engine-attacked-through-word/comment-page-1#comment-15743</link>
		<dc:creator>Craig Schmugar</dc:creator>
		<pubDate>Wed, 26 Mar 2008 18:10:40 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com/2008/03/21/microsoft-jet-database-engine-attacked-through-word/#comment-15743</guid>
		<description>Vincent: Yes, that was a horrible typo.  Fixed.

Duffman:  I could have stated it more clearly, but the fact is that Microsoft has treated Access related exploits (such as MS Jet) very different from say Word exploits.  And their latest Security Advisory covers an MS Jet DB vulnerability (not Word).  So while they have yet to change their position on MDB files in terms of considering them &quot;safe&quot;, they have changed their process/response for at least this case (so far).</description>
		<content:encoded><![CDATA[<p>Vincent: Yes, that was a horrible typo.  Fixed.</p>
<p>Duffman:  I could have stated it more clearly, but the fact is that Microsoft has treated Access related exploits (such as MS Jet) very different from say Word exploits.  And their latest Security Advisory covers an MS Jet DB vulnerability (not Word).  So while they have yet to change their position on MDB files in terms of considering them &#8220;safe&#8221;, they have changed their process/response for at least this case (so far).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Duffman</title>
		<link>http://blogs.mcafee.com/mcafee-labs/microsoft-jet-database-engine-attacked-through-word/comment-page-1#comment-15742</link>
		<dc:creator>Duffman</dc:creator>
		<pubDate>Tue, 25 Mar 2008 12:02:20 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com/2008/03/21/microsoft-jet-database-engine-attacked-through-word/#comment-15742</guid>
		<description>This sentance: &quot;and therefore Microsoft stuck to their &#8220;MDB files are unsafe&#8221; story.  Well thatâ€™s changed.&quot; really needs  to be rewritten, as is it looks as if Microsoft claims of MDB files are unsafe has changed (IE MDB files are now safe). When you are really saying is that databases are now attacked by means other then MDB files. It is really confusing when other websites quote only a part of the paragraph.</description>
		<content:encoded><![CDATA[<p>This sentance: &#8220;and therefore Microsoft stuck to their &ldquo;MDB files are unsafe&rdquo; story.  Well thatâ€™s changed.&#8221; really needs  to be rewritten, as is it looks as if Microsoft claims of MDB files are unsafe has changed (IE MDB files are now safe). When you are really saying is that databases are now attacked by means other then MDB files. It is really confusing when other websites quote only a part of the paragraph.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Vincent Leong</title>
		<link>http://blogs.mcafee.com/mcafee-labs/microsoft-jet-database-engine-attacked-through-word/comment-page-1#comment-15741</link>
		<dc:creator>Vincent Leong</dc:creator>
		<pubDate>Tue, 25 Mar 2008 09:54:40 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com/2008/03/21/microsoft-jet-database-engine-attacked-through-word/#comment-15741</guid>
		<description>There might be a typo: &quot;Microsoft states that Msjet40.dll versions lower than 4.0.9505.0 are not vulnerable.&quot;

From Microsoft Security Advisory 950627: &quot;If the version of Msjet40.dll is lower than 4.0.9505.0, you have a vulnerable version of the Microsoft Jet Database Engine.&quot;

You meant they *are* vulnerable?

Cheers, Vincent</description>
		<content:encoded><![CDATA[<p>There might be a typo: &#8220;Microsoft states that Msjet40.dll versions lower than 4.0.9505.0 are not vulnerable.&#8221;</p>
<p>From Microsoft Security Advisory 950627: &#8220;If the version of Msjet40.dll is lower than 4.0.9505.0, you have a vulnerable version of the Microsoft Jet Database Engine.&#8221;</p>
<p>You meant they *are* vulnerable?</p>
<p>Cheers, Vincent</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: luc</title>
		<link>http://blogs.mcafee.com/mcafee-labs/microsoft-jet-database-engine-attacked-through-word/comment-page-1#comment-15740</link>
		<dc:creator>luc</dc:creator>
		<pubDate>Mon, 24 Mar 2008 16:19:38 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com/2008/03/21/microsoft-jet-database-engine-attacked-through-word/#comment-15740</guid>
		<description>if Vista is not affected, this does NOT mean it has been silenty fixed, but this means the code is different or more robust, and so Vista version is not affected</description>
		<content:encoded><![CDATA[<p>if Vista is not affected, this does NOT mean it has been silenty fixed, but this means the code is different or more robust, and so Vista version is not affected</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Aa'ed Alqarta</title>
		<link>http://blogs.mcafee.com/mcafee-labs/microsoft-jet-database-engine-attacked-through-word/comment-page-1#comment-15739</link>
		<dc:creator>Aa'ed Alqarta</dc:creator>
		<pubDate>Sun, 23 Mar 2008 06:03:29 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.mcafee.com/2008/03/21/microsoft-jet-database-engine-attacked-through-word/#comment-15739</guid>
		<description>Who still allows &quot;.zip&quot; attachments in? why we keep running in the same loop ? Attackers are winning because they are 100% sure, that there are users who left the antispam filter working under the default settings. Or thinking that the running AV will protect against all threats for the next 10 years. Wake up dudes !


http://extremesecurity.blogpsot.com</description>
		<content:encoded><![CDATA[<p>Who still allows &#8220;.zip&#8221; attachments in? why we keep running in the same loop ? Attackers are winning because they are 100% sure, that there are users who left the antispam filter working under the default settings. Or thinking that the running AV will protect against all threats for the next 10 years. Wake up dudes !</p>
<p>http://extremesecurity.blogpsot.com</p>
]]></content:encoded>
	</item>
</channel>
</rss>

