Ending Soon! Save 33% on All Access

Microsoft Releases Patch to Fix 19-Year-Old Windows Bug The vulnerability could allow attackers to remotely execute code and take over a user's computer by tricking them into visiting a bad URL.

By Benjamin Kabin

Opinions expressed by Entrepreneur contributors are their own.

360b | Shutterstock.com

Microsoft has released a patch to fix a critical vulnerability for Windows that has existed for 19 years.

The flaw, which was discovered by IBM security researchers and privately disclosed to Microsoft in May, has been present in every Windows version since the release of Windows 95, nearly two decades ago.

According to a Microsoft security bulletin the vulnerability "could allow remote code execution if an attacker sends specially crafted packets to a Windows server." In other words, if attackers are able to trick users into visiting a bad URL they could infect and gain control of any unpatched Windows machine.

Related: 8 Ways to Protect Yourself From Microsoft's Dangerous Internet Explorer Bug

Windows 8.1, Windows 7 and Windows Vista users should update their computers as quickly as possible. However, users who still run Microsoft XP will still be left vulnerable as the company ended support for its 13-year-old operating system earlier this year.

Coined WinShock by some folks, the vulnerabilty scored a 9.3 out of 10 on the Common Vulnerability Scoring System (CVSS).

"This vulnerability has been sitting in plain sight for a long time despite many other bugs being discovered and patched in the same Windows library," writes IBM security researcher Robert Freeman on the IBM security blog.

Freeman went on to say that IBM hadn't come across any evidence that the bug had actually been exploited by Internet attackers but said it could have been sold in the six-figure range if it'd been discovered by the wrong people.

Related: Your Company Is Probably Going to Get Hacked. Here's How to Protect It.

Benjamin Kabin

Journalist

Benjamin Kabin is a Brooklyn-based technology journalist who specializes in security, startups, venture capital and social media.

Want to be an Entrepreneur Leadership Network contributor? Apply now to join.

Career

Is Consumer Services a Good Career Path for 2024? Here's the Verdict

Consumer services is a broad field with a variety of benefits and drawbacks. Here's what you should consider before choosing it as a career path.

Business News

'Creators Left So Much Money on the Table': Kickstarter's CEO Reveals the Story Behind the Company's Biggest Changes in 15 Years

In an interview with Entrepreneur, Kickstarter CEO Everette Taylor explains the decision-making behind the changes, how he approaches leading Kickstarter, and his advice for future CEOs.

Business Models

How to Become an AI-Centric Business (and Why It's Crucial for Long-Term Success)

Learn the essential steps to integrate AI at the core of your operations and stay competitive in an ever-evolving landscape.