Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Re-released Microsoft Patches. |
|---|---|
| Date: | Fri, 10 Nov 2006 10:35:29 -0500 |
If you can compile a list of those, I bet we'd find that the checks are not an thorough.. maybe just a registry check
We are having a similar problem, but in reverse. In some cases, Nessus will report that a patch is missing, but the patch has been superseded by another patch which HAS been applied. The same thing also sometimes occurs when a patch is rolled into a service pack.
Rate of occurance: out of approximately 150 Windows 2000 and 2003 servers (mostly 2003), we have around 10-12 verified (via Shavlik and manual inspection) false-positives.
*John Scherff*
------------------------------
*From:* nessus-bounces@list.nessus.org [mailto: nessus-bounces@list.nessus.org] *On Behalf Of *Zate Berg *Sent:* Friday, November 10, 2006 7:10 AM *To:* nessus@lists.nessus.org *Subject:* Re-released Microsoft Patches.
I am having an issue with Nessus not finding re released MSFT patches, such as MS06-040, where as shavlik does. It finds the other missing patches fine.
How are the MSFT plugins generated and is there a provision to cover re-releases that have a different file version ?
-- Zate
_______________________________________________ Nessus mailing list Nessus@list.nessus.org http://mail.nessus.org/mailman/listinfo/nessus
-- Doug Nordwall Unix, Network, and Security Administrator Noise proves nothing. Often a hen who has merely laid an egg cackles as if she laid an asteroid. -- Mark Twain
_______________________________________________ Nessus mailing list Nessus@list.nessus.org http://mail.nessus.org/mailman/listinfo/nessus
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: Re-released Microsoft Patches., John Scherff |
|---|---|
| Next by Date: | Re: Re-released Microsoft Patches., Justin Doles |
| Previous by Thread: | RE: Re-released Microsoft Patches., John Scherff |
| Next by Thread: | Re: Re-released Microsoft Patches., Renaud Deraison |
| Indexes: | [Date] [Thread] [Top] [All Lists] |