Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Nessus-Users
[Top] [All Lists]

Re: Re-released Microsoft Patches.

Subject: Re: Re-released Microsoft Patches.
Date: Fri, 10 Nov 2006 10:35:29 -0500
If you can compile a list of those, I bet we'd find that the checks are not
an thorough.. maybe just a registry check

On 11/10/06, John Scherff <JScherff@24hourfit.com> wrote:

We are having a similar problem, but in reverse. In some cases, Nessus will report that a patch is missing, but the patch has been superseded by another patch which HAS been applied. The same thing also sometimes occurs when a patch is rolled into a service pack.



Rate of occurance: out of approximately 150 Windows 2000 and 2003 servers
(mostly 2003), we have around 10-12 verified (via Shavlik and manual
inspection) false-positives.



*John Scherff*


------------------------------

*From:* nessus-bounces@list.nessus.org [mailto:
nessus-bounces@list.nessus.org] *On Behalf Of *Zate Berg
*Sent:* Friday, November 10, 2006 7:10 AM
*To:* nessus@lists.nessus.org
*Subject:* Re-released Microsoft Patches.



I am having an issue with Nessus not finding re released MSFT patches,
such as MS06-040, where as shavlik does.  It finds the other missing patches
fine.

How are the MSFT plugins generated and is there a provision to cover
re-releases that have a different file version ?

--
Zate

_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus




--
Doug Nordwall
Unix, Network, and Security Administrator
Noise proves nothing. Often a hen who has merely laid an egg cackles as if
she laid an asteroid. -- Mark Twain
_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus
<Prev in Thread] Current Thread [Next in Thread>