Yes, I read the email you probably read this morning. No, I don’t see any reason to recommend that most people update their machines — not yet. Here
[See the full post at: Yes, we’re still at MS-DEFCON 2 – No need to install any September updates]
![]() |
Patch reliability is unclear, but widespread attacks make patching prudent. Go ahead and patch, but watch out for potential problems. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Yes, we’re still at MS-DEFCON 2 – No need to install any September updates
Home » Forums » Newsletter and Homepage topics » Yes, we’re still at MS-DEFCON 2 – No need to install any September updates
- This topic has 28 replies, 17 voices, and was last updated 5 years, 1 month ago by
anonymous.
AuthorTopicwoody
ManagerViewing 16 reply threadsAuthorReplies-
Seff
AskWoody Plus -
woody
Manager -
Seff
AskWoody PlusAh! My sub expired this month and there’s no longer anything of interest in it to me as Patch Lady Susan is now here and the remaining articles are usually delving into the inner workings of Office and not much else, so I haven’t renewed.
2 users thanked author for this post.
-
-
anonymous
GuestTheOwner
AskWoody LoungerNew version of file “C:\Windows/system32/netevent.dll” caused wiped all messages in event manager (No MUI file found). My language is Czech, but before this change all events even in English was correct.
So all events which uses this dll are corrupted (for me is MEIx64 and e1dexpress).
File date is 12.8.2018 22:28 so i am not sure if is caused by September or August update.
Win 7 64 bit
1 user thanked author for this post.
Cybertooth
AskWoody Plus@woody, you wrote that
Should you be rushing out to install all of this month’s Windows patches because of ALPC? I don’t think so. First, it’s a privilege execution exploit — in plain English, that means it’s only usable if a miscreant already has access to your computer.
I’ve seen this kind of vulnerability description before, but I’ve never been entirely clear on what exactly it means when somebody says “if they have access to your computer.” Does it mean if they are sitting at your keyboard, or can it also mean if they have hacked remotely into your computer?
-
GoneToPlaid
AskWoody LoungerIt would mean either sitting at your keyboard or the latter (remote access gained via a malware exploit). The upshot is that access is access, regardless of how such access was obtained.
1 user thanked author for this post.
-
Seff
AskWoody PlusJust a reminder that anyone phoning you and purporting to be from Microsoft or an ISP (often not yours, of course) and claiming to have noted an issue on your computer which they can fix should not be given remote access to it. That is a scam, and the only thing that will be done with your computer is the installation of malware.
I know it’s obvious, and nobody with the wit to frequent this site would fall for it, but I’ve just read an account in the UK news today of a professional financial adviser who fell for a con trick from financial fraudsters and lost almost a million pounds in the process. These people are trained to be convincing! Fortunately in that case the gang were caught and have been jailed for terms up to 13 years. They took just under 3 million pounds in total, including the life savings of a woman whose mother was struggling with cancer. Exercise caution, and don’t think it can’t happen to you!
3 users thanked author for this post.
-
honx
AskWoody LoungerThis is the zero-day exploit for Task Scheduler revealed on Twitter by @SandboxEscaper
why do people always have to reveal exploits and security holes so that malware-******** can use it to infect other peoples computers?
wouldn’t it be enough to report it to microsoft so that they can fix it? no, it has to be public for malware to arise… i don’t get it…Edit: Please refer to askwoody-lounge-rules regarding foul language.
PC: Windows 7 Ultimate, 64bit, Group B
Notebook: Windows 8.1, 64bit, Group BRsebas
AskWoody LoungerRegarding KB4457144. I have a laptop – Windows 7 Home Premium 64bit and a Desktop – Windows 7 Home Premium 32 bit. After installing update KB4457144 ie11 stopped working on both computers. I reset the IE advanced and security setting on both machines but that did not solve the problem. I also attempted to chat with Microsoft and after waiting over 40 minutes with no response I gave up. I uninstalled the update on both machines and IE now works. Anyone else have this problem?
RJS
-
PKCano
Manager
anonymous
Guest-
geekdom
AskWoody_MVPRead abbodi86’s answer here:
https://www.askwoody.com/forums/topic/solution-for-the-error-0x8000fff-in-windows-7/#post-217455On permanent hiatus {with backup and coffee}
offline▸ Win10Pro 2004.19041.572 x64 i3-3220 RAM8GB HDD Firefox83.0b3 WindowsDefender
offline▸ Acer TravelMate P215-52 RAM8GB Win11Pro 22H2.22621.1265 x64 i5-10210U SSD Firefox106.0 MicrosoftDefender
online▸ Win11Pro 22H2.22621.1992 x64 i5-9400 RAM16GB HDD Firefox116.0b3 MicrosoftDefender
abbodi86
AskWoody_MVPcatalog-only
likely will be included in the next Preview Rollup (unless they plan not to release one for this month)-
woody
Manager
Flypaper
AskWoody LoungerFWIW our company’s security guy was saying that the image exploit could be exploited even through Internet Explorer. Eg, An ad with an exploited image appears. Your computer downloads the image in order to display the ad banner. You’re now compromised.
There’s been talk on a couple security forums (I don’t have access so I haven’t read) regarding this. Could be an overreaction, but I don’t think so as the exploit is in how Windows handles pictures, not any specific application.
1 user thanked author for this post.
columbia2011
AskWoody LoungerAfter installing .NET security patches to address CVE-2018-8421, SharePoint 2010 workflows stop working (KB 4457916).
Here you can find a temporary solution: https://blogs.msdn.microsoft.com/rodneyviana/2018/09/13/after-installing-net-security-patches-to-address-cve-2018-8421-sharepoint-workflows-stop-working/1 user thanked author for this post.
anonymous
GuestNoel Carboni
AskWoody_MVPAm installing Windows 7 September Updates on my Win 7 test virtual machine.
Offered to a system previously up to date “Group A” style: 3 Important updates only:
Beyond the normal Windows Update servers (ds.download.windowsupdate.com, fe2.update.microsoft.com, and download.windowsupdate.com), as usual lately both a setup.exe that was dropped in my TEMP folder and the Windows Installer tried to access http://www.microsoft.com online (but in both cases were denied by my firewall). Blocking this hasn’t caused any update failures in the recent past and as expected the updates seemed to go in okay again today. Sorry, Microsoft, but I’m no fan of software that unexpectedly chooses to reach out to the Internet. I remember all too well when malware was what dropped executables into your TEMP folder and ran them.
Initial fitness for purpose testing hasn’t shown any new problems on this test VM so far, but of course I don’t do with it anywhere near all of what Windows can do (in other words, your mileage may vary; wait for Woody’s go-ahead).
In my case I am using Windows 7 to run a small server, so I am concerned about getting my testing done and getting the updates on my hardware to mitigate the potential new packet fragmentation vulnerability. I’ll report back here, of course, if I find any problems.
-Noel
krutzy
AskWoody Lounger-
Microfix
AskWoody MVP@krutzy Keep an eye on the MS-DEFCON indicator at the top of the page, when it switches to 3 or 4 it will be safe to patch. Patches are currently being checked and tested for September across all (in support) versions of Windows so, there’s quite a lot to check.
Instructions will then be given on methodology of patching, just in case there are any pitfalls! Just hang in there..Win8.1/R2 Hybrid lives on..
Nibbled To Death By Ducks
AskWoody PlusNTDBD here, reporting in with patch results:
Installed .NET KB4457918 and KB4457144 (Win 7 Sept Rollup…and…(drum roll)
No issues. (Yet.) (Stage Dir: Cue last two bars of the “Hallelujah Chorus”, then fall over.)
Thanks Woody, Patch Lady!!
(BTW, does KB stand for “Kibbles and Bits”?)
Win7 Pro SP1 64-bit, Dell Latitude E6330, Intel CORE i5 "Ivy Bridge", 12GB RAM, Group "0Patch", Multiple Air-Gapped backup drives in different locations. Linux Mint Greenhorn
--
"Nine out of 10 doctors say Acid Reflux is mainly caused by computers."1 user thanked author for this post.
krutzy
AskWoody Lounger-
Nibbled To Death By Ducks
AskWoody PlusIt had already been installed previously, in Sept. 2017, so there was no issue for me on that one.
Win7 Pro SP1 64-bit, Dell Latitude E6330, Intel CORE i5 "Ivy Bridge", 12GB RAM, Group "0Patch", Multiple Air-Gapped backup drives in different locations. Linux Mint Greenhorn
--
"Nine out of 10 doctors say Acid Reflux is mainly caused by computers."1 user thanked author for this post.
krutzy
AskWoody Loungeranonymous
GuestViewing 16 reply threads - This topic has 28 replies, 17 voices, and was last updated 5 years, 1 month ago by
-

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Three queries about the MS Outlook app on iPadOS
by
TonyC
2 hours, 17 minutes ago -
Microsoft outlook ignores the registry keys (Awaiting moderation)
by
Heri Harry
3 hours, 20 minutes ago -
Win 10 22H2 November patches: Why do I have these 4 Windows App Runtime apps?
by
WCHS
7 hours, 8 minutes ago -
KB5032278
by
fpefpe
7 hours, 37 minutes ago -
A web browser security testing & privacy testing tool.
by
TechTango
12 hours, 47 minutes ago -
IOS 17.1.2 looses text alert tone
by
J9438
1 hour, 47 minutes ago -
What to know about CentOS Linux EOL
by
Alex5723
19 hours, 28 minutes ago -
ESU announcement coming?
by
Susan Bradley
37 minutes ago -
December 2023 Office non-Security Updates
by
PKCano
13 hours, 37 minutes ago -
Widespread Printer Bug caused by Windows Store!
by
Intrepid
21 hours, 19 minutes ago -
Xbox question
by
fernlady
20 hours, 42 minutes ago -
Unfound Updates
by
rebop2020
17 hours, 23 minutes ago -
Thieves rob DC Uber Eats driver, reject Android phone for not being iPhone
by
Alex5723
18 hours, 56 minutes ago -
McAfee popup add (from micro. Store)
by
Robin Heckler
20 hours, 18 minutes ago -
Random Screen Shut Downs (Windows 11 Pro)
by
OkCarl
1 day, 8 hours ago -
CPU performance degradation after 23H2 update
by
Alex5723
1 day, 8 hours ago -
PDFgear
by
Alex5723
1 day, 8 hours ago -
I’m getting a new computer. I need instructions on setting it up CORRECTLY
by
Sly McNasty
22 hours, 21 minutes ago -
Microsoft will not activate a valid reinstall of Office 16
by
TomK
16 hours, 37 minutes ago -
Dell laptop Win 11 BLACK screen!
by
WSpfeldmann
6 hours, 36 minutes ago -
Firefox change from French to English.
by
DaveBRenn
19 hours, 7 minutes ago -
W10 22H2 Nov 2023 PT Update: No monsters here
by
Rob Kay
1 day, 7 hours ago -
Windows : Is This the End of ‘Intel Inside’ ?
by
Alex5723
1 day, 11 hours ago -
windows 10 upgrade to 11
by
ken
1 day, 16 hours ago -
WIN10 over 2 hours to boot
by
qaz
23 hours, 28 minutes ago -
How to do a Windows 11 repair install
by
Susan Bradley
1 hour, 5 minutes ago -
Ignore Susan Bradley’s Patch Watch at your peril
by
B. Livingston
1 day, 1 hour ago -
Tmas Greetings!
by
Max Stul Oppenheimer
1 day, 9 hours ago -
Microsoft Photos, Photos Legacy, and Windows 10
by
Ed Tittel
11 hours, 6 minutes ago -
Hardening your operating system
by
Susan Bradley
1 day, 9 hours ago
Recent blog posts
- December 2023 Office non-Security Updates
- How to do a Windows 11 repair install
- Ignore Susan Bradley’s Patch Watch at your peril
- Tmas Greetings!
- Microsoft Photos, Photos Legacy, and Windows 10
- Hardening your operating system
- Permanent posts for blocking Copilot
- Apple zero days fixed – November 30, 2023
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2023 by AskWoody Tech LLC. All Rights Reserved.