Nessus
[Top] [All Lists]

Re: Re-released Microsoft Patches.

To: "John Scherff" <JScherff@24hourfit.com>
Subject: Re: Re-released Microsoft Patches.
From: "Doug Nordwall" <raleel@gmail.com>
Date: Fri, 10 Nov 2006 10:35:29 -0500
Cc: nessus@lists.nessus.org
Delivered-to: sp-com-lists@consult.net
Delivered-to: nessus-list1@securepoint.com
Delivered-to: nessus@lists.nessus.org
Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:references; b=c+wPc36NMih3FuF1HAzZvmwZdFmdFJws4/qRlOp+fo0lC2PaK3Y41vbjmDLqoYghCHfzwn+SgIJAmmeaOqxHQXcjjQTRNef44HtWHPdCSckbIMdYr+bOFnHAgVFGDl8lsi6iR++XX5Oxie0M3G5930JEXbFDl/SKvEzEEm51XBk=
In-reply-to: <169658C0C845EC438759DB8B8BC7065403BC05E1@NOC-EXCH1.24hourfit.com>
List-archive: <http://mail.nessus.org/pipermail/nessus>
List-help: <mailto:nessus-request@list.nessus.org?subject=help>
List-id: Discussion of Nessus software <nessus.list.nessus.org>
List-post: <mailto:nessus@list.nessus.org>
List-subscribe: <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=subscribe>
List-unsubscribe: <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=unsubscribe>
References: <319223270611100710w1b8995c6i846ba5ca5a4e93db@mail.gmail.com> <169658C0C845EC438759DB8B8BC7065403BC05E1@NOC-EXCH1.24hourfit.com>
Sender: nessus-bounces@list.nessus.org
If you can compile a list of those, I bet we'd find that the checks are not an thorough.. maybe just a registry check

On 11/10/06, John Scherff < JScherff@24hourfit.com> wrote:

We are having a similar problem, but in reverse.  In some cases, Nessus will report that a patch is missing, but the patch has been superseded by another patch which HAS been applied.  The same thing also sometimes occurs when a patch is rolled into a service pack.

 

Rate of occurance: out of approximately 150 Windows 2000 and 2003 servers (mostly 2003), we have around 10-12 verified (via Shavlik and manual inspection) false-positives.

 

John Scherff

 


From: nessus-bounces@list.nessus.org [mailto: nessus-bounces@list.nessus.org] On Behalf Of Zate Berg
Sent: Friday, November 10, 2006 7:10 AM
To: nessus@lists.nessus.org
Subject: Re-released Microsoft Patches.

 

I am having an issue with Nessus not finding re released MSFT patches, such as MS06-040, where as shavlik does.  It finds the other missing patches fine.

How are the MSFT plugins generated and is there a provision to cover re-releases that have a different file version ?

--
Zate


_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus




--
Doug Nordwall
Unix, Network, and Security Administrator
Noise proves nothing. Often a hen who has merely laid an egg cackles as if she laid an asteroid. -- Mark Twain
_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus
<Prev in Thread] Current Thread [Next in Thread>