Account Options

  1. Sign in
The old Google Groups will be going away soon, but your browser is incompatible with the new version.
Google Groups Home
« Groups Home
KB932596 breaks unsigned drivers in x64
There are currently too many topics in this group that display first. To make this topic appear first, remove this option from another topic.
There was an error processing your request. Please try again.
flag
  6 messages - Collapse all  -  Translate all to Translated (View all originals)
The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
 
From:
To:
Cc:
Followup To:
Add Cc | Add Followup-to | Edit Subject
Subject:
Validation:
For verification purposes please type the characters you see in the picture below or the numbers you hear by clicking the accessibility icon. Listen and type the numbers you hear
 
Peter Lawton  
View profile  
 More options Aug 15 2007, 2:15 am
Newsgroups: microsoft.public.windowsupdate
From: "Peter Lawton" <du...@dummy.domain>
Date: Wed, 15 Aug 2007 07:15:39 +0100
Local: Wed, Aug 15 2007 2:15 am
Subject: KB932596 breaks unsigned drivers in x64
Be careful of the KB932596 "update" it stops the "bcdedit -set load options
DDISABLE_INTEGRITY_CHECKS" option working, that a lot of vista x64 users
were using to load unsigned drivers, and the associated MS KB article
doesn't see fit to mention the fact that this is probably the only thing
this ""update" does.

32bit OS users don't have to worry of course as MS never dared to put
"kernel patch protection" in 32bit OSs anyway, because it knew the howls of
outrage that would have happened. I suppose MS figured there were so few
64bit OS users anyway and they were having so many driver issues already one
more thing to put up with wasn't going to make much difference :(

Peter Lawton


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Peter Lawton  
View profile  
 More options Aug 20 2007, 4:50 am
Newsgroups: microsoft.public.windowsupdate
From: "Peter Lawton" <DevNull@fakedomain>
Date: Mon, 20 Aug 2007 09:50:39 +0100
Local: Mon, Aug 20 2007 4:50 am
Subject: Re: KB932596 breaks unsigned drivers in x64
Yes, if this "feature" was at all critical for the users security MS would
have rolled it out to 32bit Vista as well.

I 'm getting the feeling that when MS says Vista has much improved security
what they mean is that they've improved security for all their DRM, at the
expense of functionallity for all their paying customers who definately
don't like it or want it.

Rather ironic that MS has just spent so much time and effort jumping on the
DRM/activation bandwagon just as everyone else, even the record industry, is
finally realising it's counter productive and only succeeds in alianating
all your paying customers.

Peter Lawton

"Dale" <dale0...@nospam.nospam> wrote in message

news:37F65297-F83F-457D-AFDC-50280BD133DE@microsoft.com...


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Dale  
View profile  
 More options Aug 20 2007, 10:22 am
Newsgroups: microsoft.public.windowsupdate
From: Dale <dale0...@nospam.nospam>
Date: Mon, 20 Aug 2007 07:22:00 -0700
Subject: Re: KB932596 breaks unsigned drivers in x64
And if it were really a security patch it would be described clearly in the
KB article rather than disguised as an update to kernel patching protection.

They didn't fully disable the use of unsigned drivers but they did remove
the ability to persist that setting in boot configuration using the bcdedit
tool.  Now you have to press F8 to get the boot menu and choose Disable
Driver Signature Enforcement.

So that change has nothing at all to do with kernel patching protection but
is simply a feature change disguised as a "critical update".

--
Dale Preston
MCAD C#
MCSE, MCDBA


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Ottmar Freudenberger  
View profile  
 More options Aug 23 2007, 3:15 pm
Newsgroups: microsoft.public.windowsupdate
From: "Ottmar Freudenberger" <fre...@gmx.net>
Date: Thu, 23 Aug 2007 21:15:53 +0200
Local: Thurs, Aug 23 2007 3:15 pm
Subject: Re: KB932596 breaks unsigned drivers in x64
"Dale" <dale0...@nospam.nospam> schrieb:

> Because there has been no word from Microsoft on this issue, and no patch to
> the patch, I am quickly coming to the conclusion that what was earlier just
> an assumption is, in fact, a fact:  that this feature change poorly disguised
> as a security patch was an intentional ploy by Microsoft to force driver
> makers to update and sign their drivers.

You may wanna make note of
http://www.microsoft.com/whdc/driver/kernel/64bitpatch_FAQ.mspx and
http://www.microsoft.com/technet/security/advisory/932596.mspx and i.e.
http://www.heise-security.co.uk/news/94424

Bye,
Freudi


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Peter Lawton  
View profile  
 More options Aug 24 2007, 4:32 am
Newsgroups: microsoft.public.windowsupdate
From: "Peter Lawton" <DevNull@fakedomain>
Date: Fri, 24 Aug 2007 09:32:17 +0100
Local: Fri, Aug 24 2007 4:32 am
Subject: Re: KB932596 breaks unsigned drivers in x64
I think one of the recent Vista "performance" patches also stops the kernel
patch protection workaround.

Despite all the helpful references people are giving to MS documents about
kernel patch protection I can't find any that inform us that any of the
recent updates stop the "bcdedit -set load options
DDISABLE_INTEGRITY_CHECKS" working, when at least two, possibly three of the
recent patches do exactly that.

My suspicion is that stopping "bcdedit -set load options
DDISABLE_INTEGRITY_CHECKS" working is the only thing that KB932596 does, at
least MS has published nothing at all about what it does to say any
different

Also if kernel patch protection is so vital for users security that the
option to disable it has to be removed without warning, then why does MS
think it's only the few users of x64 versions that need this "protection",
who are mostly very technically aware anyway, rather than the multitude of
32bit version users who largely aren't as technically savvy and would
presumeably need the "protection and stability" far more?

Something stinks about this whole thing

Peter Lawton

"Dale" <dale0...@nospam.nospam> wrote in message

news:98527E5E-D5BC-499E-8C31-D99CF816E2C9@microsoft.com...


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
spearmant  
View profile  
 More options Sep 7 2007, 10:56 pm
Newsgroups: microsoft.public.windowsupdate
From: spearmant <spearm...@discussions.microsoft.com>
Date: Fri, 7 Sep 2007 19:56:00 -0700
Subject: Re: KB932596 breaks unsigned drivers in x64
what about system restore !  move back before the patch


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
End of messages
« Back to Discussions « Newer topic     Older topic »