Skip to main content

Older versions of Windows have critical vulnerability, should be updated ASAP

Image used with permission by copyright holder

If you’re running an older version of Windows, it’s vital to update it as soon as possible. Microsoft has warned about a critical security issue called BlueKeep which makes older Windows machines vulnerable to malware.

The vulnerability is technically known as CVE-2019-0708, and is found in Remote Desktop Services. It is a particular concern because the vulnerability is “wormable,” meaning that if a computer is infected through this vulnerability, it can pass on the malware to other computers. This is what allowed the WannaCry malware to spread so quickly and so far in 2017.

The vulnerable systems include those running Windows 7, Windows Server 2008 R2, and Windows Server 2008. If, for some unknown reason, you are running an even older version of Windows, like Windows 2003 or Windows XP, then your system is vulnerable too. (And now is a good time to remind you that you really ought to update to Windows 10.)

If you are running Windows 8 or Windows 10 then you needn’t worry, as the vulnerability won’t affect you.

If you’re wondering how many people are still running these old versions of Windows, you’d be surprised. Microsoft shared a recent report which estimates that nearly one million internet-connected computers are vulnerable, and there could be many more vulnerable computers on corporate networks as well.

“It only takes one vulnerable computer connected to the internet to provide a potential gateway into these corporate networks, where advanced malware could spread, infecting computers across the enterprise,” Simon Pope, Director of Incident Response at Microsoft Security Response Center wrote in a blog post. “This scenario could be even worse for those who have not kept their internal systems updated with the latest fixes, as any future malware may also attempt further exploitation of vulnerabilities that have already been fixed.”

The fix for the vulnerability was released on May 14, so users may not have updated yet. And although Microsoft says they have not yet detected a worm making use of this vulnerability, there is still a considerable risk that one could appear.

To further encourage users to update, Microsoft pointed out that two months passed between the release of a fix for the EternalBlue vulnerability and the time at which WannaCry and other ransomware attacks using it began. That attack caused chaos around the world, so it’s a good reminder of the importance of regularly updating your OS.

Editors' Recommendations

Georgina Torbet
Georgina is the Digital Trends space writer, covering human space exploration, planetary science, and cosmology. She…
Update Windows now — Microsoft just fixed several dangerous exploits
Person sitting and using an HP computer with Windows 11.

Microsoft has just released a new patch, and this time around, the update comes with fixes for several dangerous and actively abused vulnerabilities and exploits in Windows.

A total of 68 vulnerabilities were addressed in the patch, many of them critical. Here's what was fixed and how to make sure your Windows device is up to date.

Read more
Microsoft just teased its next big Windows 11 update
Windows 11 22H2 Tablet Taskbar YouTube screenshot

Microsoft has given us a glimpse of a feature that "Moment 2" may bring as early as January 2023.

Since Windows 11 version 22H2, the Redmond, WA company has dedicated to releasing smaller feature updates, known internally as "Moment." The first one gave us the much-requested tabs in File Explorer (along with its Context IQ tech). The next Windows 11 version 22H2 "Moment" is currently slated for early 2023, according to sources, after it undergoes testing throughout 2022.

Read more
The Windows 11 2022 Update could slow down file transfers by 40%
Two windows laptops sit on a wooden table.

Microsoft has acknowledged a new issue regarding computers running the Windows 11 2022 Update (or version 22H2). The problem may cause performance degradation when copying large multi-GB files by up to 40%.

“There is a performance regression in 22H2 when copying larger files from a remote computer down to a Windows 11 computer," explained a blog post by Ned Pyle, the Principal Program Manager from the Windows Server engineering group. "A large (multi-GB file) might see as much as 40% less throughput over SMB when copying down (reading). Copying that same file to a non-22H2 machine (writing) won’t see this problem."

Read more