If you can compile a list of those, I bet we'd find that the checks are not an thorough.. maybe just a registry check

On 11/10/06, John Scherff < [EMAIL PROTECTED]> wrote:

We are having a similar problem, but in reverse.  In some cases, Nessus will report that a patch is missing, but the patch has been superseded by another patch which HAS been applied.  The same thing also sometimes occurs when a patch is rolled into a service pack.

 

Rate of occurance: out of approximately 150 Windows 2000 and 2003 servers (mostly 2003), we have around 10-12 verified (via Shavlik and manual inspection) false-positives.

 

John Scherff

 


From: [EMAIL PROTECTED] [mailto: [EMAIL PROTECTED]] On Behalf Of Zate Berg
Sent: Friday, November 10, 2006 7:10 AM
To: [EMAIL PROTECTED]
Subject: Re-released Microsoft Patches.

 

I am having an issue with Nessus not finding re released MSFT patches, such as MS06-040, where as shavlik does.  It finds the other missing patches fine.

How are the MSFT plugins generated and is there a provision to cover re-releases that have a different file version ?

--
Zate


_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus




--
Doug Nordwall
Unix, Network, and Security Administrator
Noise proves nothing. Often a hen who has merely laid an egg cackles as if she laid an asteroid. -- Mark Twain
_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to