It's a service used primarily in enterprises. You don't see it much on smaller-scale servers or desktops.

The scope of the affected platform is exactly the same, and these services are run by default on Windows 2000. In terms of ease of exploitation, they're not incredibly difficult to exploit, but they're not as easy as the Plug and Play vulnerability.

This could have a similar impact [to MS05-039], ... It remains to be seen whether it can be exploited as easily as that earlier vulnerability.

But we may see some targeted attacks, ... The most credible would be to have these [image] files embedded within an e-mail.

I think it's doubtful that we'll see this widely exploited.

[One of the two critical vulnerabilities in the bulletin is within the Microsoft Distributed Transaction Coordinator (MSDTC), code that's used to coordinate any sort of transaction on multiple servers, such as database queries.] It's a service used primarily in enterprises, ... You don't see it much on smaller-scale servers or desktops.

Patch Tuesday. Because it is quiet, it does give people an opportunity to catch up and make sure they are protected.

It requires user interaction of some sort, which takes it down a notch from MS05-051, but it is still a serious vulnerability.