Unsolved

This post is more than 5 years old

2 Intern

 • 

5.8K Posts

 • 

17.3K Points

4741

September 22nd, 2006 19:00

New unpatched exploit in IE

MS has released a scurity advisory about a critical upatched exploit in IE involving VML, which is currently active on several websites.
http://aumha.net/viewtopic.php?t=21729
 
Until a patch is released, MS has recommendations involving workarounds (or use another updated browser):
http://www.microsoft.com/technet/security/advisory/925568.mspx
 
edit: Grinler over at bleepingcomputer has posted a nice tutorial on how to disable VML until a patch is released:

Message Edited by joe53 on 09-22-2006 06:08 PM

5 Journeyman

 • 

15.6K Posts

 • 

45K Points

September 23rd, 2006 10:00

Question (for anyone who can offer a definitive answer):
 
The articles indicate this exploit can impact the newer operating systems (Win2000, XP, Server 2003).
 
Does this mean the older operating systems (Win98/ME) are not susceptible to this exploit?...
Or are these systems also at risk --- but just that, since Microsoft has terminated support (meaning no patch will be prepared/released for them), they are simply "not considering" these any more in their advisory?

4 Apprentice

 • 

8.8K Posts

September 23rd, 2006 21:00

ky331 you're OK.

ZB1

2 Intern

 • 

5.8K Posts

 • 

17.3K Points

September 23rd, 2006 21:00

Good question!
 
 
 

5 Journeyman

 • 

15.6K Posts

 • 

45K Points

September 26th, 2006 19:00

Patch has been released:  
 
Security Update for Windows XP (KB925486)
 
Get it from windows updates, or here:  http://www.microsoft.com/technet/security/bulletin/ms06-055.mspx

4 Apprentice

 • 

8.8K Posts

September 26th, 2006 20:00

Thanks ky331
No Events found!

Top