Most Popular Stories
- One on One with Arpan Shah of Microsoft Sharepoint
- IBM will snag half of India's outsoucing work by 2010
- Vendors prepare for Obama's electronic medical records change
- Teen sends 14,528 text messages in a single month
- Coke uses RFID for drink dispensers
- Forrester report predicts web content management will grow in spite of economy
Events
Sponsored Links
Free Newsletter
Latest News
Popular Topics
Whitepapers
- Consumption-Based Fundamental Asset Allocation Redefines Investing -- Relevant Investing in a Post-Collapse Era
- Gartner DCMA Report
- Gartner Magic Quadrant for Content Monitoring and Filtering and Data Loss Prevention
- Total Cost of Ownership for Enterprise Content Management
- SaaS Vendor Selection Manual
- Web Services Addressing 1.0 - Metadata
Zero-day Windows bug effects Vista, XP, Windows 2K
In a security advisory posted on the Microsoft Security Response website this morning, the company acknowledged a vulnerability in Windows' animated cursor, which could allow for remote code execution on a user's local machine. "An attacker could try to exploit the vulnerability by creating a specially crafted Web page," the company warned on its website. "An attacker could also create a specially crafted email message and send it to an affected system. Upon viewing a Web page, previewing or reading a specially crafted message, or opening a specially crafted email attachment, the attacker could cause the affected system to execute code." According to Microsoft, the affected versions of Windows are Vista, Windows 2000, Windows XP and Windows Server 2003. Vista users using IE7 in its default configuration are currently protected by Internet Explorer 7.0's protected mode, though this feature can be disabled by the user.
For more on the bug:
- see this security advisory at TechNet
ALSO: Has Microsoft known about this bug since December? Article
Related Stories
- Firefox 2/IE 7 animated cursor exploit on the way
- Microsoft addresses many bugs in this month's Patch Tuesday
- Hackers exploiting unpatched Windows DNS bug
- Symantec: Vista vulnerable to legacy exploits
- New Microsoft Word zero-day attack on the loose
- Patch Tuesday: Two's company
- Patch Tuesday fixes Word, Outlook, IE
- Patch Tuesday brings critical IE, Windows fixes
- Mozilla to issue workaround for .ANI bug
- Windows flaw gets critical, patch coming tomorrow
Comments
Post new comment
Home
| Subscribe | Advertise | RSS |
Privacy
| Site MapTHE FIERCEMARKETS NETWORKFierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceVoIP | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe© 2009 FierceMarkets, Inc. All rights reserved. |
![]() |







Click here to get the FierceCIO:TechWatch email newsletter for FREE!
Be the first to comment