The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Researchers: Newest Microsoft IE patch flawed
Time: 18:38 EST/23:38 GMT | News Source: InfoWorld | Posted By: Alex Harris

A New Patch designed to address six serious security vulnerabilities in Microsoft's Internet Explorer doesn't fix all the problems it purports to, according to security researchers. The patch, which was released late Wednesday, is designed to fix a cross-site scripting problem and other security and privacy flaws affecting Internet Explorer (IE) versions 5.01 through 6 and the Outlook e-mail client.

However, the patch only fixes the cross-site scripting issue on one of the listed browsers, according to two security researchers who sent e-mail to the Bugtraq security e-mail list after the patch's release. According to Microsoft's explanation of the issue, the flaw can only be exploited when a user clicks on an HTML (Hyptertext Markup Language) link on a Web page or in an e-mail message. That's not true, as code embedded in an HTML file can automatically execute, according to both Thor Larholm, a security researcher who has discovered a number of Microsoft vulnerabilities and maintains a list of unpatched IE holes online, and the Israeli security group GreyMagic Software, which has also discovered a number of browser vulnerabilities.

Write Comment
Return to News

  Displaying 576 through 576 of 576
Prev | First
  The time now is 6:53:46 AM ET.
Any comment problems? E-mail us
#576 By 4240821 (82.115.4.230) at 7/30/2025 7:23:08 PM
https://justpaste.me/dG8x2
https://justpaste.me/ZkX41
https://justpaste.me/ZosC3
https://justpaste.me/YmIU4
https://justpaste.me/ZvWd1
https://justpaste.me/YtbW
https://justpaste.me/dLeE5
https://justpaste.me/c1Gv2
https://justpaste.me/apEY1
https://justpaste.me/fuZ7

Write Comment
Return to News
  Displaying 576 through 576 of 576
Prev | First
  The time now is 6:53:46 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *