PacketAddict

"Only after you have lost everything are you free to do anything"

December 17th, 2008

Microsoft have begun spamming media outlets advising users to switch away from their popular internet browser, Internet Explorer while the patch and fix a serious security flaw.

The flaw is apparent in all versions of the browser and is manifested by malware.

‘The vulnerability exists as an invalid pointer reference in the data-binding function of Internet Explorer. When data binding is enabled (which is the default state), it is possible under certain conditions for an object to be released without updating the array length, leaving the potential to access the deleted object’s memory space. This can cause Internet Explorer to exit unexpectedly, in a state that is exploitable.’

BBC news article on the subject.

2 Responses to “ Internet Exploder flaw.. again ”

  1. chade says:

    Temporary fix for IE7 available here…

    http://www.prevx.com/ie7.asp

    However, Microsoft are expected to have a official patch out today.

Leave a Reply