Skip Links

Network World

Julie Bort

Microsoft: Here's a workaround while we patch this IE hole

John Fontana reports that Microsoft has issued a security advisory regarding a zero-day exploit of Internet Explorer.

By Microsoft Subnet on Tue, 11/24/09 - 4:31pm.

John Fontana reports that Microsoft has issued a security advisory regarding a zero-day exploit of Internet Explorer. The exploit code was posted online over the weekend. The company is working on a patch, and is likely to get it out before the next Patch Tuesday.

The attack vector is JavaScript, so users can either disable JavaScript, upgrade to IE 8 (which isn't affected)... or switch to Firefox or Chrome.

Fontana had reported on Monday that the exploit code was thought to be unreliable, sometimes just crashing the browser rather than allowing remote code execution. But if it were fine-tuned, it could be a major threat to computers running IE.

The most recent Patch Tuesday was Nov. 10, when Microsoft released six patches, three of which were considered critical.

- Jeff Caruso

About The Microsoft Update

Julie BortJulie Bort is the editor of Microsoft Subnet and Network World's Online Community Editor. She also writes the Open Source Subnet blog and is the editor responsible for the Cisco Subnet and Open Source Subnet web sites. If you have an idea for a blog, or a news tip on Microsoft, Cisco or Open Source technologies, contact her at jbort@nww.com, 970-482-6454 or follow Julie on Twitter @Julie188.

The Microsoft Subnet blog is the official blog of the Network World's Microsoft Subnet community. Microsoft Subnet is the independent voice of Microsoft customers and is your gateway to daily Microsoft news, blogs, opinion, books, prize giveaways and more. Visit the Microsoft Subnet index page daily, and while you are there, subscribe to the Microsoft newsletter.

Become a Facebook Fan of Julie Bort

Policy on comments: Respectful discussion is welcomed! However comments that use inappropriate language, consist of name calling or personal attacks, or include accusations of wrongdoing are not appropriate. Those comments will be deleted or edited

 

Most Discussed Posts

Blog Roll
Microsoft Subnet Home Page
http://www.networkworld.com/subnets/microsoft/
All Microsoft Subnet bloggers
http://www.networkworld.com/community/blogs/microsoft/feed
ActiveWin
http://www.activewin.com
Blake Handler The Road to Know Where
http://bhandler.spaces.live.com/
Dmitry's PowerBlog
http://dmitrysotnikov.wordpress.com/
Doug Brown,DABCC
http://www.dabcc.com
Ed Bott's Windows Expertise
http://www.edbott.com/weblog/
Joseph Tartakoff Microsoft Blog
http://blog.seattlepi.nwsource.com/microsoft/
Long Zheng istartedsomething
http://www.istartedsomething.com/
Mini-Microsoft
http://minimsft.blogspot.com/
Paul Thurrott's Supersite for Windows
http://www.winsupersite.com
Robert McLaws WindowsNow
http://www.windows-now.com
Scobleizer
http://scobleizer.com/
Techmeme
http://www.techmeme.com/
Todd Bishop's Microsoft Blog
http://www.techflash.com/Microsoft