Slow action on critical Vista security flaw

Analysis
May 22, 20071 min

Stuart J. Johnston of PC World writes: 

Microsoft has just patched another critical hole in Vista that it knew about as long ago as last Christmas. The delay was similar to its lag in patching the serious (and heavily targeted) animated-cursor flaw I told you about last month. The new problem involves the way that the OS’s Client/Server Run-time Subsystem (CSRSS) handles error messages, and it affects Windows 2000 SP4 and Windows XP too.  Read more.

So no one really expects Microsoft to become the king of security, but at some level, you have to start asking yourself why they continue to forge ahead with this security see-saw that doesn’t work. They write code. Hackers and security researchers hack it. Then we’re all in this waiting game for the patch to arrive. Hss no one thought of a better way?