facebook rss twitter

More holes found in Microsoft's Internet Explorer browser

by Parm Mann on 26 January 2010, 16:53

Tags: Internet Explorer, Microsoft (NASDAQ:MSFT)

Quick Link: HEXUS.net/qavsy

Add to My Vault: x

U.S.-based research firm Core Security Technologies has discovered further vulnerabilities in Microsoft's Internet Explorer that it claims could allow hackers to remotely access data on a user's PC.

The discovery was made just a day after Microsoft launched a patch to fix a critical security hole that resulted in major cyber attacks on companies such as Google.

Core Security Technologies, based out of Boston, claims the vulnerability was first discovered some two years ago. Yet, despite two interim patches by Microsoft, the research firm claims it is still possible to exploit the flaw in three or four ways.

Jorge Luis Alvarez Medina, a Core Security Technologies consultant who has been working with Microsoft to try and resolve the problem, has stated that the vulnerability will be demonstrated at the Black Hat security conference in Washington on February 2nd.

Whether or not Microsoft will release another out-of-band security update to fix the flaw remains unknown, but the software giant has publicly acknowledged the problem.

"Microsoft is investigating a responsibly disclosed vulnerability in Internet Explorer. We're currently unaware of any attacks trying to use the vulnerability or of customer impact, and believe customers are at reduced risk due to responsible disclosure. Once we’re done investigating, we will take appropriate action to help protect customers," said the company in a statement.

Although the latest vulnerability is said to affect all versions of Internet Explorer, Microsoft recommends that users upgrade to the latest version, Internet Explorer 8 in order to "enable automatic installation of all applicable updates this month and help to make customer systems more secure".



HEXUS Forums :: 24 Comments

Login with Forum Account

Don't have an account? Register today!
In other news, Grizzly Adams does indeed have a beard - who'd of thought.
I'm going out on a limb - i'm going to claim vulnerabilities in Internet Explorer, Firefox, Chrome, Opera still exist. Hell, all of them.
Terbinator
In other news, Grizzly Adams does indeed have a beard - who'd of thought.


lol wtf?? haha
razer121
lol wtf?? haha

Terbinator is pointing out the obvious, and quite rightly.

Do we really need a company to tell us another companies browser has holes? :O_o1:
What? More security holes in IE? Well I never!! Nothing surprising really, you're almost guaranteed there will be an IE patch included at least every patch Tuesday…