Welcome to the new look Pocket-lint.co.uk

Microsoft rushes to release security patch for VML flaw Patch is rated critical

  • rss
  • pdf
  • share
  • save
  • email
  • print
Gallery

27 September 2006 17:38 GMT / By Amber Maitland

Microsoft has issued an emergency patch for a flaw in Internet Explorer that had been exploited widely since it was found.

The bug, found in the Vector Markup Language, or VML component of IE had been used by Russia-based porn website that contained malicious code. Security companies watching the flaw have said that there had been an increase in emails containing links that downloaded malicious code as well; some lured users by promising that they’d been sent a Yahoo Greeting Card.

Others actually promised to contain a link to an unofficial patch that had been developed. The patch was genuine and developed by Zeroday Emergency Response Team, but the email that was being used in the attack was malicious.

Microsoft’s next security patch is due out on 10th October, but the company issued a special one specifically for this exploit. It’s also helping law enforcement track down the hackers.

The total number of websites that contained links to malicious code to infect PCs were estimated at more than 3000 according to some analysts.

Related links



Comments

(Will not be published)

  (Next time sign in to bypass ReCaptcha)

Latest in Software

Latest on Pocket-lint.co.uk

Broadband?

Compare 50+ deals available to you

Powered by Top 10 Broadband

Pocket-lint.co.uk poll

Q. Is the new Nintendo DSi a waste of time?

Vote YES Vote NO

» LAST TIME
When asked Will your next phone have a touchscreen? 58% said yes and 42% said no