Pages

Tuesday, January 4, 2011

Tech Salsa Update

Tech Salsa Update


Is Your IE Safe from Vulnerability found by Microsoft?

Posted: 03 Jan 2011 04:30 AM PST


Microsoft has recently detected some vulnerability in all versions of the Internet Explorer browser. Thus Microsoft has warned people of this new publicly-disclosed vulnerability. This vulnerability affects all versions of IE. Exploiting this vulnerability could lead to unauthorized remote code execution inside the iexplore.exe process.

What Microsoft has to say about the cause?

The Metasploit project recently published an exploit for this vulnerability using a known technique to evade ASLR (Address Space Layout Randomization) and bypass DEP (Data Execution Prevention).

That means, the risks are because of the creation of uninitialized memory during a CSS function within Internet Explorer which can be exploited by the attackers for the remote code execution.

How to safeguard?

As of now, there is no fix developed by Microsoft to protect the browser but what users can do is install the EMET to minimize the risk and protect the iexplore process.

[Read full story here]

Related posts:

  1. Own your Space: Digital eBook for Teens from Microsoft
  2. Manage Processes on Remote Computer with Remote Process Explorer
  3. IE 9 Beta to be released in September
  4. Microsoft and Yahoo Join Hands

0 comments:

Post a Comment