Dec 24, 2010

Quick! Serious vulnerabilities in IE 6,7,8.

Recent news reports. Services firm security alert to beware a new malicious code that targets a vulnerability that has not been fixed in Internet Explorer vulnerability that can be used in the attack. To control the operation of the computer completely.

For new vulnerabilities were reported this VUPEN Security Security Company in France on December 9 last. The impact on the Internet Explorer browser, version 6, 7 and 8 operating systems running on Windows XP, Windows Vista and Windows 7.



VUPEN held severity of this vulnerability as "critical"(critical) because the vulnerability can cause errors in memory management mechanisms and analyze orders HTML specific steps to import CSS. Page that the attacker can create a page on a vulnerability of this work was. Send malicious code into the victim's computer with a cross through (bypass) DEP and ASLR security that comes with Windows, but it is a scary issue. On Wednesday last. Malicious code that exploit has been published in the tool called Metasploit hacking on the Internet. (sample video clips below. To show that bypassing the security system with the execution of arbitrary code calculator from the web page that uses vulnerable).

Information from : ARIP, VUPEN.

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.