What Is It?
There is an unchecked buffer error in the code that processes animated cursor files. Unchecked buffers are the types of errors that can allow malicious people to take complete control of your computer. Exploit code has been published, is being actively used, and is almost impossible to prevent, using normal protective measures, such as virus scanners and similar tools.
What Should You Do?
Since this vulnerability is being actively exploited, and it is almost impossible to defend against it, Microsoft has issued a special update, published a security bulletin, and issued the monthly Microsoft Product Security Bulletin Summary one week early. These unusual steps should give you an idea of the seriousness of the problem.
1. Please visit the Microsoft Update Web site, at https://update.microsoft.com/microsoftupdate/, and accept all critical updates, at your earliest convenience.
2. If you cannot update your computer right away, you should seriously consider temporarily disabling the preview pane in your email program, because this vulnerability can be exploited when a message is displayed in the preview pane, regardless of your security settings.
Important
This vulnerability affects all versions of Microsoft Windows, including Vista.
References
|
David Gray, MBA, Chief Wizard WizardWrx, formerly P6 Consulting |
|
|
V: +1 (817) 812-3041 TZ: USA Central, GMT -5 E: dagray@wizardwrx.com W: www.wizardwrx.com |
5006 Cloyce Court North Richland Hills, TX 76180-6944 USA |
|
|
Tell me what you need, and I’ll conjure it. |
|