All the latest UK technology news, reviews and analysis

Experts recommend urgent patching for new Microsoft flaws

by Phil Muncaster

29 Jul 2009

Be the first to comment

  • Tweet this
Microsoft bugs
Microsoft has issued two new patches

Security experts are warning IT administrators to update their systems as soon as possible, after Microsoft yesterday released emergency patches to cover vulnerabilities in Visual Studio and Internet Explorer.

As announced by V3.co.uk on Saturday, Microsoft released the patch for Internet Explorer in response to "three privately reported vulnerabilities" in the web browser.

"These vulnerabilities could allow remote code execution if a user views a specially crafted web page using Internet Explorer," read a Microsoft security bulletin. "Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights."

The other patch, for a vulnerability in the Active Template Library (ATL) of Visual Studio marked as moderate by Microsoft, is "specifically intended for developers of components and controls", according to the firm.

"Developers who build and redistribute components and controls using ATL should install the update provided in this bulletin and follow the guidance provided to create, and distribute to their customers, components and controls that are not vulnerable to the vulnerabilities described in this security bulletin," said the bulletin.

Security vendor F-Secure warned users via a blog posting that these patches should be implemented without delay. "As we've stated before, these don't come so often, so when they do it's for a good reason and it's best to pay attention and make sure you get your machines updated," said the firm.

Eric Shultze, chief technology officer at patch management firm Shavlik Technologies, echoed these sentiments, warning that the vulnerabilities are due to be demonstrated in public at the Black Hat conference in the US today.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

35%

0%

11%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Lead PHP Developer - Technical Architect - Ecommerce Manager

Lead PHP Developer - Technical Architect - Ecommerce...

C# / .NET Software Engineers – Leeds City Centre – C# (£30-50k)

C# Software Engineers required to join rapidly expanding...

Java / J2EE Developers – Leeds City Centre – Java / J2EE (£30-50k)

Java / J2EE Software Engineers required to join rapidly...

Developer (MIS - SQL / T-SQL, HTML, CSS or Javascript)

Developer (MIS / Business Systems - SQL / T-SQL, HTML...

To send to more than one email address, simply separate each address with a comma.