Tuesday, July 6
It only took 9 months..
... The ActiveX flaw in Internet Explorer which allowed malicious code to log keystrokes, and write to system files / the hard drive, has finally been patched by Microsoft.
Award for longest time between vulnerability discovery and patch release date? They only even released a patch because a virus that uses this exploit was released :/
Anyways, MS recommends that all users on Windows NT4, 2000, XP and 2003 install this update (except for people using the latest XP Service Pack 2 RC2, who aren't affected). More information from the MS site here: //www.microsoft.com/security/incident/download_ject.mspx
Dragged out of Christopher's memory and pasted
into his blog at
7/06/2004 03:10:00 PM. Roughly.
Blog ID: 108912312582153853·