Zero day flaw hits Microsoft's Internet Explorer

By Jennifer Scott on Nov 5, 2010 8:23 AM
Filed under Security

New vulnerability.

Microsoft confirmed this week another zero day security flaw had hit Internet Explorer (IE), affecting all versions of the browser.

In a security advisory released late yesterday, the software giant confirmed a remote code execution vulnerability which was a result of an invalid flag reference in IE.

The issue had already been taken advantage of, as Microsoft admitted to being “aware of targeted attacks.” However, the company has yet to confirm a fix for the problem.

“We will continue to monitor the threat environment and update this advisory if this situation changes,” the advisory said.

“On completion of this investigation, Microsoft will take the appropriate action to protect our customers, which may include providing a solution through our monthly security update release process, or an out-of-cycle security update, depending on customer needs.”

The usual advice has been given to customers of ensuring your security software is up to date and to upgrade to the latest version of the browser, IE8.

This article originally appeared at

Follow us on Facebook and Twitter

Copyright © ITPro, Dennis Publishing


Zero day flaw hits Microsoft's Internet Explorer
Top Stories
Award winners from the 2015 CRN Fast50
[Photos] See who picked up a prize at the awards last week.
Hills chief: transformation cost us customers, staff, revenue
Will "get back to basics" after tumultuous years.
The red carpet at the 2015 CRN Fast50
[Photos] The nation's best resellers celebrate.
Sign up to receive CRN email bulletins
Was your most important vendor the same in 2015 as in 2014?

Latest Comments
CRN Magazine

Issue: 343 | October 2015

CRN Magazine looks in-depth at the emerging issues and developments for the channel, and provides insight, analysis and strategic information to help resellers better run their businesses.