Patch Tuesday sees new fixes and warnings

Company gives details on IE attack along with Office fixes.

Microsoft is delivering a warning to users of new attacks along with its monthly security update.

The company said that a remote-code execution flaw has been found in Internet Explorer and is currently being targeted for malware attacks. Internet Explorer 6 and 7 are vulnerable to attacks, but IE 8 is not believed to be susceptible.

Microsoft is advising users who cannot upgrade to IE8 to avoid suspicious or untrusted links. Using the Internet Explorer "protected mode" setting in Windows Vista and Windows 7 will also help limit the scope of a potential attack, the company said.

The advisory comes alongside Microsoft's monthly security update. The March edition of the update contains a pair of bulletins which address a total of eight security vulnerabilities in office.

Each of the bulletins was rated as "important," Microsoft's third of four alert levels. If exploited, the flaws could allow an attacker to remotely execute code on a targeted system.

The first bulletin corrects a flaw in the Move Maker component for Microsoft Producer 2003, while the second bulletin patches vulnerabilities in Excel for Office XP, 2003 and 2007 as well as the 2004 and 2008 versions of Office for MacOS X systems.

Copyright ©v3.co.uk
Patch Tuesday sees new fixes and warnings

What are your thoughts on this article? Add your comment below.

To begin commenting right away, you can log in below or register an account if you don't yet have one. Please read our guidelines on commenting. Offending posts will be removed and your access may be suspended. Abusive or obscene language will not be tolerated. The comments below do not necessarily reflect the views or opinions of SC Magazine, Haymarket Media or its employees.

NOTE: You must be a registered member of SC Magazine to post a comment.

Click here to login | Click here to register
comments powered by Disqus
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read