[2906] in Privacy_Forum
[ PRIVACY Forum ] Microsoft XML vulnerability under active
daemon@ATHENA.MIT.EDU (PRIVACY Forum mailing list)
Tue Jun 12 23:26:38 2012
Date: Tue, 12 Jun 2012 19:59:09 -0700
To: privacy-list@vortex.com
Message-ID: <20120613025909.GB28192@vortex.com>
MIME-Version: 1.0
Content-Disposition: inline
From: PRIVACY Forum mailing list <privacy@vortex.com>
Reply-To: PRIVACY Forum mailing list <privacy@vortex.com>
Content-Type: text/plain; charset="iso-8859-1"
Errors-To: privacy-bounces+privacy-forum=mit.edu@vortex.com
Content-Transfer-Encoding: 8bit
Microsoft XML vulnerability under active exploitation
http://j.mp/KRijTy (Google Online Security Blog)
"Today Microsoft issued a Security Advisory describing a vulnerability
in the Microsoft XML component. We discovered this vulnerability-which
is leveraged via an uninitialized variable-being actively exploited in
the wild for targeted attacks, and we reported it to Microsoft on May
30th. Over the past two weeks, Microsoft has been responsive to the
issue and has been working with us. These attacks are being
distributed both via malicious web pages intended for Internet
Explorer users and through Office documents. Users running Windows XP
up to and including Windows 7 are known to be vulnerable."
- - -
--Lauren--
Lauren Weinstein (lauren@vortex.com): http://www.vortex.com/lauren
Co-Founder: People For Internet Responsibility: http://www.pfir.org
Founder:
- Data Wisdom Explorers League: http://www.dwel.org
- Network Neutrality Squad: http://www.nnsquad.org
- Global Coalition for Transparent Internet Performance: http://www.gctip.org
- PRIVACY Forum: http://www.vortex.com
Member: ACM Committee on Computers and Public Policy
Lauren's Blog: http://lauren.vortex.com
Google+: http://vortex.com/g+lauren / Twitter: http://vortex.com/t-lauren
Tel: +1 (818) 225-2800 / Skype: vortex.com
_______________________________________________
privacy mailing list
http://lists.vortex.com/mailman/listinfo/privacy