The Register® — Biting the hand that feeds IT

HouseCall throws a sickie

Anonymous Coward

Pretty obvious, really.... 

> "The vulnerability is caused by a use-after-free error in the HouseCallActiveX control (Housecall_ActiveX.dll). This can be exploited to dereference previously freed memory by tricking the user into opening a web page containing a specially crafted "notifyOnLoadNative()"callback function."

Beats me why Trend Micro didn't notice the problem before!