Microsoft on Tuesday warned that attackers have begun exploiting a critical vulnerability in Internet Explorer and rolled out a temporary fix until a permanent patch is issued. The vulnerability in IE versions 6, 7 and 8, which involves the way the browser handles cascading style sheets, allows adversaries to perform drive-by …
Has there ever been a patch tuesday with no patches?
It just seems this is getting worse and worse for Microsoft.
Yet another security hole in MS software.
Congratulations Microsoft - you're in the lead. No-one else even comes close to making the swiss-cheese that you guys call software.
>"This change causes Internet Explorer to refuse to import a CSS style sheet if it has the same URL as the CSS style sheet from which it is being loaded,”
So the exploit can probably be modified to use two style sheets each of which cross-references the other and still get infinite recursion, no?
Come on, corptards...
...this whole 'patching and repatching' nonsense is getting old. Put some of that money into proper testing and get it done right the first time. You're looking like a bunch of irresponsible, uneducated jackasses more interested in selling a shoddy product for a bigger piece of the advertising.
You know what they say about showing off to compensate for 'down below'. And I ain't talking about Oz.
@"Won't work" You could have not mentioned that -
If I have a bright idea about how to work around computer security, sometimes I keep it to myself. (That's more fun.)
But I'm not very likely to think of something that no one else has thought of.
My preferred mitigation is to use a different company's web browser until the issue is fixed - funny that Microsoft didn't suggest that (not unreasonable, but amusing) - and/or to stay away from the most vulnerable web sites. For instance, if the attack is made through advertising, I'll use the United Kingdom version of BBC News Online, with no ads!
- World's OLDEST human DNA found in leg bone – but that's not the only boning going on...
- Lightning strikes USB bosses: Next-gen jacks will be REVERSIBLE
- Pics Brit inventors' GRAVITY POWERED LIGHT ships out after just 1 year
- Storagebod Oh no, RBS has gone titsup again... but is it JUST BAD LUCK?
- Three offers free US roaming, confirms stealth 4G rollout