Breaking News

First look at PlayStation’s 27” Gaming Monitor New Transcend CFexpress 830 Type B Targets 8K RAW, High-Speed Shooting, and Pro Video Production Firewalla Launches MSP 2.9: Introducing FireAI Search, AP7 Wi-Fi Management, Enhanced User Support, Mobile App Access Control Elgato Launches Retail-Exclusive, Discord-Edition Stream Deck Mini LIAN LI Unveils HydroShift II LCD-S Series AIO with Hot-Swappable Square LCD

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

New bugs found in Outlook, IE

New bugs found in Outlook, IE

Enterprise & IT Apr 2,2005 0

Microsoft Corp. is investigating a new set of potentially serious security flaws in Internet Explorer and Outlook reported by security company eEye Digital Security Inc., the software maker said Friday. The two flaws in the Web browser and e-mail client could let an attacker take control over a system with minimal action from the user, eEye said in two security alerts posted on its page of upcoming advisories. The company ranks the flaws "high" risk.

One of the vulnerabilities could let an attacker compromise a user's machine after the user clicks on a Web link, said Marc Maiffret, co-founder and chief hacking officer at eEye. "Nothing that would be normally suspicious to the user," he said. The flaws affect both Outlook and Outlook Express, according to Maiffret.

The flaws exist in the default installations of the applications on most current versions of Windows, according to eEye of Aliso Viejo, California. The company has informed Microsoft and will not provide further details until Microsoft has provided a patch or security alert, it said on its Web site.

"We keep all the details private until Microsoft produces a patch. But that is not to say that nobody else has discovered the vulnerability and produced an exploit," Maiffret said. However, eEye has not seen any attacks that take advantage of the flaws yet, he said.

Microsoft is investigating the privately reported possible vulnerabilities, a spokeswoman for the Redmond, Washington, software maker said. The company is not aware of any attempts to exploit the vulnerabilities, she said.

Upon the completion of the investigation, Microsoft will take the appropriate action to protect users. That could be a fix as part of the company's monthly patching cycle, a fix in the next service pack or a special update, the spokeswoman said.

EEye reported the flaws to Microsoft on March 16 and March 29, according to the eEye Web site. Maiffret hopes Microsoft will produce a patch within two months, the industry standard time for delivering a fix, he said.

Tags: Microsoft
Previous Post
World's Best CeBIT 2005 Live Coverage by CDRinfo.com (Updated)
Next Post
Yahoo hires gen. manager of MSN's programming group

Related Posts

  • Snapdragon X Series is the Exclusive Platform to Power the Next Generation of Windows PCs with Copilot+ Today

  • Activision Blizzard King to Team Xbox

  • NVIDIA Studio Lineup Adds RTX-Powered Microsoft Surface Laptop Studio 2

  • Samsung and Microsoft Unveil First On-Device Attestation Solution for Enterprise

  • Introducing Xbox Game Pass Core, Coming This September

  • Announcing the next wave of AI innovation with Microsoft Bing and Edge

  • Microsoft Announces Security Copilot AI

  • Microsoft breaks new ground in healthcare with the next evolution of AI

Latest News

First look at PlayStation’s 27” Gaming Monitor
Gaming

First look at PlayStation’s 27” Gaming Monitor

New Transcend CFexpress 830 Type B Targets 8K RAW, High-Speed Shooting, and Pro Video Production
Cameras

New Transcend CFexpress 830 Type B Targets 8K RAW, High-Speed Shooting, and Pro Video Production

Firewalla Launches MSP 2.9: Introducing FireAI Search, AP7 Wi-Fi Management, Enhanced User Support, Mobile App Access Control
Enterprise & IT

Firewalla Launches MSP 2.9: Introducing FireAI Search, AP7 Wi-Fi Management, Enhanced User Support, Mobile App Access Control

Elgato Launches Retail-Exclusive, Discord-Edition Stream Deck Mini
Consumer Electronics

Elgato Launches Retail-Exclusive, Discord-Edition Stream Deck Mini

LIAN LI Unveils HydroShift II LCD-S Series AIO with Hot-Swappable Square LCD
Cooling Systems

LIAN LI Unveils HydroShift II LCD-S Series AIO with Hot-Swappable Square LCD

Popular Reviews

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

Terramaster F8-SSD

Terramaster F8-SSD

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

Soundpeats Pop Clip

Soundpeats Pop Clip

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed