Update for fixing IE vulnerability
Jul. 5th, 2004 05:09 pmFab fab fab fab party. Fab. Ta muchly.
Update thanks to the ever-alert
deliberateblank.
Microsoft have released a fix to the critical vulnerability I discussed earlier. However, it appears that this fix doesn't actually plug the vulnerability. It's probably still worth keeping your box up-to-date with Windows Update, but it won't protect you against this attack.
I still recommend that you either use Mozilla Firefox or another alternative to IE. If for some reason this is not an option, don't use IE to browse the wider Web.
Update thanks to the ever-alert
Microsoft have released a fix to the critical vulnerability I discussed earlier. However, it appears that this fix doesn't actually plug the vulnerability. It's probably still worth keeping your box up-to-date with Windows Update, but it won't protect you against this attack.
I still recommend that you either use Mozilla Firefox or another alternative to IE. If for some reason this is not an option, don't use IE to browse the wider Web.
no subject
Date: 2004-07-05 09:44 am (UTC)no subject
Date: 2004-07-05 09:52 am (UTC)no subject
Date: 2004-07-05 12:18 pm (UTC)no subject
Date: 2004-07-06 01:24 am (UTC)*poppets away...*
no subject
Date: 2004-07-05 09:57 am (UTC)Looks like I'll just have to live with the vulnerability, seeing as hacking about to the extent needed to install other browsers would be classed as gross misconduct.
no subject
Date: 2004-07-05 12:48 pm (UTC)no subject
Date: 2004-07-05 05:02 pm (UTC)no subject
Date: 2004-07-05 06:01 pm (UTC)In case you wonder what would happen if Microsoft did fix their software, see here. I quote:
Sigh...no subject
Date: 2004-07-06 06:05 pm (UTC)no subject
Date: 2004-07-07 12:14 pm (UTC)Though I would have thought at your workplace you could afford to let people run whatever they want so long as it isn't IE...
no subject
Date: 2004-08-04 02:41 am (UTC)no subject
Date: 2004-07-10 11:10 pm (UTC)no subject
Date: 2004-07-11 03:34 am (UTC)The big difference between Mozilla/Firefox and IE here is that there are already patches and fixed releases for this bug available (which I'll announce here in a later post), while IE wasn't fixed for yonks after the vulnerability was announced, and by some reports still isn't.
By the way, who are you?
no subject
Date: 2004-07-12 09:11 am (UTC)I feel the difference between Internet Explorer and Mozilla/Firefox runs far deeper than the exploit to patch response time, it lies in the fact they have concise and open discussions about the design of their products, audit their code thoroughly and document the protocols they use for design and auditing thoroughly. This general openness that is systemic to gnu/open source movement does not allow the shoddy code and design to exist (anymore at any rate - the BIND/WU-FTPd/Sendmail debate is a dull one so lets not have it) in the various popular products - Qmail, vsftpd, FreeBSD and OpenBSD all being good examples of this.
"who am i?" an innocent bystander..