jump to navigation

XML Core Services 0-Day Update November 6, 2006

Posted by Dave Marcus in Vulnerabilities, Zero Day.
trackback

The other day I wrote about a new zero day in Windows IE XML Core Services. Well, it seems that some new developments have occurred! The Register has picked up the story, in which they state that Secunia is now seeing more active exploitation. Microsoft has posted an Advisory about the vulnerability and even included suggestion and workarounds. No word yet on whether they will release an early patch for it tho. As MS rarely releases out-of-cycle patches, my guess would be no.

I have not heard any updated intel from the researchers at McAfee Avert Labs where I work, but if I do I will certainly update on it.

Comments»

No comments yet — be the first.