eEye issues temporary patch for Windows cursor flaw

By Scott McKenzie, ZDNet Australia
Tuesday, April 03, 2007 07:37 AM

Security vendor eEye has issued a temporary workaround for a zero-day exploit which takes advantage of a vulnerability in the Windows cursor.

The hole in animated cursor (.ani) files for Windows, was flagged by Microsoft in an advisory last week, but there are fears it is spreading rapidly. An attacker could exploit the vulnerability through a Web page or e-mail message with rigged computer code, Microsoft said at the time. All versions of Microsoft Windows are vulnerable, including Vista, which the software giant promotes as the most secure yet.

eEye's fix stops Web sites from loading potentially malicious animated icons, according to the company's advisory. It goes on to warn that its fix is only temporary, and that users should uninstall it once Microsoft has released an official patch.

Microsoft has said it will issue an early, out-of-cycle patch for the flaw.


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

Hands-on programming: Extract plain text from documents with Syncfusion's components

Web Development

Justin James recently tried Syncfusion's Essential DocIO and Essential PDF to help him extract text from documents he downloaded from the Internet. Here's the code he wrote to get the plain text.


Read more »



Will technology divide us further?

Blog thumbnail

So I finally watched 2012 over the weekend, but the film left me feeling extremely agitated.

The possibility that the world may meet its watery end in three years didn't..... by Eileen Yu

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web