MSDDS.dll exploit via Internet Explorer

|

Microsoft now has a writeup on this vulnerability. The page to keep an eye on for updates related to this is here.

I was very happy to see this. I called my TAM at lunch to see if setting the activeX kill bit on this dll was a good or bad idea. I didn't want to do it, not knowing what the end result would be. Microsoft now has this listed in their "workaround" section of this post. There is no aftereffect of making this change because this file was not intended to be accessed using this method.

I'm working on getting this added to our ActiveX Kill Bits file that we deploy with SMS. I also need to see when that is next going getting deployed to our comptuers.

Categories

About this Entry

This page contains a single entry by Roger published on August 19, 2005 12:17 AM.

Free SAV 10 Class was the previous entry in this blog.

CS)Online article on fighting ddos attacks is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Add to Google
Please contact me by leaving a comment where appropriate. Otherwise, you can click here to reveal an email address for me.
Got Backups? Get Safe Online Remember Rick Rescorla Powered by Movable Type 4.2-en