This is a patch for Internet Explorer. The patch was released on October 3rd.
Click Here To Get List of avaiable Patches
Here are the vulnerabilities it corrects:
Internet Explorer does not properly determine an object type returned from a Web server in a popup window. It could be possible for an attacker who exploited this vulnerability to run arbitrary code on a user's system. If a user visited an attacker's Web site, it would be possible for the attacker to exploit this vulnerability without any other user action. An
attacker could also craft an HTML-based e-mail that would attempt to exploit this vulnerability.
Internet Explorer does not properly determine an object type returned from a Web server during XML data binding. It could be possible for an attacker who exploited this vulnerability to run arbitrary code on a user's system. If a user visited an attacker's Web site, it would be possible for the attacker to exploit this vulnerability without any other user action. An attacker could also craft an HTML-based e-mail that would attempt to exploit this vulnerability.
- Posted by Alan, 10:23 AM