ITS Homepage Click here for text version of ITS homepage University at AlbanyUAlbany Site IndexUAlbany Search
alerts_tag

ITS Alerts
Proof of Concept code released for UNPATCHED MS Internet Explorer Exploit



ALARM Group ALERT ¿ click for a description of ALARM, The Computing Alert System
Alert Number:  112105-01
Alert Date:  11/21/05
Alert Title:  Proof of Concept code released for UNPATCHED MS Internet Explorer Exploit
Update-to:  none
OS/Platform/Application:
Microsoft Internet Explorer 6 SP1 on Microsoft Windows XP Service Pack 2
Microsoft Internet Explorer 6 for Microsoft Windows XP Service Pack 1
Microsoft Internet Explorer 5.01 SP4 on Microsoft Windows 2000 Service Pack 4
Microsoft Internet Explorer 6 SP1 on Microsoft Windows 2000 Service Pack 4
Category: 
ALERT
Severity:  HIGH
Attention:  Windows System Administrators, Desktop Support Personnel, Users of above-listed version of MS Internet Explore


Attention:  Windows System Administrators, Desktop Support Personnel, Users of above-listed version of MS Internet Explorer

Summary:  On November 21 2005 several Internet Security Monitoring Resources reported the public release of Proof of Concept (PoC) Code that demonstrates a method of exploit on **fully-patched** windows systems that utilize the popular Internet Explorer web browser.  Successful exploitation of this flaw (which could be achieved if the victim visits a malicious web site) could allow a remote attacker to take compete control of a vulnerable system.  At the time of writing, NO patch has yet to have been made available from Microsoft to address the issue.

Recommended Actions:  Suggested workarounds currently include: (1) Disabling Active Scripting on Internet Explorer (instruction link proved below) (2) Using alternate web browsers until a patch is issued/installed.  System Administrators and support personnel are encouraged to consider these methods (keeping in mind the potential functionality caveats associated with both) and also to frequently check the Microsoft Security Advisory Page (link provided below) and other resources (e.g., ALARM Alerts, see 'ITS Actions' below) for updates to the situation and/or the release of software updates (patches) from the vendor.


ITS Actions:  This situation is currently in the early stages of development.  ALARM will release updates as new information/recommended actions become available.

Resources:

FrSIRT Advisory (describes exploit and workarounds):
http://www.frsirt.com/english/advisories/2005/2509

How to disable Active Scripting in Internet Explorer:
http://support.microsoft.com/kb/q154036/

Microsoft Security Advisories main page (check here for newest patch info):
http://www.microsoft.com/technet/security/advisory/default.mspx

Microsoft Security Bulletins main page (check here for newest patch info):
http://www.microsoft.com/technet/security/current.aspx

 

BLANKABCDEFGHIJKLMBLANK
BLANKNOPQRSTUVWXYZBLANK
CHOOSE FROM the ITS Site Index

GO TO an ITS Group

Information Technology Services
University at Albany, SUNY
1400 Washington Avenue
Albany, NY 12222
ITS Service Centers:  518-442-4000
 
University at Albany Home Page
Contact UAlbany | Directories | Calendars | Visitors | Site Index | Search
Admissions | Academics | Research | IT Services | Libraries | Athletics

Internet Privacy Policy              IT Policies