{"id":8769,"date":"2014-04-29T20:54:36","date_gmt":"2014-04-30T00:54:36","guid":{"rendered":"http:\/\/mjtsai.com\/blog\/?p=8769"},"modified":"2016-03-08T09:55:51","modified_gmt":"2016-03-08T14:55:51","slug":"internet-explorer-security-flaw","status":"publish","type":"post","link":"https:\/\/mjtsai.com\/blog\/2014\/04\/29\/internet-explorer-security-flaw\/","title":{"rendered":"Internet Explorer Security Flaw"},"content":{"rendered":"<p><a href=\"https:\/\/technet.microsoft.com\/en-US\/library\/security\/2963983\">Microsoft Security Advisory 2963983<\/a>:<\/p>\r\n<blockquote cite=\"https:\/\/technet.microsoft.com\/en-US\/library\/security\/2963983\"><p>The vulnerability is a remote code execution vulnerability. The vulnerability exists in the way that Internet Explorer accesses an object in memory that has been deleted or has not been properly allocated. The vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user within Internet Explorer. An attacker could host a specially crafted website that is designed to exploit this vulnerability through Internet Explorer and then convince a user to view the website.<\/p><\/blockquote>\r\n<p><a href=\"http:\/\/www.bbc.com\/news\/technology-27184188\">BBC News<\/a>:<\/p>\r\n<blockquote cite=\"http:\/\/www.bbc.com\/news\/technology-27184188\"><p>However, the issue may be of special concern to people still using the Windows XP operating system.<\/p>\r\n<p>That is because Microsoft ended official support for that system earlier this month.<\/p>\r\n<p>It means there will be no more official security updates and bug fixes for XP from the firm.<\/p>\r\n<p>[&#8230;]<\/p>\r\n<p>About 30% of all desktops are thought to be still running Windows XP and analysts have previously warned that those users would be vulnerable to attacks from cyber-thieves.<\/p><\/blockquote>\r\n<p>Along the same lines, Apple is <a href=\"http:\/\/9to5mac.com\/2014\/04\/24\/apples-fix-for-facetime-woes-in-ios-6-upgrade-to-ios-7\/\">not fixing<\/a> its recent <a href=\"http:\/\/support.apple.com\/kb\/TS5419?viewlocale=en_US&amp;locale=en_US\">FaceTime bug<\/a> for iOS 6:<\/p>\r\n<blockquote cite=\"http:\/\/9to5mac.com\/2014\/04\/24\/apples-fix-for-facetime-woes-in-ios-6-upgrade-to-ios-7\/\"><p>If you&rsquo;re not fond of iOS 7\u2019s design, but value FaceTime, it looks like you&rsquo;ll finally have to give in. This FaceTime issue began earlier in April and gained recognition thanks to a <a href=\"https:\/\/discussions.apple.com\/thread\/6096640?tstart=0\">lengthy forum thread<\/a> in Apple&rsquo;s Support Communities. The bug appeared after another mysterious issue that prevented <a href=\"http:\/\/9to5mac.com\/2014\/04\/20\/users-finding-first-generation-apple-tvs-unable-to-connect-to-itunes-store\/\">first generation Apple TV units from connecting to Apple&rsquo;s iTunes store<\/a>.<\/p><\/blockquote>","protected":false},"excerpt":{"rendered":"<p>Microsoft Security Advisory 2963983: The vulnerability is a remote code execution vulnerability. The vulnerability exists in the way that Internet Explorer accesses an object in memory that has been deleted or has not been properly allocated. The vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"apple_news_api_created_at":"","apple_news_api_id":"","apple_news_api_modified_at":"","apple_news_api_revision":"","apple_news_api_share_url":"","apple_news_coverimage":0,"apple_news_coverimage_caption":"","apple_news_is_hidden":false,"apple_news_is_paid":false,"apple_news_is_preview":false,"apple_news_is_sponsored":false,"apple_news_maturity_rating":"","apple_news_metadata":"\"\"","apple_news_pullquote":"","apple_news_pullquote_position":"","apple_news_slug":"","apple_news_sections":"\"\"","apple_news_suppress_video_url":false,"apple_news_use_image_component":false,"footnotes":""},"categories":[2],"tags":[131,558,852,31,469,37,48,219],"class_list":["post-8769","post","type-post","status-publish","format-standard","hentry","category-technology","tag-bug","tag-facetime","tag-internet-explorer","tag-ios","tag-ios7","tag-microsoft","tag-security","tag-windows"],"apple_news_notices":[],"_links":{"self":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts\/8769","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/comments?post=8769"}],"version-history":[{"count":4,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts\/8769\/revisions"}],"predecessor-version":[{"id":13800,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts\/8769\/revisions\/13800"}],"wp:attachment":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/media?parent=8769"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/categories?post=8769"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/tags?post=8769"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}