Under patch tisdag i februari, Microsoft har lappat massor av läckor i Internet Explorer. Problem i Windows och Forefront security har lösts. Two of the seven updates that were released, tillkännagavs i sista stund.
It is MS14-010 och MS14-011, som är utgåvor. MS14-010 fixar totalt 24 sårbarheter i IE, vars sårbarhet redan var känt innan uppdateringen dykt upp. Men, there would be no exploits in circulation to exploit those vulnerabilities. Update MS14-011 is intended for a critical vulnerability in the VBScript Scripting Engine, for the vulnerabilities for VBScript and Internet Explorer it was possible for a attacker to execute arbitrary code on the victims computer.
The update for MS14-007 fixes a vulnerability in Direct2D, allows an attacker to execute arbitrary code when a hacked or malicious site is visited. The last critical update is released for Microsoft Forefront Protection for Exchange. A vulnerability in the security ensured that an attacker could execute arbitrary code as a specially prepared e-mail was scanned.
The other three updates that are released for Windows made it possible for an attacker to increase his “administrative” rights or to retrieve certain personal data and perform a Denial of Service attack. The updates can be downloaded from Windows Update or using the Automatic Update Feature in Windows.