We use cookies to provide you with a better experience. If you continue to use this site, we'll assume you're happy with this. Alternatively, click here to find out how to manage these cookies

hide cookie message

Microsoft admits IE 6 and 7 vulnerability

PC securityA new security hole in Internet Explorer 6 and 7 can be targeted via code on a poisoned website, Microsoft has warned. A successful attacker could install malware on a victim PC or run any other remote command.

The invalid pointer reference bug, described in Microsoft Security Advisory 981374, is already being hit by targeted attacks, according to Microsoft. The company only released a warning, rather than a patch to go along with its regularly scheduled Patch Tuesday. There isn't yet any fix or real workaround, but Internet Explorer 8 is not affected by the bug.

Microsoft also says that IE running under Protected Mode on Vista or Windows 7 will help mitigate the threat, and that the default IE configuration on Windows Server 2003 and 2008 also offers protection. For more details, see the company's MSRC post.

See also:

Internet browser reviews

PC security news, reviews, tips and walkthroughs

PC World

IDG UK Sites

How to get a free EE Power Bar: Mobile and broadband customers eligible for free smartphone charger

IDG UK Sites

Why Netflix won't terminate your account for using a VPN, probably

IDG UK Sites

Forever 21 denies pirating Adobe, Autodesk and Corel software, accuses companies of 'bullying'

IDG UK Sites

New Apple TV 2015 release date rumours: Apple's WWDC invite shows Apple TV