Sunday, September 26, 2021

Microsoft fixes Vista OS flaw

Microsoft Corp. has issued a patch for a preliminary version of its Vista OS for the same graphics-rendering problem that raised concerns about current versions of the Windows OS earlier this month.

The patch applies to a Community Technology Preview (CTP) of Vista released in December, a version available to Microsoft Developer Network (MSDN) Universal subscribers and beta testers, according to Microsoft’s Web site. Vista isn’t due for a general release to the public until later this year.

The fix amends how Windows Vista deals with graphics in the WMF (Windows Metafile) format, as those files could force a machine to run arbitrary code. If opened, WMF files (perhaps disguised with a suffix such as .jpg instead of the usual .wmf) could trigger the execution of code that tries to download more malicious software.

After the WMF vulnerability came to light last month, it caused a somewhat unorthodox response given the danger security experts felt it posed. One researcher created an unofficial patch, which some security organizations advised users to apply immediately.

Meanwhile, Microsoft broke with its regular patch schedule, usually the second Tuesday of the month, and issued a fix on Jan. 5, while company officials sought to address concerns it waited too long.

Would you recommend this article?

Share

Thanks for taking the time to let us know what you think of this article!
We'd love to hear your opinion about this or any other story you read in our publication. Click this link to send me a note →

Jim Love, Chief Content Officer, IT World Canada

Related Tech News