News

Microsoft Hurries Out Emergency Windows Patch

Microsoft has broken their trend of releasing hotfixes on the second Tuesday of every month to release a vital “out of band” security patch. The critical flaw entitled MS15-078 is a vulnerability in the Microsoft Font Driver which allows Remote Code execution. In basic terms, this means any webpage or document containing embedded OpenType fonts could become a major security risk. Microsoft explained the situation and why it’s imperative to enable automatic updates or download the patch:

“An attacker who successfully exploited this vulnerability could take complete control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.”

“There are multiple ways an attacker could exploit this vulnerability, such as by convincing a user to open a specially crafted document, or by convincing a user to visit an untrusted webpage that contains embedded OpenType fonts. The update addresses the vulnerability by correcting how the Windows Adobe Type Manager Library handles OpenType fonts.”

“When this security bulletin was issued, Microsoft had information to indicate that this vulnerability was public but did not have any information to indicate this vulnerability had been used to attack customers. Our analysis has shown that exploit code could be created in such a way that an attacker could consistently exploit this vulnerability.”

All Windows users are advised to update as a matter of urgency to keep their system secure. However, Windows XP customers cannot access this fix due to the lack of support for that particular operating system. Microsoft believes this security hole could lead to a huge influx of malware. Once the update has finished installing, a reboot will be required. This couldn’t have come at a worse time for Microsoft with the pending launch of Windows 10. The Redmond-based company needs to establish their latest products as an extremely secure platform to make users more inclined to upgrade.

Thank you The Register for providing us with this information.

John Williamson

Disqus Comments Loading...

Recent Posts

Acer 45″ Predator X45bmiiphuzx 3440×1440 OLED Curved Ultrawide Gaming Monitor

44.5” Curved 800R OLED UWQHD (3440 X 1440), 21:9. 99% DCI-P3 Color Gamut, HDR10 Support.…

3 mins ago

Razer Blade 18 NVIDIA RTX 4060, 16GB, 18.0″ QHD+ 240Hz, Intel i9-13950HX Laptop

The perfect combination between desktop performance and laptop design, the new Razer Blade 18 sets…

7 mins ago

Thermaltake Toughpower GF3 1650W Fully Modular Native PCIE 5 80 Plus Gold Power Supply

PCIe Gen 5 ready, designed with native PCIe 12+4pin modular interface. Compatible with Intel ATX…

15 mins ago

Acer Nitro 49″ EI491CUR Sbmiipphx 5120×1440 Curved Ultrawide Gaming Monitor

Acer EI491CUR Sbmiipphx 49" 1800R 32:9 Curved DQHD (5120 x 1440) Zero-Frame Gaming Monitor, AMD…

17 mins ago

CableMod Classic Coiled Keyboard Cable USB A to USB Type C 150cm

Coiled keyboard cable with professional, expert sleeving USB Type A to USB Type C powder…

18 mins ago

Logitech G G713 Wired Mechanical Gaming Keyboard

Cloud-soft Comfort: Float away with the dreamy G713 white gaming keyboard with comfy, cloud-shaped palm…

31 mins ago