As I anticipated a few days ago, Microsoft has just released two Out of band patches and one security advisory for Internet Explorer. If you are runni
[See the full post at: Two more IE patches released: stick with Firefox, please]
![]() |
Patch reliability is unclear. Unless you have an immediate, pressing need to install a specific patch, don't do it. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Two more IE patches released: stick with Firefox, please
Home » Forums » Newsletter and Homepage topics » Two more IE patches released: stick with Firefox, please
- This topic has 7 replies, 3 voices, and was last updated 15 years, 9 months ago by
rc primak.
Tags: 0day Internet Explorer
AuthorTopicViewing 6 reply threadsAuthorReplies-
Liz
GuestJuly 29, 2009 at 5:10 pm #59420Hello
Regarding these two patches.. I have a KB973346 which is an ‘Update for IE 8 Compatability View List for Windows Vista’ which came through on 14/7, and a whopping great 8MB KB972260 Cumulative Security Update for Windows Vista which came through just yesterday.
Would these be the updates you are writing about? -
rc primak
Guest -
rc primak
Guest -
rc primak
GuestJuly 30, 2009 at 5:05 am #59423On a more general note, the ATL flaw is a typo in an Active X Control, according to a News Report at Infoworld.com. One extra “&” in the code. But a lot of software developers have used this flawed code, and Microsoft is not sure just how many products from Microsoft and other vendors may be affected. I guess we will just have to wait and see who patches what and how soon.
-
Liz
Guest -
EP
AskWoody_MVPJuly 31, 2009 at 10:15 pm #59425Using Firefox instead of IE is only part of the solution, Woody. They must also install the latest update to Adobe Flash Player as mentioned on Adobe Security Advisory APSA09-04.
Woody, Liz and RC Primak: I would also recommend reading that Adobe security bulletin APSA09-04 and follow the instructions there.
-
rc primak
GuestAugust 4, 2009 at 9:56 pm #59426Thanks, EP.
But Secunia PSI still reports that the latest Adobe Flash Player updater, outsourced from NOS Systems, is highly insecure (when used from IE, as it is an Active-X Control which sends the updates directly to the Windows Desktop, a known vector for malicious codes and scripts). So use Firefox when updating Flash Player or Shockwave.
Also listed as insecure is Java Runtime (JRE). The best workaround here is to have anti-spyware with active browser shields, a good two-way firewall, and use Firefox with the NoScript add-on. Consider also the FF NoFlash add-on, and Better Privacy (to clear out so-called “flash cookies”, or Flash LSOs).
Viewing 6 reply threads - This topic has 7 replies, 3 voices, and was last updated 15 years, 9 months ago by
-

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Google’s Veo3 video generator. Before you ask: yes, everything is AI here
by
Alex5723
2 hours, 43 minutes ago -
Flash Drive Eject Error for Still In Use
by
J9438
4 hours, 16 minutes ago -
Windows 11 Insider Preview build 27863 released to Canary
by
joep517
21 hours, 35 minutes ago -
Windows 11 Insider Preview build 26120.4161 (24H2) released to BETA
by
joep517
21 hours, 37 minutes ago -
AI model turns to blackmail when engineers try to take it offline
by
Cybertooth
1 hour, 15 minutes ago -
Migrate off MS365 to Apple Products
by
dmt_3904
2 hours, 4 minutes ago -
Login screen icon
by
CWBillow
4 hours, 42 minutes ago -
AI coming to everything
by
Susan Bradley
3 minutes ago -
Mozilla : Pocket shuts down July 8, 2025, Fakespot shuts down on July 1, 2025
by
Alex5723
1 day, 13 hours ago -
No Screen TurnOff???
by
CWBillow
1 day, 13 hours ago -
Identify a dynamic range to then be used in another formula
by
BigDaddy07
1 day, 14 hours ago -
InfoStealer Malware Data Breach Exposed 184 Million Logins and Passwords
by
Alex5723
2 days, 1 hour ago -
How well does your browser block trackers?
by
n0ads
1 day, 12 hours ago -
You can’t handle me
by
Susan Bradley
12 hours, 2 minutes ago -
Chrome Can Now Change Your Weak Passwords for You
by
Alex5723
1 day, 4 hours ago -
Microsoft: Over 394,000 Windows PCs infected by Lumma malware, affects Chrome..
by
Alex5723
2 days, 13 hours ago -
Signal vs Microsoft’s Recall ; By Default, Signal Doesn’t Recall
by
Alex5723
1 day, 16 hours ago -
Internet Archive : This is where all of The Internet is stored
by
Alex5723
2 days, 13 hours ago -
iPhone 7 Plus and the iPhone 8 on Vantage list
by
Alex5723
2 days, 13 hours ago -
Lumma malware takedown
by
EyesOnWindows
2 days, 1 hour ago -
“kill switches” found in Chinese made power inverters
by
Alex5723
2 days, 22 hours ago -
Windows 11 – InControl vs pausing Windows updates
by
Kathy Stevens
2 days, 22 hours ago -
Meet Gemini in Chrome
by
Alex5723
3 days, 2 hours ago -
DuckDuckGo’s Duck.ai added GPT-4o mini
by
Alex5723
3 days, 2 hours ago -
Trump signs Take It Down Act
by
Alex5723
3 days, 10 hours ago -
Do you have a maintenance window?
by
Susan Bradley
1 day, 15 hours ago -
Freshly discovered bug in OpenPGP.js undermines whole point of encrypted comms
by
Nibbled To Death By Ducks
2 days, 12 hours ago -
Cox Communications and Charter Communications to merge
by
not so anon
3 days, 13 hours ago -
Help with WD usb driver on Windows 11
by
Tex265
55 minutes ago -
hibernate activation
by
e_belmont
3 days, 22 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.