IE 11 is not supported. For an optimal experience visit our site on another browser.

Microsoft releases fix for Windows flaw

Microsoft released a patch Thursday to fix a flaw in its Windows operating system that had spawned attempts to take over users' computers. The company had previously said it would take until next week for the patch.
/ Source: The Associated Press

Microsoft Corp. on Thursday released a patch to fix a flaw in its Windows operating system that had spawned attempts to take control of Internet-connected computers.

Initially, Microsoft said it didn’t expect to do so until at least Tuesday, but the Redmond software maker said it finished testing earlier than planned and was able to release it on its Web site.

The patch was available from Microsoft's Web site.

The flaw is in an element of Windows that is used to view images. If a user is tricked into viewing an image, such as on a malicious Web site or within an e-mail attachment, that person's computer could be attacked. (MSNBC is a Microsoft - NBC joint venture.)

Microsoft confirmed last week that some people were trying to take advantage of it. On Thursday, the company said outbreaks appeared to be limited.

One mitigating factor is the fact that the vulnerability requires a person to take action, such as opening an e-mail from a stranger or following a link to an unknown Web page.

Nevertheless, security experts have said the flaw could still pose a risk because personal firewalls offer little protection and the attacks can easily be modified to get around security software such as antivirus programs. Also, the flaw affects versions of Windows desktop and server software going back to Windows 98.

Microsoft had offered some technical options for decreasing the risk of an exploit. Other security companies had prepared their own patches while Microsoft worked on the official one.

The patch can be downloaded from http://www.microsoft.com/technet/security/bulletin/ms06-001.mspx.