The Register®

Biting the hand that feeds IT

Exploit for latest Windows vuln already animated

Curse the cursor

A vulnerability in the way Windows handles animated cursors puts users at risk of being pwnd, and several nefarious websites are already trying to exploit the flaw, according to the SANS Internet Storm Center.

The flaw is present on virtually the entire line of Windows OSes, including Vista, which has been held up as Redmond's poster child for safe computing.

According to McAfee, Windows users browsing malicious sites using IE versions 6 or 7 risk having arbitrary code run on their machines. Those using Firefox are not vulnerable. Microsoft said in an advisory that it is investigating reports of the flaw.

"Upon viewing a web page, previewing or reading a specially crafted message, or opening a specially crafted email attachment the attacker could cause the affected system to execute code," Microsoft warns. Files that can exploit the vulnerability are not limited to those with the .ani extension that come with most programs that animate the cursor on Windows machines. Some exploits in the wild are reported to be embedded in jpeg files, SANS says in an advisory.

Microsoft said those using IE 7 on Vista are safe from the vulnerability because of a protected mode, which restricts where the browser can write files. ®

Free whitepaper - The Botnet Threat: Targeting your Business

Don’t Miss

Warning: roadworksNetbooks and Mini-Laptops

Buyer's Guide They're little and we love 'em. But which ones are best?

How the fate of the US economy rests on a Dell workstation

Quick, someone send Bernanke a supercomputer

Hard DriveHow many terabytes can you fit on a 2.5-inch hard drive?

Fun with areal densities

Flag ChinaChina's nonstop music machine

Exclusive Baidu versus business