Microsoft to Release Out-of-Cycle ASP.NET Security Bulletin
Microsoft will be issuing an out-of-cycle security bulletin for an Information Disclosure vulnerability affecting ASP.NET via all versions of the Microsoft .NET Framework on all supported versions of Windows.
Surprisingly, given the extent of the vulnerability is Information Disclosure, and only rated as Important, it has been enough for Microsoft to push forward an out-of-cycle patch. Citing the public nature of the vulnerability data and ongoing attack attempts, Microsoft has justified the release of the patch ahead of October's scheduled release.
All versions of Windows are vulnerable, but systems are specifically only vulnerable if being used to operate a web server.
28 September 2010
Social bookmark this page at eKstreme.
Alternatively, Bookmark or Share via AddThis
Do you like how we cover Information Security news? How about checking out our company services, delivered the same way our news is.
Let our Free OS X Screen Saver deliver the latest security alerts and commentary to your desktop when you're not at your system.
Comments will soon be available for registered users.