Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Mississippi

It's safer, but security holes still affect the new browser. Plus, a worm in iPods.


1. Local Companies

Netdoor
(601) 969-1434
112A Jetport Dr
Pearl, MS
Datasync
(228) 435-8888
1907 Pass Rd
Biloxi, MS
Ayrix Dial Up Access
(662) 328-0018
Columbus, MS
CMA Communications
(601) 735-4662
917 Robinson St
Waynesboro, MS
Localnet
(601) 542-0102
Osyka, MS
Dixie-Net Communications
(662) 517-2000
Jackson, MS
Wojomedia Llc
(662) 840-0602
1001 Barnes Crossing Rd
Tupelo, MS
B & M Communications
(662) 841-0316
1960 McCullough Blvd
Tupelo, MS
Megagate Broadband
(601) 412-5000
Brookhaven, MS
Moffatt Properties Leasing Llc
(662) 841-0316
1960 McCullough Blvd
Tupelo, MS


2. Introduction

Internet Explorer 7 for Windows XP is finally out. Because it tries to fix or prevent many of the numerous security flaws that hit IE 6, it's arguably the largest bug fix we've seen in quite a while. For that reason alone, I recommend installing the update.

But IE 7 is not a panacea, in part because it still ties in to Windows for some of its work and can therefore pass along threats from buggy parts of the operating system (or other programs). We've seen a number of these types of problems recently, and now three more have been reported.

Less than a day after IE 7's release, Danish security firm Secunia said it had found a proof-of-concept, noncritical bug affecting IE 7. If you browse a malicious site while logged in to another site, an attacker could steal data you have on the logged-in site. Microsoft says the bug actually resides in Outlook Express, but IE 7 can be used as the attack vector, just like IE 6.

You're likewise vulnerable to a nasty, critical Windows bug involving XML, which is commonly used for Web sites and many document types, regardless of whether you use IE 6 or IE 7. Both versions hand off XML processing to Windows proper, where the bug originates. You could be infected with a drive-by download from a malicious Web site if an attacker directs a bunch of garbage data through IE to the newly discovered Windows weak spot. At press time no attacks had yet used this bug, but all currently supported versions of Windows could be hit. If you didn't receive the patch in Automatic Updates, check here.

The new IE does offer more protection than version 6 for another pass-through critical Windows glitch--one that has already proven to be a popular hacker target. This flaw hits the Windows Shell, which displays the Windows user interface. Attackers can employ an ActiveX control to reach the bug via IE (with yet another buffer overflow error) and thereby take over your system. As with the XML bug, all supported versions of Windows are affected.

IE 7 provides additional protection in this case because it displays an opt-in pop-up that requires your approval before running new ActiveX controls. The pop-up won't specifically tell you you're under attack, and if you just click OK as many people are now conditioned to do with many browser notices, you'll get nailed. But it's more protection than you'll get with IE 6, which on an unpatched system will download a malicious payload without warning if you browse a booby-trapped site. Get the fix from here or via Automatic Updates.

Video iPods may Come with Windows Worm

A small number of video iPods picked up an unwelcome tag-along during manufacturing: a Windows worm. The malware doesn't harm the iPod, but once the device hooks up to a PC, the worm can silently wiggle its way into the system--and from there to any linked external storage device, like a thumb drive.

Less than 1 percent of video iPods shipped between September 12 and mid-October carry the worm, but if it infects a PC it can give an attacker full remote control. As a fix, Apple posted links to free trials of popular antivirus apps for cleaning affected computers, and says to use iTunes 7 to wipe and restore an iPod. Apple's bulletin can be found here.

3. New Office Holes

Hackers are using a new batch of critical Office 2000 flaws to bite credulous openers of suspicious e-mail attachments. The holes are less dangerous, but still present, in Office 2003. Keep Office updated through Automatic Updates, or grab the patches here.

4. More Battery Heat

Sony is recalling some 3.5 million laptop batteries worldwide, including those used in its VAIO notebooks, as well as those in models from Fujitsu, Gateway, and Toshiba, because of a minute (but real) risk of overheating and fire. For a full list of recalled models and links to makers' recall sites, click here.

BUGGED?

Found a hardware or software bug? Send an e-mail about it to bugs@pcworld.com.

Stuart J. Johnston is a contributing editor for PC World.

5. Featured National Company

Inavid

888 746 2843
5875
paso rodls, CA
http://www.inavid.com/

Regional Articles
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Aberdeen MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Amory MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Batesville MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Bay Saint Louis MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Biloxi MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Booneville MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Brandon MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Brookhaven MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Byhalia MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Canton MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Carriere MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Carthage MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Clarksdale MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Cleveland MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Clinton MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Coldwater MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Columbia MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Columbus MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Corinth MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Crystal Springs MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Ellisville MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Florence MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Forest MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Fulton MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Gautier MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Greenville MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Greenwood MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Grenada MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Gulfport MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Hattiesburg MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Hazlehurst MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Hernando MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Holly Springs MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Horn Lake MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Indianola MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Jackson MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Kosciusko MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Laurel MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Long Beach MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Louisville MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Lucedale MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Madison MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Magee MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Mccomb MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Mendenhall MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Meridian MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Moss Point MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Natchez MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already New Albany MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Ocean Springs MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Olive Branch MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Oxford MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Pascagoula MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Pass Christian MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Pearl MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Petal MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Philadelphia MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Picayune MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Pontotoc MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Poplarville MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Ridgeland MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Ripley MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Saucier MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Senatobia MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Southaven MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Starkville MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Tupelo MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Tylertown MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Vicksburg MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Waynesboro MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already West Point MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Wiggins MS
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Yazoo City MS
Rate Article
     
Articles Insider

Rss   Delicious   Digg   Add To My Yahoo   Add To My Google   Bookmark   Search Plugin

Topics:
Advertising Educational Content Home Appliances Real Estate Resources
Business Services Entertainment Home Electronics Software
Career Family Home Services Technology
Cars Fashion Internet Telecommunications
Chamber of Commerce Financial Services Legal Trade Shows
Computer Hardware Franchise Miscellaneous Travel
Construction Health Nightlife Weddings
Education Holidays Online Database World History