{"id":657193,"date":"2013-05-09T19:21:48","date_gmt":"2013-05-09T23:21:48","guid":{"rendered":"http:\/\/betanews.com\/?p=149068"},"modified":"2013-05-09T19:21:48","modified_gmt":"2013-05-09T23:21:48","slug":"better-late-than-never-microsoft-to-fix-pwn2own-flaw","status":"publish","type":"post","link":"https:\/\/mereja.media\/index\/657193","title":{"rendered":"Better late than never &#8212; Microsoft to fix Pwn2Own flaw"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/betanews.com\/wp-content\/uploads\/2011\/12\/Security-e1324655725512-300x300.jpg\" alt=\"\" title=\"Security\" width=\"300\" height=\"300\" class=\"alignright size-medium wp-image-51413\" \/>Patch Tuesday approaches quickly. That time of the month when Microsoft deems it appropriate to fix the\u00a0myriad security flaws that rear their ugly heads during the preceding time frame. As is custom, the company gives advance notice of what to expect, but no details regarding actual flaws &#8212; a nod to not allowing (more) hackers to take advantage of the issues discovered.<\/p>\n<p>May 14th is the next scheduled update of your Windows computer, and it will carry along\u00a010 bulletins with it. A couple of these patch much publicized holes in Internet Explorer, one of which the company <a title=\"Microsoft kinda fixes IE 8 security hole\" href=\"http:\/\/betanews.com\/2013\/05\/09\/microsoft-kinda-fixes-ie-8-security-hole\/\">just released<\/a> a &#8220;Fix it&#8221; tool designed to temporarily mend. <\/p>\n<p>Another mends the highly publicized Pwn2Own <a href=\"http:\/\/nakedsecurity.sophos.com\/2013\/03\/07\/pwn2own-results-java-chrome-ie-10-and-firefox-owned-on-day-one\/\" >flaw<\/a> discovered and exploited at the <a href=\"http:\/\/cansecwest.com\/\" >CanSecWest conference<\/a> back in March. For the record, Chrome and Firefox also went down in the competition.<\/p>\n<p>The remaining critical patches will fix a denial of service hole within Windows, fix a spoofing issue in that as well as the .NET framework, patch a remote code execution bug in Lync, two remote code execution flaws and one information disclosure problem in Office, an information disclosure vulnerability in Windows Essentials, and an elevation of privilege defect in Windows. Take a deep breath now.<\/p>\n<p>Microsoft also plans to\u00a0host a <a href=\"https:\/\/msevents.microsoft.com\/CUI\/EventDetail.aspx?EventID=1032538728&amp;Culture=en-US\" >webcast<\/a> to address customer questions on the security bulletins on May 15, 2013, at 11:00 AM Pacific Time. While all of these updates are important &#8212; critical one might say &#8212; the fact it took this long to fix the pwn2own flaw is a bit troubling &#8212; Chrome and Firefox <a href=\"http:\/\/nakedsecurity.sophos.com\/2013\/03\/08\/firefox-and-chrome-patched-already-after-pwn2own-now-the-pressure-is-on-for-ie-and-microsoft\/\" >did so<\/a> within days of the competition.<\/p>\n<p><strong>Photo Credit:<\/strong> <a href=\"http:\/\/www.shutterstock.com\/gallery-5880p1.html\" >Kheng Guan Toh<\/a>\/<a href=\"http:\/\/www.shutterstock.com\/\" >Shutterstock<\/a><\/p>\n<div class=\"feedflare\">\n<a href=\"http:\/\/feeds.betanews.com\/~ff\/bn?a=XQ7Nof9gPIw:dJIbE4qWdsU:qj6IDK7rITs\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/bn?d=qj6IDK7rITs\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.betanews.com\/~ff\/bn?a=XQ7Nof9gPIw:dJIbE4qWdsU:yIl2AUoC8zA\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/bn?d=yIl2AUoC8zA\" border=\"0\"><\/img><\/a>\n<\/div>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~r\/bn\/~4\/XQ7Nof9gPIw\" height=\"1\" width=\"1\"\/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Patch Tuesday approaches quickly. That time of the month when Microsoft deems it appropriate to fix the\u00a0myriad security flaws that rear their ugly heads during the preceding time frame. As is custom, the company gives advance notice of what to expect, but no details regarding actual flaws &#8212; a nod to not allowing (more) hackers [&hellip;]<\/p>\n","protected":false},"author":7430,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-657193","post","type-post","status-publish","format-standard","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/657193","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/users\/7430"}],"replies":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/comments?post=657193"}],"version-history":[{"count":0,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/657193\/revisions"}],"wp:attachment":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/media?parent=657193"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/categories?post=657193"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/tags?post=657193"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}