Canonical Display Driver Vulnerability, (Tue, May 18th)
Microsoft released a security advisory [1] with details about a so far unpatched vulnerability in the canonical display driver. All system with the Aero theme enabled are vulnerable.
Theoretically, code execution is possible, but according to Microsoft unlikely. However, the vulnerability would allow a DoS attack by crashing the system. The quick fix for the problem is to turn off aero.
[1] http://www.microsoft.com/technet/security/advisory/2028859.mspx
------
Johannes B. Ullrich, Ph.D.
SANS Technology Institute
Twitter
(c) SANS Internet Storm Center. http://isc.sans.org Creative Commons Attribution-Noncommercial 3.0 United States License.