Before login

Microsoft Releases Workaround for WebDAV Exploit

References
Sources: 
http://www.theregister.co.uk/2010/09/01/microsoft_dll_hijack_fixit/

Yesterday, Microsoft released a FixIt tool for the WebDAV DLL Vulnerability that was discovered a few weeks back. This tool builds upon a registry entry fix that Microsoft released last week, which allows system administrators to control and define the Search DLL Path Algorithm.

According to members of the Microsoft Security Response, this release is designed to make the previous registry work-around easier by fine tuning a myriad of settings that assist in the compatibility of Outlook 2002, and other applications.

This isn't any sort of "magic fix", as applications can still be vulnerable if you don't tweak these settings correctly, so still be careful! If you don't know what this vulnerability is, read up on it here.

/tags/