Latest IT News » Security » Microsoft warns of zero-day vulnerability in Windows 7 and Server 2008 R2

Microsoft warns of zero-day vulnerability in Windows 7 and Server 2008 R2

Microsoft warns of unpatched vulnerability that occurs only under Windows 7 64-bit, Windows Server 2008 R2 64-bit and Windows Server 2008 for Itanium. All other versions of Windows are not affected according to the company.

According to a security alert is a bug in the Canonical Display Driver (CDD.dll) used for the construction of the desktop data from the Windows Graphics Device Interface (GDI) which connects from DirectX. The vulnerability can be exploited only on systems, according to Microsoft, where the Aero interface is enabled. Therefore, an attacker must entice a victim to view a specially crafted image.

“If the vulnerability exploited, it will likely cause an affected system freezes and reboots,” Microsoft spokesman Jerry Bryant wrote in a blog entry. Because of the safety function Address Space Layout Randomization (ASLR), it is very difficult to inject and execute malicious code. Bryant also notes that off in Windows Server 2008 R2, the Aero interface by default.

Microsoft claims to have been no attacks on known vulnerabilities. A patch for the vulnerability was already in progress. The next patch day the company held on 8 June 2010.

The latest news from "Security"

Anonymous hacking server of the U.S. Department of Justice

Anonymous hacking server of the U.S. Department of Justice

Microsoft warns of unpatched vulnerability that occurs only under Windows 7 64-bit, Windows Server 2008 R2 64-bit and Windows Server 2008 for Itanium. All other versions of Windows are not affected according to the company. According to a security alert is a bug in the Canonical Display Driver (CDD.dll) used for the construction of the [...]

Android malware demands money for free apps

Android malware demands money for free apps

Microsoft warns of unpatched vulnerability that occurs only under Windows 7 64-bit, Windows Server 2008 R2 64-bit and Windows Server 2008 for Itanium. All other versions of Windows are not affected according to the company. According to a security alert is a bug in the Canonical Display Driver (CDD.dll) used for the construction of the [...]

Apple closes 17 security holes in QuickTime for Windows

Apple closes 17 security holes in QuickTime for Windows

Microsoft warns of unpatched vulnerability that occurs only under Windows 7 64-bit, Windows Server 2008 R2 64-bit and Windows Server 2008 for Itanium. All other versions of Windows are not affected according to the company. According to a security alert is a bug in the Canonical Display Driver (CDD.dll) used for the construction of the [...]

Apple releases Flashback-removal tool for Mac OS X 10.5 Leopard

Apple releases Flashback-removal tool for Mac OS X 10.5 Leopard

Microsoft warns of unpatched vulnerability that occurs only under Windows 7 64-bit, Windows Server 2008 R2 64-bit and Windows Server 2008 for Itanium. All other versions of Windows are not affected according to the company. According to a security alert is a bug in the Canonical Display Driver (CDD.dll) used for the construction of the [...]

Service Pack for Avira’s security solutions provide false positives [UPDATE: Fixed]

Service Pack for Avira’s security solutions provide false positives [UPDATE: Fixed]

Microsoft warns of unpatched vulnerability that occurs only under Windows 7 64-bit, Windows Server 2008 R2 64-bit and Windows Server 2008 for Itanium. All other versions of Windows are not affected according to the company. According to a security alert is a bug in the Canonical Display Driver (CDD.dll) used for the construction of the [...]

Report: BKA fail to develop a State Trojan

Report: BKA fail to develop a State Trojan

Microsoft warns of unpatched vulnerability that occurs only under Windows 7 64-bit, Windows Server 2008 R2 64-bit and Windows Server 2008 for Itanium. All other versions of Windows are not affected according to the company. According to a security alert is a bug in the Canonical Display Driver (CDD.dll) used for the construction of the [...]

Almost one in five goes without antivirus and firewall online

Almost one in five goes without antivirus and firewall online

Microsoft warns of unpatched vulnerability that occurs only under Windows 7 64-bit, Windows Server 2008 R2 64-bit and Windows Server 2008 for Itanium. All other versions of Windows are not affected according to the company. According to a security alert is a bug in the Canonical Display Driver (CDD.dll) used for the construction of the [...]