Microsoft has released security advisory 954157 to notify users of an update that increases the security of the Indeo codec on Microsoft Windows 2000, XP, and Server 2003. The advisory states that the Indeo codec running on these systems may allow remote code execution when opening specially crafted media content. Microsoft indicates that this update blocks the Indeo codec from being launched in Internet Explorer or Windows Media player, which removes a potential attack vector.
US-CERT encourages users and administrators to review Microsoft security advisory 954157 and apply any necessary updates or workarounds to help mitigate the risks.
Story Produced By U.S. Computer Emergency Readiness Team
No related posts.



