To view parent comment, click here.
To read all comments associated with this story, please click here.
Not if it's patched.
Which is sometimes difficult to do when MS knows about vulnerabilities but decides to keep them quiet either while working on a patch or just to avoid PR embarassement. All the while blackhats are exploiting the code (like "Russian hacker groups sold WMF exploit code" http://www.computerweekly.com/Articles/2006/02/03/214046/Russianhac... )
Just to say your response is a gross oversimplification.
I'm more inclined to believe "working on a patch" rather than "avoid PR embarassment". Unless you have actual evidence of the latter, I'm going to believe that all cases where they keep quiet are cases where they are working on something.
Testing takes time. Better to test, than to release a faulty patch and get flamed into oblivion.






Member since:
2005-07-06
Not if it's patched.