??? ??? ???? ???? Internet Explorer ???

zero_day_IE_concept.png

???? ?? ??? Internet Explorer? ??? ??? ???? ???? Microsoft Internet Explorer ?? ?? ?? ???(CVE-2014-1776)? ???? ??? ??????.

Microsoft? ?? ?? ??? ???? ?? Internet Explorer? ???? ?? ?? ??? ??????. ?? ? ???? ?? ??? ???, ? ?? ?? ???? Microsoft?? ?? ???? ??? ?? ?????.

???? ???? ???, ? ???? Windows XP? Internet Explorer?? ??? ?????. Microsoft?? 2014? 4? 8? ?? ? ?? ??? ?? ??? ??? ??? ?? ???? Windows XP ????? ??? ???? ?? ??? ???? ??????. Microsoft? ??? EMET(Enhanced Mitigation Experience Toolkit) 4.1 ???? ? Internet Explorer ???? ??? ? ??? ?? ??? Windows XP?? ????? ?? ? ????. ??? ?? ???? ????? EMET? ????? ??? ??? ??? ??? ??? ?? ? ????? ??? ?? ?????.

???? ??? ?? ?? ??? ?? ? ?????? ??? ?????.

?? ??? ???? ?? ? ???? ?? ???????.

???? – 2014? 4? 28?:

Microsoft Internet Explorer ?? ?? ?? ???(CVE-2014-1776)? ???? ?? ??? ?? ??? ??? ????.

Microsoft? ???, EMET(Enhanced Mitigation Experience Toolkit) 4.1 ?? ??? ???? ? Internet Explorer? ???? ??? ? ????. ? ??? Windows XP ???? ?? ?????. EMET? ???? ??? ?? VGX.DLL??? DLL ??? ?? ???? ???? ? ??? ??? ? ????. ? ??? ?? ?????? VML(Vector Markup Language)? ?????. ???? ???? ? ??? ??? ??? ????. ??? ?????? ??? ??? ?? ? DLL? ???? ??????? ? ?? ????? ???? ?? ? ????. ?? ???? ??? ?? ???????? ? DLL? ?? ??? ???? ????. ??? ??? ???? ? ???? ??? ?????? ???? ???? ?? ??? ? ??? ???? ??? ? ????. ? ???? ?? ???? ??? ?? ?? ?? ???? ??? ? ????.

“%SystemRoot%\System32\regsvr32.exe” -u “%CommonProgramFiles%\Microsoft Shared\VGX\vgx.dll”

???? ??? IT ???????? ???? ?? ??? ?? ?? ??? ??????.

bat_icon.png

??: ???? .bat ???? ???? ?? ??? ???? ???.

? ?? ??? DLL ??? ?? ??? ???? ??? ?? DLL? ?? ???? ??? ?????. ?? ??? ????? ?? ???? ?? ???? ?? ??? ??? ?? ??? ?? ??? ??????? ? ????.

? ???? ???? ? ??? ?? ??? ?? ????, ?? ??? ???? ???? ??? ??? ?? ?? ?? ??? ??? ???? ? ????. ??? Windows XP? ?? ???? ?? ?? ??? ??? ?? ???? ???? ???? ?? ????.

 

Update – May 02, 2014:
Microsoft has released an out-of-band security update to address this vulnerability. For more information, see the following Microsoft security advisory:

Out-of-Band Release to Address Microsoft Security Advisory 2963983

Leave a Reply