Will there be an out-of-band update for latest IE flaw?
Microsoft has confirmed it is working on a fix for yet another flaw in Internet Explorer, however it is remaining cagey about the release date.


Microsoft has confirmed it is working on a fix for the latest critical Internet Explorer (IE) flaw, but would not confirm an emergency repair before April's Patch Tuesday.
Jerry Bryant, senior security communications manager at Microsoft, said in a blog post his team was testing an update but would not verify when users could get their hands on it, as thorough testing on all affected versions needed to take place first.
"We have seen speculation that Microsoft might release an update for this issue out-of-band," he wrote. "I can tell you that we are working hard to produce an update which is now in testing."
"We never rule out the possibility of an out-of-band update. When the update is ready for broad distribution, we will make that decision based on customer needs."
The latest flaw in the troubled browser linked to an invalid pointer reference came to light last Wednesday when Microsoft admitted the vulnerability was already being taken advantage of by hackers.
As with many recent flaws, this one only affects IE6 and IE7, so as ever Microsoft is advising users to upgrade to the latest version of the browser, IE8.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Jennifer Scott is a former freelance journalist and currently political reporter for Sky News. She has a varied writing history, having started her career at Dennis Publishing, working in various roles across its business technology titles, including ITPro. Jennifer has specialised in a number of areas over the years and has produced a wealth of content for ITPro, focusing largely on data storage, networking, cloud computing, and telecommunications.
Most recently Jennifer has turned her skills to the political sphere and broadcast journalism, where she has worked for the BBC as a political reporter, before moving to Sky News.
-
Enterprises face delicate balancing act with data center sustainability goals
News High energy consumption, raw material requirements, and physical space constraints are holding back data center sustainability efforts, according to new research from Seagate.
By Emma Woollacott
-
Cleo attack victim list grows as Hertz confirms customer data stolen
News Hertz has confirmed it suffered a data breach as a result of the Cleo zero-day vulnerability in late 2024, with the car rental giant warning that customer data was stolen.
By Ross Kelly
-
Vulnerability management complexity is leaving enterprises at serious risk
News Fragmented data and siloed processes mean remediation is taking too long
By Emma Woollacott
-
Beat cyber criminals at their own game
Whitepaper A guide to winning the vulnerability race and protection your organization
By ITPro
-
Same cyberthreat, different story
Whitepaper How security, risk, and technology asset management teams collaborate to easily manage vulnerabilities
By ITPro
-
Three steps to transforming security operations
Whitepaper How to be more agile, effective, collaborative, and scalable
By ITPro
-
Should your business start a bug bounty program?
In-depth Big tech firms including Google, Apple and Microsoft offer bug bounty programs, but can they benefit smaller businesses too?
By Kate O'Flaherty
-
Accessing the XDR realm
Whitepaper A guide for MSPs to unleash modern security
By ITPro
-
Why zero trust strategies fail
In-depth Zero Trust is the gold standard for organizations in protecting systems from cyber attacks, but there are many common implementation pitfalls businesses must avoid
By Sandra Vogel
-
Sitecore XP RCE flaw is being actively exploited, ACSC warns
News The vulnerability was fixed last month but hackers are now moving against patching laggards
By Rene Millman