Exploit code is available publicly: http://www.milw0rm.com/exploits/2440 SANS diary: http://isc.sans.org/diary.php?storyid=1742 And this is so massively exploited, it makes VML look cute. There's a rootkit, some other malware, and haxdor! (a phishing trojan horse) Thanks to Roger Thompson at explabs.com for first reporting it. Gadi.
Mail converted by mhonarc 2.6.15
This archive provided courtesy of JSW4.NET, Internet Hosting Services for Small Business.