Microsoft has issued an emergency out-of-band security update to address two critical vulnerabilities impacting Internet Explorer and Windows Defender. The flaws — indexed as CVE-2019-1367 and CVE-2019-1255 — made it possible for a remote attacker to take control of a target system and trigger a denial of service in Microsoft Defender, the antivirus app that ships with Windows software. Of the two, the former is a zero-day vulnerability in Internet Explorer affecting versions 9, 10, and 11 and is the more severe one. The remote code execution flaw, if exploited successfully, could enable an attacker to gain the same user…

This story continues at The Next Web

Or just read more coverage about: Windows,Microsoft