MS Monthly Patch Omits Word Zero-Days
bungee jumper writes "Microsoft released four bulletins with patches for 10 vulnerabilities but there are no fixes for known MS Word zero-day flaws that are under active attack, eWeek.com reports. The January batch covers critical bugs in Excel, Outlook, and Windows. The first confirmed Windows Vista flaw, a denial-of-service issue that was publicly released on an underground hacker site in Russia, also remains unpatched." eWeek notes that Microsoft originally scheduled eight bulletins for release, but pulled four last Friday without explanation.
Microsoft is such a big company, you would think that they would have been able to solve this by now. Why couldn't they have, for example, had two or three different teams working on a patch, and then choosing the best solution? They could even offer a nice reward to the winning team as an incentive.
I like my coffee the way I like my women - roasted and ground up into little tiny pieces.
Anyone know what this is about?