Tombkeeper's harmonious Blog
The following is intended for non-information security professionals who subscribe to this blog.
The vulnerability information is as follows:Http://www.microsoft.com/china/technet/security/advisory/971778.mspx.
Microsoft has not fixed the vulnerability. If you are lucky, Microsoft may release the patch this month, but it is more likely that the patch will be available at least in the middle of the next month.
Whether you use a temporary solution provided by Microsoft or not, we recommend that you perform the following additional security settings in IE:
That is,
Run components without Authenticode SignatureAnd
Run the Authenticode signature componentSelect "Disable ".
This setting does not fix the vulnerability, but can cause the current vulnerability to fail to be exploited. I suggest you keep your IE browser secure, even after Microsoft patches the vulnerability.