Microsoft has patched no less than three security vulnerabilities affecting Internet Explorer 8 running on the latest iteration of the Windows client. But in addition to resolving security issues for Windows 7’s IE8, the Redmond company has also plugged additional IE security holes on supported versions of the Windows client and server platforms. In total, Microsoft Security Bulletin MS09-072 – Critical - Cumulative Security Update for Internet Explorer (976325) is designed to patch no less than five vulnerabilities, one of which has been disclosed publicly, with proof of Concept code available in the wild.
Internet Explorer users are advised to deploy the security bulletin for IE as soon as possible. The patches have been released on Windows Update, and are currently served to all Windows users. Customers with Automatic Updates enabled will have the patches automatically served to them.