Security experts have found a vulnerability in the Windows operating system that could allow malware to lurk undetected in long string names of the Windows Registry. According to a security advisory by Denmark-based IT security company Secunia, the weakness is caused by an error in the Windows Registry Editor Utility's handling of long string names.
Vulnerability in Microsoft Corp.'s ASP.Net could allow an attacker to bypass security features on a Web server and view sensitive content, according to the company.
Microsoft Corp. issued a software patch Wednesday for what it described as a "critical" new security vulnerability affecting most versions of its Windows operating systems and certain versions of the Internet Explorer (IE) Web browser.