You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
ms11-090
About this tag
The MS11-090 security bulletin, released in December 2011, addresses a critical vulnerability in Microsoft software involving ActiveX controls. This update, also known as Cumulative Security Update of ActiveX Kill Bits (2618451), resolves a privately reported issue that could allow remote code execution if a user views a specially crafted web page instantiating a specific ActiveX control with Internet Explorer. The update includes kill bits for third-party controls, such as the HP Photo Creative ActiveX control. Users with fewer user rights are less impacted than those with administrative privileges. This bulletin is relevant for Windows users seeking information on historical security patches and ActiveX vulnerabilities.
Severity Rating: Critical
Revision Note: V1.1 (December 13, 2011): Corrected the kill bit information for the HP Photo Creative ActiveX control in the section, Third-Party Kill Bits. This is an informational change only. There were no changes to the security update files or detection...