![]() |
![]() |
![]() |
![]() |
![]() |
Information about your favorite browser: news, articles and more.
The Kill Bit FAQ: Part 3 of 3
Published February 12th, 2008 in Browser Security, Security
It is very common for Microsoft security bulletins to include “Kill-Bits” to disable individual ActiveX controls / COM objects. Here is the final part of our three-part Kill-Bit FAQ.
Are there issues that could complicate the implementation of a Kill-Bit based fix?
Yes. Here’s one interesting example: if the vulnerable code is in a separate binary from the one that implements the ActiveX control (the one referenced by the registered CLSID for the control) then the Kill-Bit may not have the intended effect. Security Vulnerability Research & Defense : The Kill-Bit FAQ: Part 3 of 3








