The same week Microsoft released April’s second Patch Tuesday distribution, a hacker claimed on exploit websites to have found a number of application flaws. Microsoft today said it has found no such vulnerabilities.
However, a Microsoft spokesman said the Redmond, Wash.-based company is investigating the reports. initial inquiries have found no flaws in Word 2007 or Office 2007. The investigation is ongoing, according to the spokesperson.
Microsoft is not aware of any attacks targeting the reported flaws, the spokesperson said.
The most pressing fix released was MS07-021, which fixes a privilege escalation flaw in Microsoft Client/Server Runtime Server Subsystem (CRSSS) and affects all operating system versions, including Vista.
"No, this is not really unusual. What we have seen the past few Patch Tuesdays is that there are vulnerability announcements right before and right after, so it gives vendors very little time to react," he said.
Click here to email Online Editor Frank Washkuch.
Looking for a new job? SCMagazine.com has the latest IT security employment opportunities. Click here for our jobs page.