The company’s security bulletin MS05-054 also plugs three other holes in IE, of which one is also categorized as critical.
An attacker who successfully exploited the most severe of these vulnerabilities could take complete control of an affected system, read the Microsoft bulletin of the pair of critical IE flaws.
Security outfit Symantec raised its threat index to Level 2 after Microsoft’s patch release, which means that an outbreak of malicious mode or attacks is expected.
Symantec has already seen exploits for some of these vulnerabilities in the wild and recommends that users apply the updates as quickly as possible, Symantec said, in a statement.