Hier staat beschreven wat er allemaal gefixt is trouwens..
In het 'kort':
This is a cumulative patch that, when applied, eliminates all previously addressed security vulnerabilities affecting Internet Explorer 5.01, 5.5 and 6.0. In addition to eliminating all previously discussed vulnerabilities versions, it also eliminates eliminates six new ones:
A vulnerability that could allow an attacker to cause script to be run in the Local Computer Zone.
A vulnerability that could disclose information store on the local system to an attacker including, potentially, personal information.
A vulnerability that could allow a web site to read the cookies of another web site by embedding script in cookies on the local system and invoking that script to read other cookies on the local system.
A vulnerability that could allow an attacker to cause a web page's security zone settings to be incorrectly determined and allow a page to run with fewer security restrictions than is appropriate.
Two newly discovered variants of the "Content-Disposition" vulnerability first discussed in MS01-051.
Finally, it introduces a new enhancement to the Restricted Sites zone. Specifically, it disables frames in the Restricted Sites zone.
En ook wel belangrijk:
Inclusion in future service packs:
The fixes for these issues will be included in IE 6.0 Service Pack 1.
The fixes for the issues affecting IE 5.01 Service Pack 2 will be included in Windows 2000 Service Pack 3.