Nothing. Well, almost nothing. Do you think that Microsoft’s cleaned up its Windows patching mess? Details coming in Computerworld.
[See the full post at: What do we know about the big, scary, exploited, emergency patched Internet Explorer security hole CVE-2019-1367?]
![]() |
There are isolated problems with current patches, but they are well-known and documented on this site. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
What do we know about the big, scary, exploited, emergency patched Internet Explorer security hole CVE-2019-1367?
Home » Forums » Newsletter and Homepage topics » What do we know about the big, scary, exploited, emergency patched Internet Explorer security hole CVE-2019-1367?
- This topic has 16 replies, 11 voices, and was last updated 5 years, 8 months ago by
anonymous.
AuthorTopicwoody
ManagerSeptember 25, 2019 at 7:49 am #1964542Viewing 7 reply threadsAuthorReplies-
MikeMc
AskWoody LoungerSeptember 25, 2019 at 8:23 am #1964568I just installed windows server 2019 essentials and std. for my domain and web server respectively. They both have IE out of the box. The browser is used for accessing help files (FYI, ‘Click here for more information’). I’m considering installing Firefox on these machines as the default browser (as it is on my workstations). It would seem safer than relying on IE. Any thoughts?
-
Mr. Natural
AskWoody Lounger -
MikeMc
AskWoody Lounger -
Susan Bradley
Manager
-
-
-
-
geekdom
AskWoody_MVPSeptember 25, 2019 at 9:08 am #1964625Do you think that Microsoft’s cleaned up its Windows patching mess?
– Patches appear on random dates.
– Patches are issued again and again.
– Patches appear in the Windows Update Catalog, but not in the Windows Update Queue.
– Patch documentation is incomplete.
– Patches require “i” before “e” installation in order to install correctly.On permanent hiatus {with backup and coffee}
offline▸ Win10Pro 2004.19041.572 x64 i3-3220 RAM8GB HDD Firefox83.0b3 WindowsDefender
offline▸ Acer TravelMate P215-52 RAM8GB Win11Pro 22H2.22621.1265 x64 i5-10210U SSD Firefox106.0 MicrosoftDefender
online▸ Win11Pro 22H2.22621.1992 x64 i5-9400 RAM16GB HDD Firefox116.0b3 MicrosoftDefender1 user thanked author for this post.
-
PKCano
ManagerSeptember 25, 2019 at 9:17 am #1964639– Patches are issued again and again.
They may be issued with the same KB number but with changed metadata and/or contents. So they are not the same patch, just the same name.
– Patches appear in the Windows Update Catalog, but not in the Windows Update Queue.
This is intentional. Some patches are not meant for general distribution, and therefore are not offered to a general User base through Windows Update.
– Patches require “i” before “e” installation in order to install correctly.
If you don’t understand Windows updating, you should not be using manual patcheing. It is not a method recommended for the general User.
2 users thanked author for this post.
-
-
geekdom
AskWoody_MVPSeptember 25, 2019 at 9:32 am #1964655To continue with patching difficulties:
– Average person is unaware that patches have been issued with the same number.
– Servicing Stack Updates must be treated differently.On permanent hiatus {with backup and coffee}
offline▸ Win10Pro 2004.19041.572 x64 i3-3220 RAM8GB HDD Firefox83.0b3 WindowsDefender
offline▸ Acer TravelMate P215-52 RAM8GB Win11Pro 22H2.22621.1265 x64 i5-10210U SSD Firefox106.0 MicrosoftDefender
online▸ Win11Pro 22H2.22621.1992 x64 i5-9400 RAM16GB HDD Firefox116.0b3 MicrosoftDefender1 user thanked author for this post.
-
PKCano
ManagerSeptember 25, 2019 at 9:42 am #1964659– Average person is unaware that patches have been issued with the same number.
The average person has no need to know that if they use Windows Update and don’t try to manage Windows updating themselves.
– Servicing Stack Updates must be treated differently.
Again, the average person has no need to know that if they use Windows Update and don’t try to manage Windows updating themselves.
-
-
woody
ManagerSeptember 25, 2019 at 9:41 am #1964658– Average person is unaware that patches have been issued with the same number.
Just wait till you see the dual-patch-one-KB approach in Win10 1903 and 1909.
We ain’t seen nuthin’ yet.
-
bobcat5536
AskWoody LoungerSeptember 25, 2019 at 11:10 am #1964719Windows 10, 1809. The local news this morning reported on the IE patch and went on to say that you needed to install it manually, as it was not available through Windows Update. If this is the case, and we need this patch, can someone provide a link to the catalog for it. Seem kinda strange if this is that important that it would not come down through WU.
Group A
-
woody
ManagerSeptember 25, 2019 at 11:15 am #1964727It’s NOT an emergency patch, although lots and lots and lots of commentators are saying it is.
The patch is — patches are — a Keystone Kops routine that’s somehow made it into the mainstream media. Just ask yourself if the reporter responsible has any idea what a “scripting engine memory corruption vulnerability” is, or if they can point to just one example of the vulnerability appearing in the wild.
Read my latest Computerworld article for details.
Note that we’re still at MS-DEFCON 2.
2 users thanked author for this post.
-
Mr. Natural
AskWoody LoungerSeptember 25, 2019 at 1:21 pm #1964849Yeah I’m seeing a lot of headlines this week and last warning of impeding doom, update immediately.
I have a bad habit of glossing over readings but something seems odd regarding all the hoopla.
So there have been several emergency patches regarding IE security/VB script issues within the past week. Numerous tech sites are saying you need to run windows update immediately. However up until tomorrow apparently the patches were not offered on Windows Update but only via Microsoft Download Catalog. So there’s probably a lot of people that rushed to Windows Update, applied any available updates and now believe they are protected when the patches have not yet been offered through WU.
I was wondering earlier this week as others have already mentioned, if these patches were so critical why were they not originally offered through WU?
Red Ruffnsore
2 users thanked author for this post.
-
-
-
NoLoki
AskWoody LoungerSeptember 25, 2019 at 12:54 pm #1964819No, I do not think that MS has cleaned up its patching chaos and the hysteria helped no-one.
The result of this is that subsequent true claims will be disbelieved.2 users thanked author for this post.
-
Nibbled To Death By Ducks
AskWoody PlusSeptember 26, 2019 at 12:16 am #1965363Do you think that Microsoft’s cleaned up its Windows patching mess?
Even with their new AI processors?
No, no, I don’t think they have…
(Sorry, couldn’t resist.)
Win7 Pro SP1 64-bit, Dell Latitude E6330 ("The Tank"), Intel CORE i5 "Ivy Bridge", 12GB RAM, Group "0Patch", Multiple Air-Gapped backup drives in different locations. Linux Mint Newbie
--
"The more kinks you put in the plumbing, the easier it is to stop up the pipes." -Scotty1 user thanked author for this post.
-
mrj2k
AskWoody LoungerSeptember 27, 2019 at 1:38 am #1966099The most concerning thing for me is microsoft’s team of security experts (the ones being paid to keep us all cyber safe) are not even the ones who discovered this Zero-day memory corruption vulnerability in Internet Explorer but is in fact Clément Lecigne of (GOOGLE’s) Threat Analysis Group and this is not the first time that someone on the outside looking in has spotted danger in a microsoft OS!! It just about has me ready to spring for that new chromebook or macbook.i’m not suggesting these choices are flawless but microsoft has truly fumbled the ball,i mean they are bricking peoples brand new out of the box windows 10 computers or at the very least killing the joy of that new car smell.
mrj2k
-
anonymous
GuestSeptember 27, 2019 at 1:40 pm #1966644We all wish we could catch our own mistakes. It is fairly normal for someone else to find our flaws for us. We only hope they are kind when they pull us aside to point out the spinach in our teeth. It is why writers pay for proofreading services, and major software developers have bounty programs. (some even use in house Quality Control)
I agree that Microsoft has stumbled more than usual. But it is not made worse that an outsider found it first. It was bad before the announcement. And it is bad after the announcement. The only difference is we heard the announcement. And that helps move us toward better.
-
Viewing 7 reply threads - This topic has 16 replies, 11 voices, and was last updated 5 years, 8 months ago by
-

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Office gets current release
by
Susan Bradley
46 minutes ago -
FBI: Still Using One of These Old Routers? It’s Vulnerable to Hackers
by
Alex5723
6 hours, 9 minutes ago -
Windows AI Local Only no NPU required!
by
RetiredGeek
2 hours, 53 minutes ago -
Stop the OneDrive defaults
by
CWBillow
6 hours, 58 minutes ago -
Windows 11 Insider Preview build 27868 released to Canary
by
joep517
16 hours, 53 minutes ago -
X Suspends Encrypted DMs
by
Alex5723
19 hours, 5 minutes ago -
WSJ : My Robot and Me AI generated movie
by
Alex5723
19 hours, 23 minutes ago -
Botnet hacks 9,000+ ASUS routers to add persistent SSH backdoor
by
Alex5723
20 hours ago -
OpenAI model sabotages shutdown code
by
Cybertooth
20 hours, 37 minutes ago -
Backup and access old e-mails after company e-mail address is terminated
by
M W Leijendekker
8 hours, 47 minutes ago -
Enabling Secureboot
by
ITguy
15 hours, 47 minutes ago -
Windows hosting exposes additional bugs
by
Susan Bradley
1 day, 4 hours ago -
No more rounded corners??
by
CWBillow
1 day ago -
Android 15 and IPV6
by
Win7and10
14 hours, 5 minutes ago -
KB5058405 might fail to install with recovery error 0xc0000098 in ACPI.sys
by
Susan Bradley
1 day, 16 hours ago -
T-Mobile’s T-Life App has a “Screen Recording Tool” Turned on
by
Alex5723
1 day, 19 hours ago -
Windows 11 Insider Preview Build 26100.4202 (24H2) released to Release Preview
by
joep517
1 day, 14 hours ago -
Windows Update orchestration platform to update all software
by
Alex5723
2 days, 2 hours ago -
May preview updates
by
Susan Bradley
1 day, 14 hours ago -
Microsoft releases KB5061977 Windows 11 24H2, Server 2025 emergency out of band
by
Alex5723
1 day, 5 hours ago -
Just got this pop-up page while browsing
by
Alex5723
1 day, 19 hours ago -
KB5058379 / KB 5061768 Failures
by
crown
1 day, 16 hours ago -
Windows 10 23H2 Good to Update to ?
by
jkitc
18 hours, 20 minutes ago -
At last – installation of 24H2
by
Botswana12
2 days, 18 hours ago -
MS-DEFCON 4: As good as it gets
by
Susan Bradley
15 hours, 7 minutes ago -
RyTuneX optimize Windows 10/11 tool
by
Alex5723
3 days, 6 hours ago -
Can I just update from Win11 22H2 to 23H2?
by
Dave Easley
1 day, 5 hours ago -
Limited account permission error related to Windows Update
by
gtd12345
3 days, 19 hours ago -
Another test post
by
gtd12345
3 days, 20 hours ago -
Connect to someone else computer
by
wadeer
3 days, 14 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.