Security Update for Outlook Express (951066)

Summary
This host is missing a critical security update according to Microsoft Bulletin MS08-048.
Impact
Remote attackers can construct a specially crafted Web page, information disclosure, and could read data from another Internet Explorer domain or the local computer. Impact Level : System
Solution
Run Windows Update and update the listed hotfixes or download and update mentioned hotfixes in the advisory from the below link. http://www.microsoft.com/technet/security/bulletin/ms08-048.mspx
Insight
Issue is due to the MHTML protocol handler incorrectly interprets MHTML URL redirections that could potentially bypass Internet Explorer domain restrictions when returning MHTML content.
Affected
MS Outlook Express 5.5 & 6 on MS Windows 2000 MS Outlook Express 6 on MS Windows 2003 and XP
References