[citation][nom]jhansonxi[/nom]These two statements seem conflicting:"Microsoft claims that it had discovered the flaw itself, rather than through a security firm or by monitoring ‘chatter’ on hacker websites.""The problem is already being exploited in the wild and can allow attackers to gain full control of a computer."So Microsoft "discovers" a flaw all by itself and releases a surprise patch while there are "exploits in the wild". Do the exploiters work on the Windows developer team or did they get advanced info through MSDN?"Microsoft also added that the windows firewall CAN be used to block such an attack."In other words it doesn't have any effect on the exploit by default.[/citation]
Pretty Naive response - just because one person finds something, doesn't mean nobody else is allowed to find the same thing.
It could be that Microsoft discovered it, then also discovered that it was already being exploited. Maybe not exploited on a grand scale yet though.
And yes Captain obvious, the firewall is no good by default, but who DIDN'T know this already?