Microsoft Direct Show vulnerability (971778) - Fix it Workaround available
I've applied the "Fix it" workaround and so far no issues noted. This workaround might help corporate and home users until a more permanent patch becomes available. There is also a disabling "Fix it" icon to undo the workaround also
Microsoft DirectShow is Vulnerable
http://www.f-secure.com/weblog/archives/00001692.html
QUOTE: The vulnerability exploits quartz.dll Quicktime parsing. However, you don't have to have QuickTime installed.
Update: Microsoft has published a "Fix It" tool that does the registry changes for you.
Microsoft Direct Show vulnerability (971778) - Fix it Workaround available
http://support.microsoft.com/kb/971778
QUOTE: To implement the workaround that disables QuickTime parsing automatically on a computer that is running Windows 2000, Windows XP or Windows Server 2003, click the Fix this problem link under Enable workaround. To undo the workaround, click the Fix this problem link under Disable workaround. In either scenario, click Run in the File Download dialog box, and follow the steps in the Fix it wizard.
MORE ON VULNERABILITY
http://www.microsoft.com/technet/security/advisory/971778.mspx