A new security flaw in IE hase been discovered.

Security information provider Secunia raised the buffer overflow flaw to its highest rating in a new advisory. The vulnerability, which was made public on Tuesday, could be used to make Internet Explorer trigger a malicious program when the Microsoft browser loads a specially formatted Web page. The flaw does not affect Windows XP Service Pack 2, Secunia said.

"This advisory has been rated ‘extremely critical,’ as a working exploit has been published on public mailing lists," the company said.

Secunia has two options for people who haven’t upgraded to SP2:

…users can upgrade to Windows XP SP 2 or use a different browser.

Or, you could do both. Get Firefox