Microsoft’s Vista has been in news since the time it has been released.

The reason for making news is not that the OS has been great and not prone to any loopholes as the Redmond giant had expected, but the reason is that the OS has been marred with a large number of loopholes.

Everyday hackers are discovering new loopholes in the design of Vista and now Vista’s User Access Control tool is having some loopholes.

The problem is that the OS assumes that all setup programs should be run with administrative privileges and has no option to let users run those setups without having the proper privileges. Once the user is having all the required privileges it allows the setup to load all the kernel drivers.

This means that a freeware Tetris game installer will be allowed to load all the kernel drivers even if it does not need them.

Microsoft has also confirmed the flaw but has also commented that it was a design choice to balance the security with the ease of use.

Via: Slashdot