CfH gives go-ahead for IE7

  • 22 January 2010

NHS Connecting for Health has said organisations still using Microsoft Internet Explorer 6 should move to IE7, following security concerns about the older browser.

The Department of Health signed a national licensing deal with Microsoft in October 2001 that lead to the majority of NHS trusts using IE 6 for internet and intranet access.

In 2006, CfH instructed trusts not to download copies of the latest versions of IE until it could confirm that the software worked with national applications delivered by the programme and its prime contractors.

However, last week Microsoft admitted that a security hole in IE6 had led to attacks against Google and other hackers in China.

This prompted both the French and German governments to warn internet users not to use the browser and to find an alternative, such as Mozilla Firefox or Google Chrome.

The UK government has been slow to react to the warnings. But yesterday the Cabinet Office issued a statement that said: “Government departments have been issued an alert on how to deal with this particular incident and to mitigate against vulnerabilities in relation to particular versions of IE.”

Following this, CfH issued guidance telling trusts to use the Microsoft website or their system management or patch management software to obtain an update to resolve the vulnerability.

The guidance states: “It is recommended that this update is applied to all affected computers within an organisation. Organisations should ensure that appropriate levels of testing of the update take place prior to mass deployment.”

It adds: “It is additionally further recommended that organisations still using Internet Explorer 6 on the affected platforms upgrade to Internet Explorer 7.

“Internet Explorer 7 has been warranted to work correctly with Spine applications such as the Clinical Spine Application and provides additional security features over Internet Explorer 6.”

Earlier this week, Microsoft said that Internet Explorer is still the most secure browser on the market.

Cliff Evans, Microsoft’s head of security and privacy, said that for web users to be affected they would have to be using IE6 on particular platforms and to visit a compromised website, of which there are apparently “very few.”

CfH is advising trusts to contact the Department of Health Informatics Directorate Infrastructure Security Team or to contact Microsoft or their vendor if they experience further problems.

Microsoft’s enterprise wide agreement with the NHS has been re-signed since 2001 and is due to be renewed again later this year.

Link: Update obtainable from Microsoft TechNet.

More information on Internet Explorer from Microsoft.com.

Subscribe to our newsletter

Subscribe To Our Newsletter

Subscribe To Our Newsletter

Sign up

Related News

System C to trial AI assistant to ease NHS social care admin

System C to trial AI assistant to ease NHS social care admin

System C is to trial an AI assistant for social care in the NHS to support social care practitioners by reducing their admin burden.
NHSE CIO calls for trusts to stop developing their own data centres

NHSE CIO calls for trusts to stop developing their own data centres

NHS England CIO John Quinn has urged trusts to stop investing in developing their own local data centres and instead move to cloud solutions.
Concerns raised that NHS digital plans could exclude older adults

Concerns raised that NHS digital plans could exclude older adults

Concerns have been raised that government NHS plans, including having a single patient record through the NHS App, will exclude older people.