I received an email from Microsoft about this latest vulnerability without a patch. One key paragraph:
Microsoft is disappointed that certain security researchers have breached common industry practices and published proof of concept code potentially harming computer users. Microsoft continues to urge security researchers to disclose vulnerability information responsibly and allow customers time to deploy updates so that they do not aid criminals in their attempt to take advantage of software vulnerabilities.
Isn’t this sort of like trying to tell a burglar he is only allowed to break into your house between the hours of 9 and 11pm when you aren’t home?
No.