WebProWorld Part of WebProNews.com
Page One Link To Us Edit Profile Private Messages Archives FAQ RSS Feeds  
 

Go Back   WebProWorld > Webmaster, IT and Security Discussion > IT Discussion Forum
Subscribe to the Newsletter FREE!


Register FAQ Members List Calendar Arcade Chatbox Mark Forums Read

IT Discussion Forum Having IT issues? Got IT questions? Who doesn't? If you can't get your Apache to work with your MySQL or your php is choking on your ODBC... Let's see if we can help you come up with some ideas.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 12-28-2004, 05:30 AM
WebProWorld New Member
 

Join Date: Dec 2004
Posts: 0
WPW_Feedbot RepRank 0
Default Windows vulnerabilities found over Christmas time

We're a bit worried about the four new Windows vulnerabilities that were found during Christmas holidays...especially since there a nor current patches against them. Windows XP SP2 is immune to some - but not all of them.</p><p align="justify">These vulnerabilities could be used in future viruses - for example in massmailers.</p><p align="justify">They are:</p><p align="justify">* Windows LoadImage API vulnerability. Can be used for remote code execution through crafted bitmaps (.BMP), icons (.ICO), cursor (.CUR) and animated cursor (.ANI) files

* Animated cursor (.ANI) vulnerability that causes system crash. </p><p align="justify">* Help file overflow that can be exploited through crafted windows help (.HLP) files. This vulnerability reportedly also affects Windows XP SP2.</p><p align="justify">* HTML Help Control exploit that uses a number of different vulnerabilities to bypass IE's Local Zone protections in order to run scripts on the host. SP2 is vulnerable.</p><p align="justify">At least this last exploit has already been used for dropping Trojans.</p><p align="justify">While waiting for a patch, we recommend upgrading to Windows XP SP2 and using a browser no one else is using.

On 28/12/04 At 09:13 AM</p>

Read more...
Reply With Quote
Reply

  WebProWorld > Webmaster, IT and Security Discussion > IT Discussion Forum
Tags: , , , ,



Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Search Engine Optimization by vBSEO 3.2.0