Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Exploit based on leaked Windows code released
Patrick Gray, SecurityFocus 2004-02-16

The first new security vulnerability to emerge from last week's Microsoft source code leak crossed a security mailing list over the weekend, reigniting debate over the seriousness of the leak.

Comments Mode:
I posted that vulnerability in August 2000 2004-02-16
John Nagle (2 replies)
See: http://slashdot.org/comments.pl?sid=7070&cid=859419

In that Slashdot article back in 2000, I reported that vulnerability, writing "The ... decompressor for RLE-compressed .BMP files is in the kernel, and contains a buffer overflow."

I didn't need the source code to find that problem. I fo...

[ more ]  [ reply ]
I posted that vulnerability in August 2000 2004-02-19
Anonymous
To Microsoft's credit, the overflow has been corrected for some time now. They can't bear any resentment for something they've already fixed......

[ more ]  [ reply ]
I posted that vulnerability in August 2000 2004-02-19
Coldman
In case if you would report that problem to MS directly - it could be fixed...

...

[ more ]  [ reply ]
Exploit based on leaked Windows code released 2004-02-18
Y@M@Z@KY (2 replies)
This is just not right, while I believe that people finding that there is faults in these windows programs is good because we find what they are in order to fix them, it is not right to have so many of them, we are humans and we make mistakes but this is becoming routine with Billies' software.

...

[ more ]  [ reply ]
Exploit based on leaked Windows code released 2004-02-19
Anonymous
Becoming?

Hmmm. How long have you been using Bill's software? I cannot remember them creating a good operating system since Dos.

...

[ more ]  [ reply ]
Exploit based on leaked Windows code released 2004-02-19
PoopForBrains
Did you completely not read the article and see that it is already patched?

Unless someone is running old and unpatched stuff, this ain't going to do much.

It's the same with running ANY OS unpatched, idiots use Linux too....

[ more ]  [ reply ]
Exploit based on leaked Windows code released 2004-02-19
no one important
Having these flaws is potentially good, but what about people who have pirated windows and cant download the service pack, which are vulnerable! I know of too many people that have burned copies of windows. But what if Microsoft tracks down, and convicts. It would be a world wide investigation...pff...

[ more ]  [ reply ]
Exploit based on leaked Windows code released 2004-02-21
empty
I want to know who the moron from miscname.com they talked to was. This idiot actually wants Microsoft to release a hotfix so that users using the pirated version of WinXP aren't vulnerable?!!!? That's ridiculous! I have no beef with piracy really, but don't go knocking on Microsoft's door asking...

[ more ]  [ reply ]







 

Privacy Statement
Copyright 2009, SecurityFocus