Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Feast of Egos
Tim Mullen, 2004-09-07

Eager to tarnish Microsoft's shiny new Service Pack 2, the security press managed to spin the most thin and marginal issues into "gaping holes" and "security craters."

Comments Mode:
Feast of Egos 2004-09-07
Beryllium Sphere LLC (1 replies)
Feast of Egos 2004-09-13
Anonymous
Feast of Egos 2004-09-08
Todd Knarr (2 replies)
Feast of Egos 2004-09-09
Troll (2 replies)
Feast of Egos 2004-09-10
Todd Knarr (2 replies)
Feast of Egos 2004-09-13
Anonymous
Feast of Egos 2004-09-14
Angus (1 replies)
Feast of Egos 2004-09-16
Anonymous
Not sure what you mean by "a security feature" but it sounds like you are agreeing with the original post about the cmd prompt zone awareness being a security "problem" (not feature.)

It is not, for the very reasons you state. If the user is going to follow those detailed instructions, then they would follow the one that says "press OK when the box thingy tells you that you have to approve this" and they will. Or if they tell you to save it on a FAT drive where the zone info won't be saved. Or whatever. Besides, if it is through email, then they would have to change the default settings of OE in SP2 anyway, because they would not be able to save it otherwise. You guys are just trying to find stuff wrong with SP2, just like the author said.



[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/265/28460#28460
Feast of Egos 2004-09-13
Ed
Feast of Egos 2004-09-14
Anonymous
Feast of Egos 2004-09-08
Anonymous
Feast of Egos 2004-09-08
Mat, CISSP
Feast of Egos 2004-09-08
Anonymous (1 replies)
Feast of Egos 2004-09-08
Anonymous
Feast of Egos 2004-09-08
Problem Updates (1 replies)
Feast of Egos 2004-09-14
Anonymous
I Agree 2004-09-08
Lucas
Feast of Egos 2004-09-09
Some Hacker (3 replies)
Feast of Egos 2004-09-14
Anonymous (1 replies)
Feast of Egos 2004-09-19
Anonymous
Feast of Egos 2004-09-14
Brutal Dictator
Feast of Egos 2004-09-14
Angus (1 replies)
Feast of Egos 2004-09-19
AWKz
SP2 = MS-hyped Snake Oil 2004-09-14
Matthew Murphy
Feast of Egos 2004-09-14
Anonymous
Feast of Egos 2004-09-17
Anonymous







 

Privacy Statement
Copyright 2009, SecurityFocus