New Vulnarability in Windows XP

  • Thread starter Thread starter netfreak
  • Start date Start date
  • Replies Replies 13
  • Views Views 2,987
or maybe stick to good sites... but ads are managed by third party ad servers so it sucks anyways.
 
Originally posted by Sushubh@Dec 28 2005, 11:43 PM
ads are managed by third party ad servers so it sucks anyways.
[snapback]37515[/snapback]
[/quote]

That makes it scarier. Any virus writer can pay to get his/her image displayed in millions of PCs.

FF has a setting for "Load images from originating web sites only". Is it possible to do something similar in IE or Opera?
 
any1 know how to make opera to "not show images" and remeber it?i have to do it again every time i start the application? help "Cult of the opera L0sers" (oops USERS!) 🙂
 
To both of the above posts:Yeah, opera DOES have that setting, did you look into its settings at all?Tools >> Preferences
 


Update: beehappyy.biz is being implicated in the currently ongoing WMF 0-day exploit mania. And guess what beehappyy.biz resolves to ? 195.225.176.38 - Kiev, Ukraine. Null-Routing, anyone?
 
microsoft is scheduled to release the official patch on jan 10. and they are recommending the users to not apply any 'third party' patch to prevent other problems.
 
uhm! i dunno if its off topic but there is something called "the gif bug" WORKS FOR MANY EXTENSION (jpg,gif,png)...its an IE Bug...lets u excute javscript code...discovered by Sven Vetsch!
ATTACK OF MULTIMEDIA...RUN FOR YOUR HD!!! :blink: :blink: :blink:
check it out!
http://www.zone-h.org/advisories/read/id=8304
its so scary...ooh! and i also found a misconfigured apache server that lets u upload files ...but thats not the topic of discussion is it? 🙂
 
Temporary fix for prob until official patch is releasedregsvr32 /u c:\winnt\shimgvw.dll
 
Just days after announcing plans to release a patch that fixes a security vulnerability in Windows Meta File image processing on January 10, Microsoft has rushed out the update early. The company said the patch was ready earlier than expected and its decision was based on feedback from partners.

WMF, or Windows Metafile, is a vector based image format used by Microsoft's operating systems. SHIMGVW.DLL is loaded to render the images and contains a flaw that opens the door for a malformed WMF image to cause remote code execution and potentially allow for a full system compromise.

\"So what changed to make us decide to release an update today? Two things: The first is that we have an update that we believe in. The team worked very hard to run all of the key scenarios that we are concerned about,\" explained Mike Nash, corporate vice president for security at Microsoft.

\"While we would always like to have more time, we are confident in the quality of the update. The second issue is that while there is no imminent threat, a number of customers are seeing exploit traffic hitting their AV, IDS and IPS systems.\"

Microsoft consulted partners about the out of band update, who recommended the company release the update as soon as possible. [/b]

Dont worry about installing unoffcial patch, the offcial patch is released, if ur live update is on, it would have already installed by now!


Edit:

Here is the link to download the patch:
http://www.microsoft.com/technet/security/...n/ms06-001.mspx
 

Top