[Log In ] [New Posts] []
Go Back   GotApex? Forums Forums > General Topics > Software, OS, and the Internet
User Name
Password

Reply
 
Thread Tools Search this Thread Display Modes
Old 12-30-2005, 08:53 AM   #1
zero2dash
Commander
 
zero2dash's Avatar
 
Join Date: Dec 2000
Location: Fenton, MO - but I wish I was at the beach. ANY beach.
Posts: 1,367
Send a message via Yahoo to zero2dash
Yet another Windows security flaw surfaces

Dunno if there's going to be a patch fix for this (although I'm assuming within the next day or so, there will be).

http://news.yahoo.com/s/nf/20051229/tc_nf/40530
Quote:
Critical Flaw Detected in Windows Metafile

Jay Wrolstad, newsfactor.com Thu Dec 29, 4:10 PM ET
A vulnerability has been discovered in Microsoft Windows that allows hackers to remotely access PCs and install malware through an imaging-handling technology in the operating system.

Microsoft acknowledged the release of exploit code that could allow an attacker to execute arbitrary code when someone visits a Web site that contains a specially crafted Windows Metafile (WMF) image. Security authority Secunia labeled the vulnerability "extremely critical."

Malicious Graphics Files
WMF images are graphical files that can contain both vector and bitmap-based picture information. Microsoft Windows contains routines for displaying such files, but a lack of input validation in one of these routines may allow a buffer overflow to occur, which in turn may allow remote code execution.

The vulnerability can also be triggered from the Internet Explorer browser if the malicious file has been saved to a folder and renamed to other image file extensions such as ".jpg," ".gif," ".tif," and ".png." It has been detected on a patched system running Microsoft Windows XP SP2. Microsoft Windows XP SP1 and Microsoft Windows Server 2003 systems also are affected.

Current exploits use the Windows Picture and Fax Viewer to attack any application that can handle Windows Metafiles. Disabling the Windows Picture and Fax Viewer will not eliminate the risk as the flaw exists in the Windows Graphical Device Interface library.

The flaw has also raised concerns that Google Desktop may be another potential attack vector, and that various antivirus software products cannot detect all known exploits for this vulnerability.

A Familiar Problem
By default, Explorer on those operating systems runs in a restricted mode known as Enhanced Security Configuration, which Microsoft said mitigates this vulnerability as far as e-mail is concerned, although clicking on a link in a message would still put users at risk.

Yankee Group senior analyst Andrew Jaquith characterized the vulnerability as a serious security issue that has cropped up before in browsers, including Firefox and Safari. "It's particularly nasty because the browser automatically loads images when users visit a Web site. There is no built-in protection," he said.

Jaquith predicted that additional exploits of the vulnerability are expected since there is no patch available and the security hole is difficult to plug.

People who use Windows are advised to be wary when opening e-mail and links in e-mail from sources they don't trust. They should not save, open or preview image files from unfamiliar sources. And, as always, people are encouraged to update the patches for their operating systems.

Microsoft vowed to investigate the vulnerability and to provide a security update when it becomes available. Customers who believe they may have been affected may contact the company's Product Support Services.

I wonder if Google Desktop was questioned since...you know, they're competition.
zero2dash is offline   Reply With Quote
Old 01-02-2006, 02:29 PM   #2
Kevster
Admiral
 
Kevster's Avatar
 
Join Date: Jan 2002
Location: NorCal
Posts: 6,124
Send a message via Yahoo to Kevster
There's another thread on this topic about the temporary work-around, but here's the link to the Microsoft Technet article acknowledging the problem and their temporary solution:

http://www.microsoft.com/technet/sec...ry/912840.mspx
__________________
I think over again
My small adventures, my fears.
The small ones that seemed so big,
For all the vital things I had to get and to reach.

And yet there is only one great thing, the only thing:

To live to see the great day that dawns,
And the light that fills the world.


-old Inuit song
Kevster is offline   Reply With Quote
Old 01-02-2006, 02:54 PM   #3
InfiniteNothing
Chief of Naval Operations
 
InfiniteNothing's Avatar
 
Join Date: Aug 2002
Location: San Diego
Posts: 10,086
Temporary solution: Don't surf the web
InfiniteNothing is offline   Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -7. The time now is 07:45 PM.