View Single Post
Old 26-05-01, 05:46 PM   #1
Malk-a-mite
 
Join Date: Mar 2001
Posts: 7
Default Microsoft Security Bulletin (MS00-079)

Moved to Peer-to-Peer by Malk
---------------
The story:
http://www.theregister.co.uk/content/4/19234.html

Quote:
A maliciously-crafted Telnet URL can be used to trigger a buffer overrun, which in turn would enable an attacker to run arbitrary code on a machine with the victim's level of permission. A malicious HTML page exploiting the hole could easily be circulated via e-mail.
The M$ response:
http://www.microsoft.com/technet/sec...n/MS00-079.asp

Quote:
The HyperTerminal application is a communications utility that installs by default on all versions of Windows 98, 98SE, Windows ME, Windows NT 4.0, and Windows 2000. The product contains two unchecked buffers through which an attacker could potentially cause code of her choice to run on another user’s machine:
__________________
Malk-a-mite
===================
Insert clever .sig file here
===================

Last edited by Malk-a-mite : 27-05-01 at 10:21 PM.
Malk-a-mite is offline   Reply With Quote