P2P-Zone  

Go Back   P2P-Zone > Peer to Peer
FAQ Members List Calendar Search Today's Posts Mark Forums Read

Peer to Peer The 3rd millenium technology!

Reply
 
Thread Tools Search this Thread Display Modes
Old 26-05-01, 05:46 PM   #1
Malk-a-mite
 
Join Date: Mar 2001
Posts: 7
Default Microsoft Security Bulletin (MS00-079)

Moved to Peer-to-Peer by Malk
---------------
The story:
http://www.theregister.co.uk/content/4/19234.html

Quote:
A maliciously-crafted Telnet URL can be used to trigger a buffer overrun, which in turn would enable an attacker to run arbitrary code on a machine with the victim's level of permission. A malicious HTML page exploiting the hole could easily be circulated via e-mail.
The M$ response:
http://www.microsoft.com/technet/sec...n/MS00-079.asp

Quote:
The HyperTerminal application is a communications utility that installs by default on all versions of Windows 98, 98SE, Windows ME, Windows NT 4.0, and Windows 2000. The product contains two unchecked buffers through which an attacker could potentially cause code of her choice to run on another user’s machine:
__________________
Malk-a-mite
===================
Insert clever .sig file here
===================

Last edited by Malk-a-mite : 27-05-01 at 10:21 PM.
Malk-a-mite is offline   Reply With Quote
Old 26-05-01, 06:07 PM   #2
Mehmet
Post Different.
 
Mehmet's Avatar
 
Join Date: Mar 2001
Posts: 327
Default

In English, dont keep your naked pictures on your online pc..


Cheers Malk.. Been some time..
__________________
Kimse yok isime karisan.. Gozum siselere takiliyor.. Becerebilseydim.. Ne ala.. Bu gunlerde boyleyim ben..

Mehmet is offline   Reply With Quote
Old 26-05-01, 06:09 PM   #3
rebel_mom
who's line is it anyways?
 
Join Date: Jan 2001
Posts: 2,656
Default

Yes I got that warning today since I help alot of seniors and many are from the UK or correspond with the Uk.
rebel_mom is offline   Reply With Quote
Old 26-05-01, 06:15 PM   #4
zombywoof
 
 
zombywoof's Avatar
 
Join Date: Mar 2000
Posts: 2,160
Default

I don't even know why they even bother packaging hyperterm on these pc's. Hyperterm IMO is a piece of garbage. I'd rather use packages such as procomm or Terranova for remote dial access and terminal emulation.

Thanks for the updates malk.

Last edited by zombywoof : 26-05-01 at 06:35 PM.
zombywoof is offline   Reply With Quote
Old 26-05-01, 06:25 PM   #5
TankGirl
Madame Comrade
 
TankGirl's Avatar
 
Join Date: May 2000
Location: Area 25
Posts: 5,587
Wink

...and out goes Hyperterminal from my system. Thanks again Malk-a-mite for bringing us important security information.

Note also this important news item that Malk posted recently on P2P:

Quote:
Windows Media Player hole surrenders your machine
http://www.theregister.co.uk/content/6/19164.html

"The Windows Media Player ASX (Active Stream Redirector) processor contains an unchecked buffer susceptible to an overrun which could enable an attacker to run arbitrary code on a machine with the victim's level of permission, a Microsoft security bulletin warns. "
So if you use Windows Media Player 6.4 or 7 it might be wise to download and run the security patch for ver 6.4 or the upgrade to 7.1 from ver 7.

Microsoft has had plenty of security problems in its standard software lately and especially IE seems to be a big security hole in itself.

- tg
TankGirl is offline   Reply With Quote
Old 26-05-01, 06:51 PM   #6
Mehmet
Post Different.
 
Mehmet's Avatar
 
Join Date: Mar 2001
Posts: 327
Default

even better, spend some cash on macintosh..
__________________
Kimse yok isime karisan.. Gozum siselere takiliyor.. Becerebilseydim.. Ne ala.. Bu gunlerde boyleyim ben..

Mehmet is offline   Reply With Quote
Old 24-06-01, 01:27 AM   #7
assorted
WAH!
 
assorted's Avatar
 
Join Date: Apr 2001
Posts: 725
Default

lovely link malk; thx.

has this one ever been fixed?

http://www.guninski.com/javaea.html

i still have active scripting turned off on my ie because of it... it works like a charm... i haven't upgraded my ie in a while; was this ever taken care of?
__________________
I hate hate haters
assorted is offline   Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump






All times are GMT -6. The time now is 10:17 AM.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
© www.p2p-zone.com - Napsterites - 2000 - 2024 (Contact grm1@iinet.net.au for all admin enquiries)