Full Disclosure mailing list archives
Re:Windows XP Explorer Executes Arbitrary Code in Folders
From: "Ian Latter" <itsecurity () mq edu au>
Date: Tue, 27 Jan 2004 07:11:23 +1000
http-equiv, If you've got a fetish for vulnerabilities in IE, then one I would be most interested in is the fonts. Fonts get an explicitly seperate security option under the zone tabs, and it was the font files that allowed exploitation around the Xbox dashboard. A thought for those arguing for/against MS's obligations/ responsibilities RE security and its software ... and the user's role in this event ... consider the Xbox, as it is a Win2k cut-down that is shipped as is, and without the means for a user to customise it further ... ----- Original Message -----
From: "JacK" <jack () websecurite org> To: <full-disclosure () lists netsys com> Subject: [Full-disclosure] Windows XP Explorer Executes Arbitrary Code in Folders Date: Mon, 26 Jan 2004 13:54:04 +0100 Hello, http://www.securitytracker.com/alerts/2004/Jan/1008843.html -- JacK _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
-- Ian Latter IT Security Officer Macquarie University _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Windows XP Explorer Executes Arbitrary Code in Folders JacK (Jan 26)
- Re: Windows XP Explorer Executes Arbitrary Code in Folders Thor Larholm (Jan 26)
- Re: Windows XP Explorer Executes Arbitrary Code in Folders Exibar (Jan 26)
- Re: Windows XP Explorer Executes Arbitrary Code in Folders Tobias Weisserth (Jan 26)
- Re: Windows XP Explorer Executes Arbitrary Code in Folders Exibar (Jan 26)
- <Possible follow-ups>
- Re:Windows XP Explorer Executes Arbitrary Code in Folders Ian Latter (Jan 26)
- Re: Windows XP Explorer Executes Arbitrary Code in Folders Thor Larholm (Jan 26)