Vulnerability Development mailing list archives

Re: Securax Security Advisory: Windows98 contains a seriousbuffer overflow with long filenameextensions.


From: lightning () L-G-X DE (LiGHTNiNG)
Date: Mon, 24 Apr 2000 20:52:11 +0200


1. Windows 98 (German)
The explorer crashed after moving the mouse cursor over the
filename. Using the cursor keys and ENTER to open the file
didn't lead to unusual behaviour.
The normal dialog to choose the application to open the
file with was diplayed.
I think the problem is the little tool tip window that
shows the whole filename when the mouse is
moved over a file which's name is to
long to be entirely displayed.
The Buffer Overflow also occured, when I tried to delete the
file by pressing the "ENTF" (DEL) key.(Win98/German)

Sebastian "LiGHTNiNG" Maciejewski


Current thread: