Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Windows SERIOUS Security flaw-- (Link to patch fix )
Security Now ^ | 01-02-05

Posted on 01/02/2006 9:57:45 AM PST by emiller

Quick Background:

The active exploitation of a very serious vulnerability in all versions of Windows was discovered in late December.

Word of this spread rapidly through the hacker community — many of whom where presumably on Holiday vacation from school, bored, and looking for something to do.

So several days later nearly one hundred different instances of exploitation of this newly discovered vulnerability had been found.

Note that this is not a "new vulnerability" — it (and perhaps other similar bugs) have been lying unknown in Windows since 1991. What's "new" is the discovery of this long-present vulnerability in WIndows' metafile processing.

Almost immediately there were reports of an MSN Messenger worm, and now F-Secure is reporting that "Happy New Year" SPAM eMail is carrying the exploit.

Anti-Virus vendors quickly updated and began pushing out their A-V signature files. This have been effective, but a new very flexible exploit generation tool has appeared that's able to create so many different variations of the exploit that A-V signatures are being bypassed.

Microsoft responded with an acknowledgement of the problem and a very weak workaround (the shimgvw.dll unregistration). But this is not

(Excerpt) Read more at grc.com ...


TOPICS: Crime/Corruption
KEYWORDS: internetexplorer; malware; patch; spyware; windows
Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-75 next last
To: emiller

Several major security firms have decompiled, vetted, endorsed and provided links to this "unofficial" patch. It is being offered with full disclosure.


21 posted on 01/02/2006 10:39:05 AM PST by Company Man
[ Post Reply | Private Reply | To 1 | View Replies]

To: SteveMcKing

Apple and Mac's are great product designs and their OS is good, but what do you do if you use a stock trading program that only works on Windows? I still think Mac's are slower than a good PC.


22 posted on 01/02/2006 10:39:21 AM PST by garyhope (Happy, healthy, prosperous New Year to all good Freepers and our brave military.)
[ Post Reply | Private Reply | To 5 | View Replies]

To: bnelson44

gibson research is one of the best


23 posted on 01/02/2006 10:39:32 AM PST by staytrue
[ Post Reply | Private Reply | To 3 | View Replies]

To: emiller

Several major security firms have decompiled, vetted, endorsed and provided links to this "unofficial" patch. It is being offered with full disclosure.


24 posted on 01/02/2006 10:39:43 AM PST by Company Man
[ Post Reply | Private Reply | To 1 | View Replies]

To: Andy from Beaverton
I love my Mac and not needing to worry about viruses like on my pc. Last week I spent forever removing viruses from other people's pcs.


the problem isnt with PC's the problem is with windows... my linux box is more secure then any mac or windows box.. and btw mac's do have plenty of virus's out there.
25 posted on 01/02/2006 10:41:58 AM PST by Element187
[ Post Reply | Private Reply | To 4 | View Replies]

To: emiller

Bump for later digestion.


26 posted on 01/02/2006 10:42:32 AM PST by Bloody Sam Roberts (Crime cannot be tolerated. Criminals thrive on the indulgences of society's understanding.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: SteveMcKing
Here's a link to fix Window's security flaws forever:
AppleStore

Isn't that a little like a way to stop from being disappointed when your favorite NFL team loses?

ML/NJ

27 posted on 01/02/2006 10:43:14 AM PST by ml/nj
[ Post Reply | Private Reply | To 5 | View Replies]

To: emiller
BUMP!
28 posted on 01/02/2006 10:44:49 AM PST by FreeKeys ("Certain kinds of economic controls tend to paralyze the driving forces of a free society."-FA Hayek)
[ Post Reply | Private Reply | To 1 | View Replies]

To: RightOnTheLeftCoast
Gotta use Windows in my work, but would like to try Linux for everything else. (I used Linux years ago and am told it has improved greatly in terms of usability; it was always rock-solid.)

Is it possible to have two OSs loaded concurrently on the same PC? I'd like to be able to hotkey between the two, without a reboot. It's okay if they "suspend" when not in the foreground. Or could Windows be run as a task within Linux?



Yes linux has come along way since the early 90's.. you can dual boot, but it requires a reboot to switch into the other... and yes you can run windows as a process under linux.. VMware will do the trick.. and also winex.

the user interface in the latest versions of gnome or kde looks alot better then windows (and because of how much customization you can do with gnome/kde, it looks better then a mac), and like always alot faster and stable then windows... i use gentoo linux, but thats probably too advanced for most users.
29 posted on 01/02/2006 10:47:49 AM PST by Element187
[ Post Reply | Private Reply | To 20 | View Replies]

To: bnelson44

The solution from GRC is not a patch. It just unregisters (disables) the nonvital program (DLL) that allows the hackers to exploit the Windows flaw.


30 posted on 01/02/2006 10:49:54 AM PST by Abcdefg
[ Post Reply | Private Reply | To 8 | View Replies]

To: emiller

save for later reading


31 posted on 01/02/2006 10:52:56 AM PST by A knight without armor
[ Post Reply | Private Reply | To 1 | View Replies]

To: emiller

Saddly the patch does not cover win98.


32 posted on 01/02/2006 10:56:50 AM PST by Revel
[ Post Reply | Private Reply | To 1 | View Replies]

To: bnelson44

I trust Steve Gibson more than I trust microsoft. I have used his tests, fixes and patches for years.


33 posted on 01/02/2006 10:57:38 AM PST by TaxRelief
[ Post Reply | Private Reply | To 3 | View Replies]

To: Abcdefg

I think there are two solutions mentioned / linked.

The first is Microsoft's own suggestion - which is to unregister the Dynamic Load Library. The second is actually a program, to install on your machine.

According to Laporte's explanation yesterday - the bug works because the thumbnail display is not a tiny bitmap, it's actually a program, which includes as the "else" if the thumbnail doesn't display properly, the capability to add some code as an error message.

Thing is, the code can be executable. It can be anything.

The installed fix actually removes that "else" logic. At least that's what he was saying.

Interesting note: tried to download the "test" from the security website - firewall blocked it, thinking it was the actual attack.


34 posted on 01/02/2006 10:59:23 AM PST by Cringing Negativism Network
[ Post Reply | Private Reply | To 30 | View Replies]

To: TaxRelief

Details on Steve Gibson:

http://www.grc.com/privacy.htm


35 posted on 01/02/2006 10:59:57 AM PST by TaxRelief
[ Post Reply | Private Reply | To 33 | View Replies]

To: bnelson44
Could potentially fowl up my system...

I guess that your system could get the bird flu.

36 posted on 01/02/2006 11:00:56 AM PST by FreePaul
[ Post Reply | Private Reply | To 3 | View Replies]

To: RightOnTheLeftCoast

"Is it possible to have two OSs loaded concurrently on the same PC? I'd like to be able to hotkey between the two, without a reboot. It's okay if they "suspend" when not in the foreground. Or could Windows be run as a task within Linux?"

Check out Xandros.

http://www.xandros.com/

I run a lot of Windoze programs under it. I have it on my laptop and the dual booting went flawlessly. It took about 12 minutes to install it.


37 posted on 01/02/2006 11:01:41 AM PST by taxed2death (A few billion here, a few trillion there...we're all friends right?)
[ Post Reply | Private Reply | To 20 | View Replies]

To: Abcdefg
The other thread contains a link to real patch.
38 posted on 01/02/2006 11:02:01 AM PST by derllak
[ Post Reply | Private Reply | To 30 | View Replies]

To: RightOnTheLeftCoast

Here is the actual product that I purchased.


http://www.xandros.com/products/home/desktopdlx/dsk_dlx_intro.html


39 posted on 01/02/2006 11:05:04 AM PST by taxed2death (A few billion here, a few trillion there...we're all friends right?)
[ Post Reply | Private Reply | To 20 | View Replies]

To: emiller

OK, sport, I just downloaded the fix and installed it. But I feel like I just opened the back door on my all-in-one footie-jammies...


40 posted on 01/02/2006 11:05:16 AM PST by Snardius (Some women want to walk hand in hand through the park; sing them a song; bite them on the spine...)
[ Post Reply | Private Reply | To 1 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-75 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson