![]() |
|
|
|
#1
|
|||
|
|||
|
Do you know which image viewers are affected? I can't finda any website that lists them. All that said is that Windows XP is infected. Are image viewers such as ACDSEE, Microsoft Picture Viewer, etc affected?
|
|
#2
|
|||
|
|||
|
Visit the link below for the list of affected program.
It's advisable to run both WU and OU to patch this. Code:
http://www.microsoft.com/security/bulletins/200409_jpeg_tool.mspx |
|
#3
|
|||
|
|||
|
This has to one of the worst Windows Update "experiences". Unlike other updates, which clearly confirm that you are updated or not.
This one requires you to first install an ActiveX control under the premise that it will scan your system for affected graphics programs. After installing the control, all you get is a message to go back to windows update. I'm a little puzzled, does this control do anything about the other programs that may be affected by the vulnerability or not?
|
|
#4
|
|||
|
|||
|
I went in circles for a while with this one, too. Apparently, this bug is present in multiple Microsoft products. The GDI+ library has it, but only for Windows XP and server 2003, as well the version that comes with the SDK. However, most newer versions of Office as well as IE6 and the .NET framework contain the bug, too. So pretty much any Windows system will have this *somewhere*.
The only place I could actually find downloadable updates to patch this was from the corresponding technet article: http://www.microsoft.com/technet/security/bulletin/MS04-028.mspx The detection tool on WU doesn't appear to damn thing except point you to their web site without so much as telling you which components it found on your system, so you'll just have to figure that part out yourself. I'm assuming that each one needs to be updated. |
|
#5
|
|||
|
|||
|
Quote:
Quote:
|
|
#6
|
|||
|
|||
|
JPEG buffer overflow?
This is a prime example of why the whole development methodology in use by Microsoft must be questioned. The existence of an (extremely simplistic) buffer overflow due to a patent lack of bounds checking is an appalling reflection on this software monolith. The aptitude of their QA team resounds hollowly in my mind...
-archaios |
|
#7
|
|||
|
|||
|
hxxp://www.easynews.com/virus.html
Might be interesting to work on the jpeg specimen. POC included in the link as well. |
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Beware of Fake Exetools Site | chessgod101 | General Discussion | 0 | 06-23-2014 06:25 |