Security holes in IE 6.0
   Register

[x]

Security holes in IE 6.0


Cyberm4n is offline Cyberm4n
Bright Spark
Posts: 254 Cyberm4n is on a distinguished road
Videos: 50
Cyberm4n's Avatar
June 6th, 2002, 01:16 PM

Finnish researchers Oy Online ( http://www.solutions.fi/index.cgi/?lang=eng )have discovered a way to root a windows box using a gopher URL to cause a buffer overflow in the IE Gopher client.

"A test exploit has been successfully used to run arbitrary code without user intervention with various IE versions and systems including IE 5.5 and 6.0," the group says.

A link in a Web page or an e-mail could lure a person to a malicious Gopher server. While these may be a rare bit of Internet fauna these days, malicious or not, it's not actually necessary to use a fully- functioning one. Any program listening on a TCP port with the ability to write a block of data can get the job done.

MS says they're working on a patch but have offered no estimated release date.

For a quick workaround Oy Online recommends simply using a broken proxy for Gopher in IE settings. See their advisory here ( http://www.solutions.fi/index.cgi/ne...06_04?lang=eng )for simple instructions, and additional details.
Reply With Quote
Shmad is offline Shmad
Clever Clogs
Posts: 548 Shmad is on a distinguished road
Location: Kamloops, BC
Shmad's Avatar
June 7th, 2002, 10:23 AM

thanks for the heads up on this issue. Its greatly appreciated by myself and most Canadian Content users Keep em coming!
Reply With Quote
Anonymous is offline Anonymous
Genius
Posts: 783 Anonymous is on a distinguished road
February 7th, 2003, 11:36 PM

Guys,

Anasoft an UK program is trying to get into your machine on port 1084.

So watch out for intruders.
Reply With Quote
Reply
Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
About Canadian Content | Contact Us | Archive | Technology | Free Downloads | Top
(C) Copyright Canadian Content Interactive Media. Usage is subject to our Terms of Service at http://www.canadiancontent.net/corp/TOS.html