Username: Password:
Join  |  Login

Microsoft IE Remote Code Execution Exploit (0day) - Critical
Posted by salmonela 1543 Day ago, There are 5 comments, 14263 views
FrSIRT have identified a critical vulnerability with Internet Explorer 6 for Windows XP SP1 and SP2.
The problem could be exploited by remote attackers to execute arbitrary commands. The issue is due to a memory corruption error when instantiating the "Msdds.dll" (Microsoft Design Tools Diagram Surface) object as an ActiveX control, which could be exploited by an attacker to take complete control of an affected system via a specially crafted Web page.Unfortunately for users of Internet Explorer 6 there is 0day Exploit Code readily available for would be hackers to create web pages. This is un-usual and brings into question whether FrSIRT were taking decent measures to ensure Microsoft were aware of this threat.

According to a Microsoft Spokesperson, "Microsoft is aggressively investigating new public reports of a possible vulnerability in Internet Explorer. Upon completion of this investigation, Microsoft will take the appropriate action to help protect our customers. This may include providing a security update through our monthly release process or providing an out-of-cycle security update, depending on customer needs. Microsoft is concerned that this new report of a vulnerability in Internet Explorer was not disclosed responsibly, potentially putting computer users at risk."

We will keep you updated on Microsoft's investigations and whether they plan to release a patch for this flaw soon.

News source: Neowin
Like this story?Spread the news by clicking below:
Add to: Score: (5 ratings) Rating it:

There are 5 additional comments
I know it's not the place for this, but nobody's answering at original post.
I have a problem booting Hiren's bootcd 7.2,
when I entered .iso using UltraIso, I've noticed that boot image is only 4 kb, and boot in ver. 7.0 is 1.4 MB!!!
I downloaded this from 9down.
Can anyone send me, on mail, a working image of boot cd of ver 7.2, or post it on rapidshare?

Thanks in advance :)
RE : by Frez on 2005-08-19 19:07:35
I also have problems getting that CD to boot. I'm still using the older version of it.
RE : by Hoca on 2005-08-19 20:43:50
Try checking back to the original thread, there's more info on the first release of 7.2 having duff boot files in the ISO.

New download links now posted, also a fix for the original download ;)
Re: Microsoft IE Remote Code Execution Exploit (0day) - Critical by Angelico_Payne on 2005-08-21 03:10:13
Guys I wanna thank all of you for helping me by posting or mail, I resolved the problem, you have to put 4 files boot*.* alike, and it fixes, if anyone else has the same problem. You can find fix over at rapidshare.

Hiren's boot rocks!! ':-())=

/TOPIC CLOSED/


BRING BACK SVEASOFT by vicky on 2005-08-21 04:12:57
BRING BACK SveaSoft
No Comments Allowed for Anonymous, please login or register
Navigation
RegistryBooster 2009
SPONSORED
Subscribe
Special Topic
Stories Archive