[ILUG-BOM] Firefox 2.0 @ higher risk than IE 7 in Vista?

2007-04-08 Thread Roshan
Hello All,

http://zdnet.com.com/1606-2_2-6173372.html
Found this link, while was browsing through my emails
and replies to queries. 

The above video demonstrates that .ani files used in
Vista for animated cursors can be exploited by a
remote server (when a URL is visited). (exploited for
remote access to files)

For Internet Explorer 7 (default installation with
Vista), a connection is established, but since
Internet Explorer is in protected mode, it won't allow
harfmful priveleges on system files.

However, a higher concern is for Firefox users,
because it uses the same windows component to process
this request, but doesn't have a defined modes of
access. (No modes like the ones in IE7). 

I *haven't* tried this, nor do I know how a TCP packet
is used in the above connection, (and what sort of
packet) for this attack. 

So, does Firefox need some enhancements of functioning
independently of Windows components?

What are the security features of Firefox that tend to
prove Internet Explorer is pretty bad on it? 

--
S K Somaiya College of ASC - http://www.somaiya.edu/sksasc
FSF of India Associate Fellow - http://www.gnu.org.in



__
Yahoo! India Answers: Share what you know. Learn something new
http://in.answers.yahoo.com/

-- 
http://mm.glug-bom.org/mailman/listinfo/linuxers


[ILUG-BOM] JSP problem with Firefox

2007-04-08 Thread Rony

Hello All,

I was filling out the online passport registration form and had problems 
with the date field. After the focus was moved to any other field, the 
last digit of the date would get cut. You can try it out on the link 
below. https://passport.gov.in/pms/OnlineRegistration.jsp Even reducing 
the date from 4 to 2 characters show the same result.


Even in windows the same problem existed in firefox. The only way it 
worked was in IE7. (It may be working in IE6 too but I don't have it). 
Is there a work around for this? I am planning to write to the Delhi 
office that may be in charge of the website. You could write too.


--
Regards,

Rony.

--
http://mm.glug-bom.org/mailman/listinfo/linuxers


Re: [ILUG-BOM] [OT] [Commercial] Regarding comments on my site!!

2007-04-08 Thread आनंद (Anand M R)


Quoting amitflu [EMAIL PROTECTED]:

 Hi,

 These dayz I am making a site and want to make a
 business out of it(in php and apache).

 Would love to receive ideas on improving revenue
 and outlook of the site?

 My site is www.merasurat.com. The site is still
 in its initial construction dayz.


This site and your post none of them relate to Linux, so I would advise
you to refrain from posting them on the list.



He might be building it on LAMP ... in which case it might be related,
but our list just likes to go off on a tangent evertime. The shaving
cream thread for a freat example. Shouldn't we be helping enterpruners
buy showing them the benifits of foss instead of slamming them.

--
http://mm.glug-bom.org/mailman/listinfo/linuxers


Re: [ILUG-BOM] JSP problem with Firefox

2007-04-08 Thread Siddhesh Poyarekar

On 4/9/07, Rony [EMAIL PROTECTED] wrote:

I was filling out the online passport registration form and had problems
with the date field. After the focus was moved to any other field, the
last digit of the date would get cut. You can try it out on the link
below. https://passport.gov.in/pms/OnlineRegistration.jsp Even reducing
the date from 4 to 2 characters show the same result.


It's not a JSP problem, it's a javascript problem. It's because the
web designer has chosen to use some IE specific code.

The page is typical amateur web-designer stuff with slap-on scripts
that they've found from the interweb. So you can't really expect clean
cross-browser javascript from them.

The lack of consistency in variable naming, commenting, the silly
right-click disabled script, etc. are the telling signs if anyone's
wondering. The only thing missing was a mouse tail; I remember they
were a rage a few years back ;)


--
Siddhesh Poyarekar
http://siddhesh.tk

--
http://mm.glug-bom.org/mailman/listinfo/linuxers


Re: [ILUG-BOM] JSP problem with Firefox

2007-04-08 Thread Kumar Appaiah
On Mon, Apr 09, 2007 at 02:11:19AM +0530, Siddhesh Poyarekar wrote:
 The lack of consistency in variable naming, commenting, the silly
 right-click disabled script, etc. are the telling signs if anyone's
 wondering. The only thing missing was a mouse tail; I remember they
 were a rage a few years back ;)

IIRC, both indianrail.gov.in and irctc.co.in will cry You are not
allowed to press that button or something like that if I right click
anywhere on the page, even today.

Kumar
-- 
Kumar Appaiah,
462, Jamuna Hostel,
Indian Institute of Technology Madras,
Chennai - 600 036


-- 
http://mm.glug-bom.org/mailman/listinfo/linuxers


Re: [ILUG-BOM] JSP problem with Firefox

2007-04-08 Thread Vinayakam Murugan



IIRC, both indianrail.gov.in and irctc.co.in will cry You are not
allowed to press that button or something like that if I right click
anywhere on the page, even today.



Both these sites however work beautifully on firefox. I had to use
passport.gov.in with IETab extension on  windows firefox.

--
Warm Regards
~~~
Vinayak
http://theregoesanotherday.blogspot.com/


If you aim to fly, then don't hang around with chickens.
Why? Because chickens can't fly.
-
--
http://mm.glug-bom.org/mailman/listinfo/linuxers


[ILUG-BOM] Re: Debian Etch out, finally!

2007-04-08 Thread Kartik Mistry

On 4/9/07, Kumar Appaiah wrote:

At last!

http://www.debian.org/News/2007/20070408

Kumar


Ah,

Where is release party? ;)

--
Regards,

KartiK MistrY  | kartikmistry.org
0xD1028C8D  | kartikm.wordpress.com


--
http://mm.glug-bom.org/mailman/listinfo/linuxers


Re: [ILUG-BOM] [OT] [Commercial] Regarding comments on my site!!

2007-04-08 Thread Devdas Bhagat
On Mon, Apr 09, 2007 at 12:43:11AM +0530,  (Anand M R) wrote:
 
 He might be building it on LAMP ... in which case it might be related,
 but our list just likes to go off on a tangent evertime. The shaving
 cream thread for a freat example. Shouldn't we be helping enterpruners
 buy showing them the benifits of foss instead of slamming them.
 
Showing enterpreneurs the benefits of FOSS is one thing. Giving them a
business plan is another.

Devdas Bhagat

-- 
http://mm.glug-bom.org/mailman/listinfo/linuxers


Re: [ILUG-BOM] JSP problem with Firefox

2007-04-08 Thread Kumar Appaiah
On Mon, Apr 09, 2007 at 08:43:03AM +0530, Vinayakam Murugan wrote:
 IIRC, both indianrail.gov.in and irctc.co.in will cry You are not
 allowed to press that button or something like that if I right click
 anywhere on the page, even today.

 Both these sites however work beautifully on firefox. I had to use
 passport.gov.in with IETab extension on  windows firefox.

OK, just got web access, and indianrail.gov.in and IRCTC are perfect.

Kumar
-- 
Kumar Appaiah,
462, Jamuna Hostel,
Indian Institute of Technology Madras,
Chennai - 600 036


-- 
http://mm.glug-bom.org/mailman/listinfo/linuxers


Re: [ILUG-BOM] JSP problem with Firefox

2007-04-08 Thread Rony

Vinayakam Murugan wrote:



IIRC, both indianrail.gov.in and irctc.co.in will cry You are not
allowed to press that button or something like that if I right click
anywhere on the page, even today.



Both these sites however work beautifully on firefox. I had to use
passport.gov.in with IETab extension on  windows firefox.


I have done rail bookings in Linux without any change in settings.

--
Regards,

Rony.

--
http://mm.glug-bom.org/mailman/listinfo/linuxers


Re: [ILUG-BOM] Re: Debian Etch out, finally!

2007-04-08 Thread Harsh Busa

On 4/9/07, Kartik Mistry [EMAIL PROTECTED] wrote:


On 4/9/07, Kumar Appaiah wrote:
 At last!

 http://www.debian.org/News/2007/20070408

 Kumar



congratulations to Kartik for chipping in for 7 packages !

Ah,


Where is release party? ;)

--
Regards,

KartiK MistrY  | kartikmistry.org
0xD1028C8D  | kartikm.wordpress.com


--
http://mm.glug-bom.org/mailman/listinfo/linuxers





--
__
http://www.ebackend.com/blog
--
http://mm.glug-bom.org/mailman/listinfo/linuxers