-- 
-Time flies like the wind. Fruit flies like a banana. Stranger things have -
-happened but none stranger than this. Does your driver's license say Organ
-Donor?Black holes are where God divided by zero. Listen to me! We are all-
-individuals! What if this weren't a hypothetical question? [EMAIL PROTECTED]

---------- Forwarded message ----------
Date: Thu, 19 Dec 2002 15:56:22 -0800
From: Jon Callas <[EMAIL PROTECTED]>
To: The Eristocracy <[EMAIL PROTECTED]>
Subject: Funniest Security Advisory of the Week

http://www.microsoft.com/technet/security/bulletin/MS02-072.asp?frame=true

Excerpt:

Unchecked Buffer in Windows Shell Could Enable System Compromise

Who should read this bulletin: Customers using Microsoft ® Windows ® XP

Impact of vulnerability: Run code of an attacker's choice

Maximum Severity Rating: Critical

Quote:  "If a user were to hover his or her mouse pointer over the
icon for the [malicious] file (either on a web page or the local disk), or
open the shared folder where the file was stored, the vulnerable code
would be invoked."

That's right folks, you use to have to *run* bad code. Now all you have to
do is wave your mouse over it.



Reply via email to