-- -Time flies like the wind. Fruit flies like a banana. Stranger things have - -happened but none stranger than this. Does your driver's license say Organ -Donor?Black holes are where God divided by zero. Listen to me! We are all- -individuals! What if this weren't a hypothetical question? [EMAIL PROTECTED]
---------- Forwarded message ---------- Date: Thu, 19 Dec 2002 15:56:22 -0800 From: Jon Callas <[EMAIL PROTECTED]> To: The Eristocracy <[EMAIL PROTECTED]> Subject: Funniest Security Advisory of the Week http://www.microsoft.com/technet/security/bulletin/MS02-072.asp?frame=true Excerpt: Unchecked Buffer in Windows Shell Could Enable System Compromise Who should read this bulletin: Customers using Microsoft ® Windows ® XP Impact of vulnerability: Run code of an attacker's choice Maximum Severity Rating: Critical Quote: "If a user were to hover his or her mouse pointer over the icon for the [malicious] file (either on a web page or the local disk), or open the shared folder where the file was stored, the vulnerable code would be invoked." That's right folks, you use to have to *run* bad code. Now all you have to do is wave your mouse over it.