A problem with Windows 95 and 98

Published: 24 November 1999 y., Wednesday
Microsoft is scrambling to fix numerous Internet security holes in both the Internet Explorer browser and the Windows operating system. Microsoft expects to release a patch Friday for a problem with Windows 95 and 98 that could let a malicious Web site operator or sender of HTML email invade a visitor_s or recipient_s computer. In a buffer overrun situation, the attacker floods a field, in this case the address bar in the browser, with more characters than it can hold. Web addresses or local file addresses that are too long for the address bar can cause Windows to crash and force the characters that didn_t fit into the URL entry field to go into memory, where they may be executed when the computer is restarted. The problem occurs in Windows_ networking software, and an exploit could work with any browser, Microsoft said. Microsoft also released a patch for a bug in the Internet Explorer browser, versions 4.0 and 5.0, that exposes computers to malicious code disguised as common file extensions with suffixes like ".jpg," ".mov" or ".txt" and that get emailed as attachments. The bug takes advantage of an ActiveX control that lets archive files known as "cabinet," or ".cab," files be launched and executed from the user_s machine. Microsoft credited Spanish bug hunter Juan Carlos Garcia Cuartango for discovering the bug, which he originally described as a flaw that made Microsoft_s email management program, Outlook, vulnerable to attack.
Šaltinis: Winfiles
Copying, publishing, announcing any information from the News.lt portal without written permission of News.lt editorial office is prohibited.

Facebook Comments

New comment


Captcha

Associated articles

Anna virus author comes forward

A Dutch virus writer known as OnTheFly admitted Tuesday to more »

Cupid Shoots His Arrow at the Web

A slew of targeted-ad campaigns and special promotions online could make this Valentine's Day worth more than $2 billion. more »

CIA-backed venture eyes anonymity software

SOFTWARE that promises users anonymity on the Web has caught the eye of the U.S. Central Intelligence Agency's nonprofit venture capital company, In-Q-Tel, which said the technology can help the spy agency fulfill its mission. more »

New Wave of Layoffs and Closures Hits Israeli Internet Companies

In a rapid-fire burst of painful moves, Israeli Interent and finance companies announced a series of high-profile layoffs and shutdowns in the last few days that in some cases is causing executive heads to roll. more »

From Russia with love? Kournikova virus smashes Net

A virus posing as a photo of Russian tennis player Anna Kournikova spread aggressively on Monday, as major security companies rushed to update their antivirus software to detect the fast-spreading e-mail virus. more »

search.lt news

search.lt presents newest links more »

Polish online retailers remain bullish

Over half of Polish B2C retailers are optimistic about the future of ecommerce in Poland while only 18 percent are not optimistic. more »

Patron Saint of the Internet

Coming Soon to a Computer Near You more »

Italian ‘Love Bug’ hits Euro firms

Just in time for Valentine’s, notorious virus is back more »

Court to Get Control of Sex.net

Things were looking bad enough for Stephen Michael Cohen back in November, when he lost ownership of the domain name sex.com. more »