Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 





Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > Computer Security News
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read

Computer Security News The Latest Computer Security News

Reply
 
Thread Tools
Old 11-04-2004, 06:58 AM   #1 (permalink)
Manager, The Relaxation Room/Analyst, Security Team
 
mimo2005's Avatar
 
Join Date: Oct 2004
Posts: 10,362
OS: xp


Internet Explorer IFRAME Buffer Overflow Vulnerability SP1

Internet Explorer IFRAME Buffer Overflow Vulnerability


Secunia Advisory: SA12959
Release Date: 2004-11-02
Last Update: 2004-11-04


Critical:
Extremely critical
Impact: System access

Where: From remote

Solution Status: Unpatched


Software: Microsoft Internet Explorer 6


Select a product and view a complete list of all Patched/Unpatched Secunia advisories affecting it.


Description:
A vulnerability has been reported in Internet Explorer, which can be exploited by malicious people to compromise a user's system.

The vulnerability is caused due to a boundary error in the handling of certain attributes in the <IFRAME> HTML tag. This can be exploited to cause a buffer overflow via a malicious HTML document containing overly long strings in the "SRC" and "NAME" attributes of the <IFRAME> tag.

Successful exploitation allows execution of arbitrary code.

The vulnerability has been confirmed in the following versions:
* Internet Explorer 6.0 on Windows XP SP1 (fully patched).
* Internet Explorer 6.0 on Windows 2000 (fully patched).

NOTE: This advisory has been rated "Extremely critical" as a working exploit has been published on public mailing lists.

Solution:
The vulnerability does not affect systems running Windows XP with SP2 installed.
Use another product.
mimo2005 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Reply With Quote
Old 11-26-2004, 07:22 PM   #2 (permalink)
Manager, The Relaxation Room/Analyst, Security Team
 
mimo2005's Avatar
 
Join Date: Oct 2004
Posts: 10,362
OS: xp


IFRAME flaw

Government says Finnish with IE 6


Dan Ilett
ZDNet UK
November 26, 2004, 13:35 GMT


Tell us your opinion

While the world waits for Microsoft to issue a patch for the IFRAME flaw, Finnish authorities have advised their people to avoid using Internet Explorer






A government agency in Finland is urging the country's citizens to avoid use of Internet Explorer until Microsoft has patched the Bofra vulnerability.


The Finnish Communications Regulatory Authority (FICORA) said users should adopt a different browser as it issued a high-risk warning over the Bofra vulnerability, for which an exploit was released within a few days of publication.


"We've advised the Finnish people to avoid use of Internet Explorer until a patch is released," said Arsi Heinonen, information security advisor for FICORA. "[The vulnerability] is widely exploited and there's some malicious software for it. It's a high risk we think. If people can use another browser until the patch is released, that's good."


The Bofra exploit – also known as the IFRAME exploit – was used this week to infect computers through banner ads. The exploit directed users to other Web sites and downloaded malicious code to their machines.


Microsoft has yet to announce when it will release a patch for the vulnerability, which was published at the beginning of November.


The vulnerability is said not to affect computers running Windows XP SP2, but can disrupt those with Windows 2000 and XP SP1.


At the beginning of this month, the National Infrastructure Security Co-ordination Centre (NISCC) advised users to take immediate action on the flaw. It said to take measures that included applying the patch for the flaw when it becomes available, to install SP2 and to keep antivirus software up to date.
__________________

TSF has outgrown its server, again. Please help


"Gutta cavat lapidem,
non vi sed saepe cadendo"
mimo2005 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Reply With Quote
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



All times are GMT -7. The time now is 02:30 AM.



Copyright 2001 - 2008, Tech Support Forum

Search Engine Friendly URLs by vBSEO

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81