The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Unchecked Buffer in File Decompression Functions Could Lead to Code Execution (Q329048)
Time: 01:58 EST/06:58 GMT | News Source: Microsoft | Posted By: Byron Hinson

All three vulnerabilities discussed in this bulletin involve the inclusion of the Sun RPC library in Microsoft’s Services for UNIX (SFU) 3.0 on the Interix SDK. Developers who created applications or utilities using the Sun RPC library from the Interix SDK need to evaluate three vulnerabilities.

Zipped files (files having a .zip extension) provide a means to store information in a way that uses less space on a hard disk. This is accomplished by compressing the files that are put into in the zipped file. On Windows 98 with Plus! Pack, Windows Me and Windows XP, the Compressed Folders feature allows zipped files to be treated as folders. The Compressed Folders feature can be used to create, add files to, and extract files from zipped files.

Two vulnerabilities exist in the Compressed Folders function:

  • An unchecked buffer exists in the programs that handles the decompressing of files from a zipped file. A security vulnerability results because attempts to open a file with a specially malformed filename contained in a zipped file could possibly result in Windows Explorer failing, or in code of the attacker’s choice being run.
  • The decompression function could place a file in a directory that was not the same as, or a child of, the target directory specified by the user as where the decompressed zip files should be placed. This could allow an attacker to put a file in a known location on the users system, such as placing a program in a startup directory

Patch availability

Download locations for this patch

Write Comment
Return to News

  Displaying 301 through 310 of 310
Prev | First
  The time now is 11:28:22 AM ET.
Any comment problems? E-mail us
#301 By 4240821 (62.76.153.72) at 11/24/2024 1:45:16 AM
https://justpaste.me/CWRG
https://justpaste.me/C6uL1
https://justpaste.me/C3s0
https://justpaste.me/CM47
https://justpaste.me/C1UY3
https://justpaste.me/BvEG1
https://justpaste.me/C3852
https://justpaste.me/C1AO1
https://justpaste.me/CMOK1
https://justpaste.me/CNfQ3

#302 By 4240821 (212.193.138.162) at 11/25/2024 2:25:14 PM
https://www.google.ag/amp/s/sexonly.top/get/a92/a92ccrkppmbqidxgyn.php
https://www.google.ae/amp/s/sluts.su/get/a246/a246jckjhktlstzpzzx.php
https://www.google.as/amp/s/nsfw.su/get/a230/a230czwersoxwxbfvdi.php
https://www.google.ae/amp/s/lustful.su/get/a252/a252itbjgsdqjjqbjks.php
https://www.google.at/amp/s/lustful.su/get/a233/a233ezwkxtpwqubupyv.php
https://www.google.at/amp/s/nsfw.su/get/a90/a90xcqvdaljxohesdj.php
https://www.google.as/amp/s/nsfw.su/get/a238/a238qyjaieercbzjvbc.php
https://www.google.al/amp/s/sexonly.top/get/a178/a178vnuuvqbfwatrzws.php
https://www.google.ae/amp/s/sluts.su/get/a42/a42zosnfbsmgffrrhe.php
https://www.google.ae/amp/s/sexonly.su/get/a44/a44azyezdjioqijyif.php

#303 By 4240821 (77.83.4.69) at 11/25/2024 4:36:48 PM
https://justpaste.me/Cc2K3
https://justpaste.me/Bgex5
https://justpaste.me/CUjX2
https://justpaste.me/C0Cj2
https://justpaste.me/CDqa4
https://justpaste.me/CaPQ4
https://justpaste.me/CaPQ4
https://justpaste.me/C0a3
https://justpaste.me/Bvcm4
https://justpaste.me/CBZ0

#304 By 4240821 (212.193.138.162) at 11/25/2024 6:10:48 PM
https://justpaste.me/C8aQ
https://justpaste.me/Cflm6
https://justpaste.me/BdKG5
https://justpaste.me/CLKI
https://justpaste.me/Bg8x2
https://justpaste.me/CXV7
https://justpaste.me/Bz6A4
https://justpaste.me/Bm75
https://justpaste.me/BoiN1
https://justpaste.me/CSoZ1

#305 By 4240821 (77.83.4.69) at 11/26/2024 2:55:57 PM
https://www.google.se/amp/s/nsfw.su/get/a207/a207zaelhthdcxwgwan.php
https://www.google.pn/amp/s/lustful.su/get/a157/a157jhslnpnunojpxwe.php
https://www.google.pt/amp/s/sexonly.top/get/a217/a217agxvaukksttpmjo.php
https://www.google.se/amp/s/sexonly.su/get/a290/a290wybwayjhqcxnibs.php
https://www.google.ro/amp/s/sexonly.top/get/a162/a162nslbtplqtattatj.php
https://www.google.sc/amp/s/lustful.su/get/a49/a49mjsvmfluhcfecjo.php
https://www.google.pn/amp/s/lustful.su/get/a112/a112wcezixfglmnmxkl.php
https://www.google.pl/amp/s/nsfw.su/get/a35/a35lvjcoptrpceukyb.php
https://www.google.rs/amp/s/sluts.su/get/a183/a183nejbodarntntmdn.php
https://www.google.se/amp/s/sexonly.top/get/a206/a206atizgnslmbaownp.php

#306 By 4240821 (77.83.6.99) at 11/27/2024 5:42:58 AM
https://www.google.sm/amp/s/nsfw.su/get/a51/a51tmcxufxmepuoscz.php
https://www.google.st/amp/s/sexonly.su/get/a289/a289hvexsxnulyiarjp.php
https://www.google.st/amp/s/lustful.su/get/a103/a103mdmuwjepcthrxdb.php
https://www.google.td/amp/s/sexonly.su/get/a250/a250zqdbcnbhmuqyybf.php
https://www.google.sh/amp/s/sluts.su/get/a208/a208betgsleajkjikel.php
https://www.google.so/amp/s/sluts.su/get/a295/a295ukbtzqmfiwovqgu.php
https://www.google.sm/amp/s/lustful.su/get/a39/a39gjkrpwtwjodimmn.php
https://www.google.td/amp/s/sexonly.su/get/a137/a137bwetoacgsmkhblq.php
https://www.google.sh/amp/s/nsfw.su/get/a183/a183ebwvuzhdgzujnpk.php
https://www.google.sk/amp/s/sluts.su/get/a34/a34mfzjjxdmwniisgt.php

#307 By 4240821 (82.117.86.164) at 11/27/2024 5:45:30 AM
https://justpaste.me/CZC31
https://justpaste.me/CPfd3
https://justpaste.me/CWnI
https://justpaste.me/BnKe
https://justpaste.me/CQXv2
https://justpaste.me/CArD1
https://justpaste.me/C4xo
https://justpaste.me/CI4j
https://justpaste.me/Bb6H2
https://justpaste.me/CFxI6

#308 By 4240821 (77.246.244.253) at 11/27/2024 5:16:40 PM
https://justpaste.me/CIng4
https://justpaste.me/CVYv1
https://justpaste.me/BfQa2
https://justpaste.me/Bk4D1
https://justpaste.me/CdIM3
https://justpaste.me/CcOb2
https://justpaste.me/BgpX
https://justpaste.me/CTi3
https://justpaste.me/Cd7R3
https://justpaste.me/CPqk

#309 By 4240821 (77.83.4.69) at 11/27/2024 10:29:08 PM
https://telegra.ph/Selti-Forced-Patreon-Leaked-12-11
https://168.exodirectory.com/index.php?topic=84642.new
https://telegra.ph/AngelaWhite-alt-Onlyfans-Leak-12-17-2
http://activewin.com/mac/comments.asp?ThreadIndex=72810
http://activewin.com/mac/comments.asp?ThreadIndex=4537
https://telegra.ph/IvanaKnoll-knolldoll-Coworker-Boosty-Leaked-12-01
http://activewin.com/mac/comments.asp?ThreadIndex=1377
https://telegra.ph/tennesseemilk-Public-Onlyfans-Leak-12-07
https://telegra.ph/Quarantine-ManyVids-Disharmonica-Flashing-Leaked-01-28
http://activewin.com/mac/comments.asp?ThreadIndex=55717

#310 By 4240821 (80.73.244.53) at 11/28/2024 4:08:46 AM
https://www.google.tm/amp/s/sluts.su/get/a212/a212dpuakwvdgspghyi.php
https://www.google.vg/amp/s/lustful.su/get/a166/a166pkskdgpoufzwczi.php
https://www.google.tt/amp/s/nsfw.su/get/a232/a232hcawtbcwttpoldl.php
https://www.google.tm/amp/s/nsfw.su/get/a140/a140nnppadylhlgawin.php
https://www.google.vu/amp/s/sexonly.top/get/a94/a94faujdcaznpjsafv.php
https://www.google.tm/amp/s/sexonly.su/get/a256/a256eqwkhrwdqducjcy.php
https://www.google.tl/amp/s/lustful.su/get/a257/a257huycvqcnfzrovgw.php
https://www.google.tm/amp/s/lustful.su/get/a13/a13iyxeaxsnmgmabdg.php
https://www.google.vu/amp/s/sexonly.su/get/a131/a131xtvkzmvztejnzgc.php
https://www.google.us/amp/s/sexonly.su/get/a296/a296ytxugipdiqqylko.php

Write Comment
Return to News
  Displaying 301 through 310 of 310
Prev | First
  The time now is 11:28:23 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *