The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Unchecked Buffer in Windows Help Facility Could Enable Code Execution (Q323255)
Time: 02:00 EST/07:00 GMT | News Source: Microsoft | Posted By: Byron Hinson

The HTML Help facility in Windows includes an ActiveX control that provides much of its functionality. One of the functions exposed via the control contains an unchecked buffer, which could be exploited by a web page hosted on an attacker’s site or sent to a user as an HTML mail. An attacker who successfully exploited the vulnerability would be able to run code in the security context of the user, thereby gaining the same privileges as the user on the system.

A second vulnerability exists because of flaws associated with the handling of compiled HTML Help (.chm) files that contain shortcuts. Because shortcuts allow HTML Help files to take any desired action on the system, only trusted HTML Help files should be allowed to use them. Two flaws allow this restriction to be bypassed. First, the HTML Help facility incorrectly determines the Security Zone in the case where a web page or HTML mail delivers a .chm file to the Temporary Internet Files folder and subsequently opens it. Instead of handling the .chm file in the correct zone – the one associated with the web page or HTML mail that delivered it – the HTML Help facility incorrectly handles it in the Local Computer Zone, thereby considering it trusted and allowing it to use shortcuts. This error is compounded by the fact that the HTML Help facility doesn’t consider what folder the content resides in. Were it to do so, it could recover from the first flaw, as content within the Temporary Internet Folder is clearly not trusted, regardless of the Security Zone it renders in.

The attack scenario for this vulnerability would be complex, and involves using an HTML mail to deliver a .chm file that contains a shortcut, then making use of the flaws to open it and allow the shortcut to execute. The shortcut would be able to perform any action the user had privileges to perform on the system.

Patch availability

Download locations for this patch
The patches for all Windows systems are available via Windows Update or can be manually applied via the following patches:

Write Comment
Return to News

  Displaying 601 through 611 of 611
Prev | First
  The time now is 6:27:10 PM ET.
Any comment problems? E-mail us
#601 By 4240821 (82.115.4.230) at 8/16/2025 5:56:22 PM
https://www.xfree.com/roundperlega498
https://www.xfree.com/stertitertio777
https://www.xfree.com/malumebest522
https://www.xfree.com/codinetri194
https://www.xfree.com/enuscnewfer766
https://www.xfree.com/lomamelthern23
https://www.xfree.com/enizbyby555
https://www.xfree.com/axdaonalbound10
https://www.xfree.com/davacentsan466
https://www.xfree.com/tiwsinesga642

#602 By 4240821 (82.115.4.230) at 8/17/2025 7:21:26 PM
https://www.xfree.com/macgenotu405
https://www.xfree.com/lorusomi2
https://www.xfree.com/verregomi710
https://www.xfree.com/fenikonti695
https://www.xfree.com/meabarboto305
https://www.xfree.com/healthkigipar43
https://www.xfree.com/exitopcos535
https://www.xfree.com/creanivgulgae503
https://www.xfree.com/trenacatlua570
https://www.xfree.com/minspittmodgi968

#603 By 4240821 (82.115.4.230) at 8/17/2025 11:54:25 PM
https://www.xfree.com/ymtrogafec814
https://www.xfree.com/farmarchhandland81
https://www.xfree.com/reallvisire695
https://www.xfree.com/dingvekzaser575
https://www.xfree.com/leahealthdari777
https://www.xfree.com/exenenen245
https://www.xfree.com/sisynfunccom268
https://www.xfree.com/mouthcampcabing829
https://www.xfree.com/parkresbullhon425
https://www.xfree.com/scambolguege823

#604 By 4240821 (82.115.4.230) at 8/19/2025 9:33:52 AM
https://www.xfree.com/selfpicreset160
https://www.xfree.com/plankicepho96
https://www.xfree.com/niebitvorsmu115
https://www.xfree.com/specreverbo165
https://www.xfree.com/starunonab594
https://www.xfree.com/reetabetlo181
https://www.xfree.com/tilekaltse96
https://www.xfree.com/siopretceming616
https://www.xfree.com/paddrihalda977
https://www.xfree.com/dethecardches153

#605 By 4240821 (170.247.221.3) at 8/21/2025 3:44:35 AM
https://odysee.com/mcdojo_goat-ufvgfcjwr2kf12453:d6fad15476a2bd32c0606eab026ebea7828d6811
https://odysee.com/new_snippet-f28t6o5ty2kf12966:6d67199a40d9c926a3fc0ddc6c0395dbc7e531f0
https://odysee.com/why_do_my_brakes_sound_like_this-c5e511chv2kf19646:14c251e2fcf00bf0b43a7432d98d19afea440756
https://odysee.com/не_баг_а_фичп-w7j6v3ef70kf19217:99855c393edcacf34f2c8b5034fba6d9d7b682a4
https://odysee.com/test_title_20250819_154333-atpgxariyzjf13637:4df04720615a1b338f8b7ecd7b97e77e3285e387
https://odysee.com/whenthe_breaking_bad_animation-p5hqfya044kf15987:d4e8a49cb7061ca7a58d455c68a29ecf0ae77dd8
https://odysee.com/i_made_my_own_vail_slander-ba6mv0vbv3kf15826:8cd47d4ba77674749246935fb6881154b41b04b2
https://odysee.com/the_golf_club_that_junior_sergeant_of_the_armed-dfhwgidkvzjf17665:13d7814fd8b0225e2eec4d7b34e95b9c7d8ff9b6
https://odysee.com/mona_tiktok-rd5qebv0g0kf13291:107f75ec040c3b35b586f90ed1c97f425e32e5b7
https://odysee.com/your_dane_doesnt_like_water-vm93eyouxzjf15226:40359695315fd524ea1f914b286323b7df950258

#606 By 4240821 (176.102.120.193) at 8/21/2025 6:50:47 PM
https://odysee.com/sexy-8bnk17qyh0kf19046:1b28c29703069fc2d4d39c153c9f78c95b59df07
https://odysee.com/sometimes_i_underestimate_my_game_iq-v2z7uo47z2kf11746:653e73a0dfdd796cfd118e8f8651e09cf14757ea
https://odysee.com/am_i_ui_stupid_or_is_this_an_actual_bug-k0judx7os3kf16436:72f90aeb34a995827014aa32cb2f4c26d6e95a27
https://odysee.com/small_long_lines_tower-alvy2wazn2kf12423:42d32977d1f62e6492ac20116f280be5b357f643
https://odysee.com/what_was_that_is_my_game_cursed-81uaafdfu2kf11896:aff646aa3f52dff6d0fe2798be3996dae9c0d950
https://odysee.com/this_always_cracks_me_up_whenever_i_play_druid-65kbe01kw2kf16756:5a3c9c6583e472cd3e1d66de15900cbea56acc13
https://odysee.com/i_loved_her_account_and_i_didnt_know_that_she_was-vfkzrnsd30kf17505:52735e074bfc1983c934cc738d3eeddb85fc81dd
https://odysee.com/and_the_horse_you_rode_in_on-a1ezw7yk14kf16418:b617c4807f04d2ecf47c4545db8b87640385b056
https://odysee.com/highlight_duran_vs_raleigh-vwrdxopjw2kf17958:be2e209fd2a13241dd0a81774b4affef8748f416
https://odysee.com/i_loved_her_account_and_i_didnt_know_that_she_was-vfkzrnsd30kf17505:52735e074bfc1983c934cc738d3eeddb85fc81dd

#607 By 4240821 (64.43.110.219) at 8/22/2025 1:22:56 PM
https://sexonly.su/g/p50/p50urepdlamikacvke.php
https://nsfw.su/g/p26/p26fqsnmjmjmjptvyt.php
https://sexonly.su/g/p31/p31icepliugkgxpgct.php
https://nsfw.su/g/p19/p19edfbfvyaulpyevz.php
https://sexonly.top/g/p4/p4xkwpvlrekslzxtp.php
https://sexonly.su/g/p9/p9ltkloiogoayurkc.php
https://sluts.su/g/p77/p77izlxgdiqrhzmyta.php
https://sexonly.su/g/p75/p75wdlqezfbvabquqi.php
https://sluts.su/g/p7/p7keoxrfrgfupvulv.php
https://sexonly.su/g/p78/p78iwhqswdevgalknz.php

#608 By 4240821 (170.247.221.87) at 8/23/2025 4:46:24 PM
https://sluts.su/g/p72/p72ejhgpueapszcbcc.php
https://sexonly.su/g/p35/p35pgnweimvcgppahj.php
https://sexonly.top/g/p77/p77xugqykqebrscmts.php
https://lustful.su/g/p92/p92sqsnvrqfwcpfevn.php
https://nsfw.su/g/p58/p58nvuudheuppzexpr.php
https://sexonly.top/g/p93/p93trbiftwotidqmta.php
https://sexonly.su/g/p97/p97ezsevsjqxfgvqbl.php
https://sexonly.su/g/p67/p67rcmwxlyzqbdjajn.php
https://lustful.su/g/p85/p85prqqrsuoipsijgd.php
https://sluts.su/g/p54/p54brpucjvhbczkvag.php

#609 By 4240821 (170.247.221.32) at 8/24/2025 12:47:16 AM
https://nsfw.su/g/p26/p26gtehzptyjdrkryq.php
https://sluts.su/g/p40/p40irrfcvhrsgyznav.php
https://sluts.su/g/p41/p41ksjfypoutgndpza.php
https://sexonly.top/g/p97/p97xdnpissgoctszbn.php
https://sexonly.top/g/p96/p96izwsqurotnzoclq.php
https://lustful.su/g/p56/p56btkjonpjzmuneat.php
https://sexonly.top/g/p18/p18gkhtbtlygkejggu.php
https://sexonly.su/g/p32/p32terfuxigviqxsqq.php
https://sexonly.su/g/p0/p0wipnwxrzdsyfrom.php
https://sexonly.top/g/p33/p33zjaclsrpzoexpkc.php

#610 By 4240821 (64.43.110.239) at 8/25/2025 7:33:02 AM
https://nsfw.su/g/p34/p34zqwesbyhddsocha.php
https://lustful.su/g/p7/p7kuykpssdpwtbpug.php
https://lustful.su/g/p42/p42atrartzbrllvgjh.php
https://nsfw.su/g/p47/p47gsmnbwlcqvrbxos.php
https://nsfw.su/g/p19/p19srbfsejtgmkdyhb.php
https://sexonly.top/g/p64/p64auklmgefxejwtzv.php
https://sluts.su/g/p41/p41xecmsdumkktyvbn.php
https://sluts.su/g/p65/p65ogvygriletdchrr.php
https://sexonly.su/g/p35/p35mpmmgxsnosdpnvb.php
https://sexonly.top/g/p87/p87izvzxzukhkfseir.php

#611 By 4240821 (143.137.166.4) at 8/25/2025 5:58:51 PM
https://lustful.su/g/p56/p56azsjijjzckvmidr.php
https://lustful.su/g/p27/p27dzppsmaezckbbpy.php
https://sexonly.su/g/p52/p52zzoanobvtsvwgql.php
https://sexonly.top/g/p20/p20tvrwtbnbtabclnv.php
https://lustful.su/g/p25/p25qdiifawqiymfwxn.php
https://sexonly.su/g/p2/p2rpgrpghbfpptueq.php
https://nsfw.su/g/p48/p48kawhmcitshbyjof.php
https://nsfw.su/g/p58/p58ugzbvczukqvhcdn.php
https://sluts.su/g/p34/p34damlzxkrcncqmrg.php
https://sexonly.top/g/p5/p5txmihxlktlkvxpn.php

Write Comment
Return to News
  Displaying 601 through 611 of 611
Prev | First
  The time now is 6:27:10 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *