Linked by Thom Holwerda on Wed 20th Jan 2010 22:45 UTC, submitted by kragil
Thread beginning with comment 405460
To view parent comment, click here.
To read all comments associated with this story, please click here.
To view parent comment, click here.
To read all comments associated with this story, please click here.
RE[2]: It is funny if MS don't know about it ;-p
by f0dder on Fri 22nd Jan 2010 18:35
in reply to "RE: It is funny if MS don't know about it ;-p"
So, I can imagine, if the bug was introduced in that early stage, that noone would have known about it years later.
Exactly. I don't find it unlikely that NTVDM has sat pretty much untouched since NT4 - it's not the kind of subsystem that's going to need a lot of updates, since the stuff it supports is pretty much feature-frozen... and it's not the first place you'd expect to be exploitable, since the CPU handles most of the encapsulation via V86 mode.
And the exploit is nontrivial, pretty interesting piece of code




Member since:
2005-07-06
This bug was introduces in the early days of Windows NT. In that time, according to what I have read, the policy wasn't as strict as it is nowadays. So, I can imagine, if the bug was introduced in that early stage, that noone would have known about it years later.