Exploit based on Leaked Win2k Code; Funny Look at the Win Source

Slashdot reports that a post to Bugtraq from SecurityTracker.com reports an Internet Explorer 5 exploit that has been released based on the Win2K code leak: “It is reported that a remote user can create a specially crafted bitmap file that, when loaded by IE, will trigger an integer overflow and execute arbitrary code.” Elsewhere, this is a quick, superficial look at the style and content of the leaked Windows 2000 source, quoting from the comments but not the code, so this should be safe for developers to read.

23 Comments

  1. 2004-02-16 6:51 pm
  2. 2004-02-16 7:11 pm
  3. 2004-02-16 7:28 pm
  4. 2004-02-16 7:33 pm
  5. 2004-02-16 7:47 pm
  6. 2004-02-16 8:45 pm
  7. 2004-02-16 8:57 pm
  8. 2004-02-16 9:06 pm
  9. 2004-02-16 9:19 pm
  10. 2004-02-16 10:24 pm
  11. 2004-02-16 11:57 pm
  12. 2004-02-17 12:09 am
  13. 2004-02-17 8:01 am
  14. 2004-02-17 10:54 am
  15. 2004-02-17 12:51 pm
  16. 2004-02-17 2:18 pm
  17. 2004-02-17 3:09 pm
  18. 2004-02-17 5:31 pm
  19. 2004-02-17 5:51 pm
  20. 2004-02-17 6:29 pm
  21. 2004-02-18 12:46 am
  22. 2004-02-18 1:09 am