22. 11. 2005 - 11:30https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuseco k tomu dodat.. microsoft v tom ma bordel :]https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-231018
+
Hmmmm, mi odkaz na originalnim strance zatuhnul Firefox ... resp. nove otevrene okno zralo 100% procesoru, ostatni zalozky Firefoxu fungovaly.
+1
0
-1
Je komentář přínosný?
Nalim https://diit.cz/profil/nalim
22. 11. 2005 - 12:19https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuseHmmmm, mi odkaz na originalnim strance zatuhnul Firefox ... resp. nove otevrene okno zralo 100% procesoru, ostatni zalozky Firefoxu fungovaly.https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-231025
+
A group called "Computer Terrorism" has released a Proof-of-Concept exploit for an unpatched Microsoft Internet Explorer vulnerability. The exploit allows remote code execution on most Windows systems including XP sp2. This vulnerability can e.g. be exploited if a user visits a web site controlled by the attacker.
The flaw is related to the JavaScript functionality in IE. So, one solution to this problem is to disable Active Scripting in IE. Another solution would be to use some other web browser. Also, as always, running as a restricted user greatly limits the damage these kinds of attacks can cause.
Apparently Microsoft was informed about this bug in May. Earlier it was seen as a denial-of-service vulnerability. MS has not released a patch yet but a Security Advisory on the issue is available.
+1
0
-1
Je komentář přínosný?
Datas Mions https://diit.cz/profil/datas
22. 11. 2005 - 12:58https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuseA group called "Computer Terrorism" has released a Proof-of-Concept exploit for an unpatched Microsoft Internet Explorer vulnerability. The exploit allows remote code execution on most Windows systems including XP sp2. This vulnerability can e.g. be exploited if a user visits a web site controlled by the attacker.
The flaw is related to the JavaScript functionality in IE. So, one solution to this problem is to disable Active Scripting in IE. Another solution would be to use some other web browser. Also, as always, running as a restricted user greatly limits the damage these kinds of attacks can cause.
Apparently Microsoft was informed about this bug in May. Earlier it was seen as a denial-of-service vulnerability. MS has not released a patch yet but a Security Advisory on the issue is available.https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-231032
+
Tak nevim, Maxthon 1.5.0.95 (pouzivajici posledni IE6 jadro) ... calc.exe se nespusti, maxhton zatuhne ... takze to zase tak hrozny nebude :) a dle informaci IE7 beta to same
+1
0
-1
Je komentář přínosný?
David Foltyn https://diit.cz/profil/dwarden
22. 11. 2005 - 13:24https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuseTak nevim, Maxthon 1.5.0.95 (pouzivajici posledni IE6 jadro) ... calc.exe se nespusti, maxhton zatuhne ... takze to zase tak hrozny nebude :) a dle informaci IE7 beta to samehttps://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-231038
+
22. 11. 2005 - 20:39https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskusezkusil jsem, pustila se kalkulacka a IE se vypnulhttps://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-231128
+
Microsoft sa sustreduje na Windows Vista a codery nemaju cas ladit IE 5.x a 6.x, IE 7 bude ai lepsi :o
+1
0
-1
Je komentář přínosný?
wwwFMGsk (neověřeno) https://diit.cz
22. 11. 2005 - 22:54https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuseMicrosoft sa sustreduje na Windows Vista a codery nemaju cas ladit IE 5.x a 6.x, IE 7 bude ai lepsi :ohttps://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-231158
+
Teda Mozillu (1.7.12) mi to zahltilo fest, ale rozdejchala to nakonec ;). Akorát jsem si musel povolit popupy (MultiZilla odchytla).
+1
0
-1
Je komentář přínosný?
WIFT https://diit.cz/autor/wift
23. 11. 2005 - 00:29https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuseTeda Mozillu (1.7.12) mi to zahltilo fest, ale rozdejchala to nakonec ;). Akorát jsem si musel povolit popupy (MultiZilla odchytla).https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-231163
+
IE to shodilo na výjimku 0xc0000005, Maxthon to ustál, jen 3x vyskočil popup "Výzva skriptu" s vyplněným textboxem "Computer Terrorism (UK) Ltd - Internet Explorer Vulnerability".
+1
0
-1
Je komentář přínosný?
Vik (neověřeno) https://diit.cz
23. 11. 2005 - 09:27https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuseIE to shodilo na výjimku 0xc0000005, Maxthon to ustál, jen 3x vyskočil popup "Výzva skriptu" s vyplněným textboxem "Computer Terrorism (UK) Ltd - Internet Explorer Vulnerability".https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-231183
+
Chytnul mi to firewall od Symantec-u, přestože používám MSIE 6.0 - no problem.
+1
0
-1
Je komentář přínosný?
Nick (neověřeno) https://diit.cz
3. 12. 2005 - 14:04https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuseChytnul mi to firewall od Symantec-u, přestože používám MSIE 6.0 - no problem.https://diit.cz/clanek/dalsi-kriticka-dira-v-ie/diskuse#comment-233276
+
co k tomu dodat.. microsoft v tom ma bordel :]
Hmmmm, mi odkaz na originalnim strance zatuhnul Firefox ... resp. nove otevrene okno zralo 100% procesoru, ostatni zalozky Firefoxu fungovaly.
A group called "Computer Terrorism" has released a Proof-of-Concept exploit for an unpatched Microsoft Internet Explorer vulnerability. The exploit allows remote code execution on most Windows systems including XP sp2. This vulnerability can e.g. be exploited if a user visits a web site controlled by the attacker.
The flaw is related to the JavaScript functionality in IE. So, one solution to this problem is to disable Active Scripting in IE. Another solution would be to use some other web browser. Also, as always, running as a restricted user greatly limits the damage these kinds of attacks can cause.
Apparently Microsoft was informed about this bug in May. Earlier it was seen as a denial-of-service vulnerability. MS has not released a patch yet but a Security Advisory on the issue is available.
viz. http://www.f-secure.com/weblog/
Tak nevim, Maxthon 1.5.0.95 (pouzivajici posledni IE6 jadro) ... calc.exe se nespusti, maxhton zatuhne ... takze to zase tak hrozny nebude :) a dle informaci IE7 beta to same
no zkuste si test.. http://www.computerterrorism.com/research/ie/ct21-11-2005
zkusil jsem, pustila se kalkulacka a IE se vypnul
lahka pomoc : nepouzivat IE :)
Microsoft sa sustreduje na Windows Vista a codery nemaju cas ladit IE 5.x a 6.x, IE 7 bude ai lepsi :o
Teda Mozillu (1.7.12) mi to zahltilo fest, ale rozdejchala to nakonec ;). Akorát jsem si musel povolit popupy (MultiZilla odchytla).
IE to shodilo na výjimku 0xc0000005, Maxthon to ustál, jen 3x vyskočil popup "Výzva skriptu" s vyplněným textboxem "Computer Terrorism (UK) Ltd - Internet Explorer Vulnerability".
Chytnul mi to firewall od Symantec-u, přestože používám MSIE 6.0 - no problem.
Pro psaní komentářů se, prosím, přihlaste nebo registrujte.