|
|||||||
![]() |
|
|
Thread Tools |
|
|
#1 |
|
Player Character
bit-tech Staff
Join Date: Apr 2007
Posts: 7,988
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Security flaw in Vista discovered
http://www.bit-tech.net/news/2008/11...a-discovered/1
Another security flaw has been discovered in Windows Vista, this time allowing for a buffer overflow in the networking subsystem to overwrite kernel memory.
__________________
|
|
|
|
|
|
#2 |
|
Victim of AdvancedModernCapitalism
Join Date: Nov 2006
Location: The town of Love, Funchal
Posts: 600
![]() |
Seriously... something as bad as this, and only a fix for the next SP? How soon will it come out then?
__________________
Netbook: Asus eeePC 901; 12Gb SDD; Custom Ubuntu 9.04 Minimal Compiz Standalone.
Laptop: Intel Centrino Duo T5500 1.66ghz; 2048mb RAM; ATI Mobility Radeon x2300; Hitachi 120gb iPod Classic 120GB; Maxtor 160GB External; Ubuntu 9.10 x64 and Windows 7 x64. |
|
|
|
|
|
#3 |
|
Sir Bongaminge
Join Date: Apr 2007
Location: Godalming, near Guildford
Posts: 1,553
![]() ![]() |
Ah bugger Vista, I, and I get the impression a lot of others, are waiting for Windows 7.
__________________
Pentium 4 CPU 3.4 Ghz | 1Gb + 2x512Mb Corsair DDR2 667 Mhz Sapphire Radeon HD 4770 512Mb| WD Raptor 36Gb, Seagate 300Gb | Asus P5LD2 SE Ibanez RG 470 Japanese Edition | 1991 Japanese Lo-TRS Tremolo | V7 S1 Custom V8 HSH Pickups |
|
|
|
|
|
#4 |
|
What owl?
Join Date: May 2005
Location: Edinburgh
Posts: 3,990
![]() ![]() ![]() |
Yeah, don't really see the point in paying for vista when its about to be made redundant. Though i'm the man who stuck with 2k till 2k6.
__________________
No boom today, boom tomorrow... there's always a boom tomorrow. |
|
|
|
| steveo_mcg |
| View Public Profile |
| Find More Posts by steveo_mcg |
|
|
#5 | |
|
Mod Master
Join Date: Mar 2005
Location: Aberdeen, Scotland
Posts: 2,088
![]() |
Yet another reason to switch to Linux for everything bar gaming tbh...
__________________
Laptop:C2D P8600 2.4GHz, 4GB, 9800GTS, 120GB SSD, 15" 1680x1050, Vista64 Projects: 1.2TB Fileserver housed in a cardboard box!|Retro HTPC for my GF. Quote:
|
|
|
|
|
|
|
#6 | |
|
Supermodder
Join Date: Jan 2007
Location: The University of York
Posts: 502
![]() |
Quote:
![]() Although it would be nice to know if this is a vulnerability as in someone hacking into your PC from the internet or whether you have to actually execute malicious code, in which case the vulnerability is the user which makes any system vulnerable. Though people shouldn't level lots of hate against vista - it's probably not worth upgrading if you already have XP, but it is sufficiently superior to definitely recommend it over XP for someone who is building a new system.
__________________
Dreaming C2D E6300 @ 2.8 | | Abit IP35 Pro | | 4GB Corsair XMS2 800 | | BFG 8800GTS OC2 320MB | | 500GB Western Digital for OS + 1500GB Seagate for Storage | | Antec NeoHE 550 | | Lian Li PC A05B | | Samsung 226BW 22" |
|
|
|
|
|
|
#7 |
|
mother into a board?!
Join Date: Jan 2007
Location: Canada, Montreal
Posts: 3,477
![]() ![]() ![]() ![]() ![]() ![]() |
Oh no Vista has 1 issue found after 2 years and half about. Where XP you have issues at every corner.
__________________
AMD Athlon 64 X2 4400+ S939 | 3GB of Corsair/Kingston (mix) RAM @ 400Mhz 3-3-3-8-2T | ASUS A8N32-SLI *Deluxe* | Geforce 260 GTX | X-Fi XtreamMusic | Western Digital 250GB SATA-II 16MB of Buffer | Corsair HX620W | Antec SOLO case | Monitor: 24inch Dell U2410 | Win 7 64-bit Go for Pro! |
|
|
|
|
|
#8 | |
|
Victim of AdvancedModernCapitalism
Join Date: Nov 2006
Location: The town of Love, Funchal
Posts: 600
![]() |
Quote:
__________________
Netbook: Asus eeePC 901; 12Gb SDD; Custom Ubuntu 9.04 Minimal Compiz Standalone.
Laptop: Intel Centrino Duo T5500 1.66ghz; 2048mb RAM; ATI Mobility Radeon x2300; Hitachi 120gb iPod Classic 120GB; Maxtor 160GB External; Ubuntu 9.10 x64 and Windows 7 x64. |
|
|
|
|
|
|
#9 | |
|
What owl?
Join Date: May 2005
Location: Edinburgh
Posts: 3,990
![]() ![]() ![]() |
Quote:
![]() ![]() http://www.google.co.uk/search?clien...=Google+Search
__________________
No boom today, boom tomorrow... there's always a boom tomorrow. |
|
|
|
|
| steveo_mcg |
| View Public Profile |
| Find More Posts by steveo_mcg |
|
|
#10 |
|
Modder
Join Date: Apr 2006
Posts: 62
![]() |
i agree
vista had alot less security issues since release xp still have security issues since it was released, just check windows update on a XP RTM system and check how many security updates you get :P its gonna be many
__________________
AMD Phenom 9850 Blacky Edition Gigabyte GA-MA790FX-DS5 Sapphire Radeon HD 4870 512MB OCZ Gold PC6400 4GB Dual Channel, VelociRaptor 150GB Corsair 620HX (12v=3x18A, +3.3v=24A, +5=24A) |
|
|
|
|
|
#11 |
|
mother into a board?!
Join Date: Jan 2007
Location: Canada, Montreal
Posts: 3,477
![]() ![]() ![]() ![]() ![]() ![]() |
I have a XP pre-SP1 disk...
Takes me a day and half to download all the updates up to SP3, and about 2 GB of bandwidth. I know my previous comments was a bit exaggerated but compared to XP, it feels this way.
__________________
AMD Athlon 64 X2 4400+ S939 | 3GB of Corsair/Kingston (mix) RAM @ 400Mhz 3-3-3-8-2T | ASUS A8N32-SLI *Deluxe* | Geforce 260 GTX | X-Fi XtreamMusic | Western Digital 250GB SATA-II 16MB of Buffer | Corsair HX620W | Antec SOLO case | Monitor: 24inch Dell U2410 | Win 7 64-bit Go for Pro! |
|
|
|
|
|
#12 |
|
Madeira's banana is the best!!!
Join Date: Sep 2005
Location: Madeira ; Portugal
Posts: 6,476
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
i feel the same.
__________________
Renegade X - 0.40 Release! <---- CLICK! |
|
|
|
|
|
#13 |
|
VGChartz PR Manager
Join Date: Sep 2007
Location: Florida, USA
Posts: 232
![]() |
I thought M$ stated they were not making a second service pack for Vista....
__________________
http://thebladeclan.com |
|
|
|
|
|
#14 |
|
Supermodder
Join Date: Jan 2006
Posts: 345
![]() |
Vista is definately my favorite OS right now. If your not an idiot its not really very hard to keep any computer running top-notch, windows computers always fill up the fastest and that's because they are the largest target for hackers, nothing surprising there.
Advanced Windows care v3 Glary Utilities ccleaner Basically those and a decent anti-virus are all you need, best yet there free.
__________________
"Your belief, unfortunately, is no endorsement of truth" |
|
|
|
| johnmustrule |
| View Public Profile |
| Find More Posts by johnmustrule |
|
|
#15 | |
|
Multimodder
Join Date: Oct 2005
Location: Maaaaryland, USA
Posts: 219
![]() |
Quote:
|
|
|
|
|
| Cadillac Ferd |
| View Public Profile |
| Find More Posts by Cadillac Ferd |
|
|
#16 |
|
Supermodder
Join Date: Jul 2008
Posts: 273
![]() |
if you read all the article it states theres a possibility of injecting code and bypassing admin rights completely, very bad stuff.
|
|
|
|
|
|
#17 |
|
What's a Dremel?
Join Date: Nov 2008
Posts: 1
![]() |
If you know how DHCP works, you know that it would be quite hard to exploit this flaw.
To exploit this flaw you have to control the DHCP-server in the machines local subnet and be able to send a specially crafted DHCP-response, a DHCP-server does not send anything unless a DHCP-client requests it, to a DHCP-request from a DHCP-client (the DHCP-request is send as at broadcast [1] and not to a specific IP-adress, unless the machine is connected to a switch with management and the possibility to setup an IP-helper-adress where DHCP-request gets forwarded to). [1] its highly unlikely your router is configured to forward broadcasts to outside adresses, including to the internet. Most ISPs configure the routers so they works as a local DHCP-server, so pcs connected to the same network can reach eachother eventhough the internetconnection is down. If your router is configured this way, an intruder would have to take control of the router, modify the firmware on the router and wait for your machine to send a DHCP-request and then try to break the machine. Most routers dont run software that users can compile or modify themselves, Linksys has a few that runs Open Source firmware (i can only remember openwrt.org). So watch out if you are in the habit of upgrading your router with firmware from suspicious websites. |
|
|
|
|
|
#18 | |
|
Multimodder
Join Date: Jun 2001
Location: London, UK
Posts: 229
![]() |
Quote:
|
|
|
|
|
|
|
#19 | |
|
WIIGII!
Join Date: Dec 2007
Location: Bradford, UK
Posts: 434
![]() |
Quote:
|
|
|
|
|
|
|
#20 | |
|
Ecky thump
Moderator
Join Date: Nov 2001
Location: S.Yorkshire, OK
Posts: 12,333
![]() ![]() ![]() ![]() ![]() |
Quote:
__________________
Nobody's perfect. But being a Yorkshireman is as close as you can get. |
|
|
|
|
![]() |
| Thread Tools | |
|
|