View Single Post
  #8 (permalink)  
Old 08-21-2004, 07:44 AM
 
Posts: n/a
Default Eternally Tripped On Smirmnoff Twisted Rasberry :P

8O

Dude, I think you should like, take a look at this. IE maybe siting pretty, but its browsing capabilities are shitty

Quartet of new IE exploits announced
Secunia finds three more ActiveX bugs, plus a crossover bug from Mozilla.
--------------------------------------------------------------------------------
posted 12:56pm EST Tue Jul 13 2004 - submitted by J. Eric Smith
NEWS


Internet security firm Secunia today announced four new vulnerabilities in Microsoft's Internet Explorer Web browser. These announcements pile bad news on top of the previously-identified holes brought to light last week. The vulnerabilities affect all IE 5, 5.5, and 6.0 browsers, and all but one exploit the handling of ActiveX scripts, just like last week's problems. Prior browser versions may also be affected.

The first three exploits rely on failures of IE to properly handle malicious use of ActiveX scripts. By tricking the user or redirecting ActiveX function calls from one script to another, different script with the same name, arbitrary scripts can be executed. Since ActiveX scripts have almost unfettered access to the entire system, vast damage can be done.

The fourth vulnerability is an oddity, and may be the first example of an Open Source exploit finding its way over to IE. Last week's Mozilla "shell:" bug has now been implemented on IE, with similar results.

Secunia's advisories identify all the ins and outs of these bugs. Like Microsoft, Secunia recommends IE users disable Active Scripting, which nullifies all of the ActiveX bugs, and disabling the "shell:" browser mapping, which kills the Mozilla-like vulnerability. Unlike Microsoft, however, Secunia advises users to use an alternate browser if the above restrictions are unpalatable.

I mean take IE on my puter for example. It floods my screen with about a billion friggin pop up ads, doesn't load properly, and keeps giving me these dumb lil Script Error shts.

not sayin its liek the above, but I am sayin it ain't worth it. Screw this man, I'll use Mozilla, or even Opera 7 over that mess.

Overload On Daqueries
Reply With Quote