1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Buffer overflow in Microsoft Internet Explorer gopher code

Discussion in 'Security and Privacy' started by brett, 2002/07/31.

Thread Status:
Not open for further replies.
  1. 2002/08/08
    pivx

    pivx Inactive

    Joined:
    2002/08/08
    Messages:
    2
    Likes Received:
    0
    response...

    alice and others...

    our fix fixes the problems the MS work around creates under some software configurations (62% of all responding persons applying the fix had this problem).

    I assure you, SecurityFocus, TechTV and other sources tested this before the recomended it to their millions of viewers and or subscribers. That is 'only' the credability that we bring to the table.

    Let me know if you have any other questions... I will be happy to answer them.

    I hope our fix helps some of you.
     
  2. 2002/08/08
    Alice

    Alice Banned

    Joined:
    2002/01/08
    Messages:
    938
    Likes Received:
    0
    From the gopher_smoker download page:
    How can you tell if you need the VB6 runtime? This is getting way too complicated :eek:
     

  3. to hide this advert.

  4. 2002/08/08
    brett

    brett Inactive Alumni Thread Starter

    Joined:
    2002/01/11
    Messages:
    2,058
    Likes Received:
    0
    IE6 SP1 is in the pipeline and it would appear that the gopher issue shall be addressed within this release (if not before). Details here or here.

    Alice - if you have msvbvm60.dll in Windows/System32 you have Runtime 6.
     
    Last edited: 2002/08/08
  5. 2002/08/08
    Alice

    Alice Banned

    Joined:
    2002/01/08
    Messages:
    938
    Likes Received:
    0
    Thanks. brett. I was just coming here to post that I found the mskb articles (the gopher_smoker page has links for two different files, btw, VBRun60sp5.exe and VBRun60.exe) -

    http://support.microsoft.com/default.aspx?scid=kb;EN-US;Q192461
    FILE: VBRun60.exe Installs Visual Basic 6.0 Run-Time Files

    http://support.microsoft.com/default.aspx?scid=kb;EN-US;Q290887
    FILE: VBRun60sp5.exe Installs Visual Basic 6.0 SP5 Run-Time Files

    Now have to figure out which one, if any, I need to install, or if it makes a difference.

    Think I'll just wait for Microsoft's fix!

    EDIT: Yes I do have msvbvm60.dll in Windows System, Visual Basic Virtual Machine version 6.00.8268 dated 9/25/1998 -thanks again.
     
    Last edited: 2002/08/08
  6. 2002/08/08
    brett

    brett Inactive Alumni Thread Starter

    Joined:
    2002/01/11
    Messages:
    2,058
    Likes Received:
    0
    Alice - unless there are reports of this vulnerability being exploited, I think I'll wait too :)

    BTW - if you're running XP or 2K, you almost certainly have Runtime 6 already.
     
    Last edited: 2002/08/08
  7. 2002/08/08
    Welshjim

    Welshjim Inactive

    Joined:
    2002/01/07
    Messages:
    5,643
    Likes Received:
    0
    Alice and brett--As reported earlier I have installed the manual fix for Gopher and the Gopher test site is now successfully (?) blocked. I have done nothing about FTP and HTTP, and so far have not experienced any problems, but I have not consciously accessed any such sites.
    Alice, I hate to tell you, but while typing this post I am listening to Emma Kirtland (?) singing something by Amy Beech on WNYC courtesy of Windows Media Player (v7.1). So I figure it cannot get too much better than this :D and that I am skating pretty close to edge already. So I agree with you and will not install the pivx fix. I'll wait and see what MS finally offers, if anything.
    FWIT--I have not installed the original June patch for WMP (although I did install the November patch). I understand MS has included something called Digital Rights Management in that fix, which has nothing to do with my security.
     
  8. 2002/08/09
    Alice

    Alice Banned

    Joined:
    2002/01/08
    Messages:
    938
    Likes Received:
    0
    Hi Jim,

    Guess it's easy enough to undo the gopher proxy workaround if you run into any problems with Outlook Express, WMP, etc., but in my case, it's my husband who uses Internet Explorer. He listens to internet radio all the time (using both Real Player and WMP) always has AIM going and uses Outlook Express for e-mail, so it's best if I don't hobble the pc to protect myself from a threat that may be remote.

    I haven't installed the 26 June 2002 Cumulative Patch for Windows Media Player either - http://www.microsoft.com/technet/security/bulletin/MS02-032.asp - but I do plan to install it soon. I'll have to read up on DRM - I just found http://www.microsoft.com/windows/windowsmedia/drm.asp

    Here is the portion of the WMP patch's EULA.txt that has gotten so much attention, copied from the July 24th version of the patch which I have already downloaded (opened in WinZip):
    FWIW, here'a a C/P from a recent Newsgroup posting:
     
    Last edited: 2002/08/09
  9. 2002/08/09
    Welshjim

    Welshjim Inactive

    Joined:
    2002/01/07
    Messages:
    5,643
    Likes Received:
    0
    Alice--Thanks for your research into what Windows Media Player's DRM is about and what MS "says ". I suppose I am a little concerned that MS would like to be able to download whatever they would like to my PC when this "fix" is installed. Maybe or maybe not this particular download is good for motherhood and apple pie, but in the future? And without asking me?
     
  10. 2002/08/10
    shadowhawk

    shadowhawk Inactive

    Joined:
    2002/01/07
    Messages:
    985
    Likes Received:
    0
    Why does this whole DRM thing smack of 1984 and Big Brother to me?:confused:
     
  11. 2002/08/23
    Alice

    Alice Banned

    Joined:
    2002/01/08
    Messages:
    938
    Likes Received:
    0
    Microsoft just released a patch for the gopher protocol vulnerability.

    It's included in the August 22, 2002 Cumulative Patch for Internet Explorer.

    see Microsoft Security Bulletin MS02-047
    Cumulative Patch for Internet Explorer (Q323759)
    Link to MS02-047
     
    Last edited: 2002/08/23
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.