Re: Windows Vista winsat.exe Integer Overflow

[email protected] Wed, 02 Apr 2008 22:33:07 -0400
Newsgroups gmane.comp.security.vulnerabilities
Message-ID <[email protected]>
--==_Exmh_1207189987_3351P
Content-Type: text/plain; charset=us-ascii

On Wed, 02 Apr 2008 13:39:36 PDT, "Thor (Hammer of God)" said:

> So, if you have someone who is going to run as administrator anyway,
> download the untrusted .exe, execute it, and then confirm the execution
> of the program without concern for what happens, we can't really fault
> the OS for that at this point in the game.

I wasn't faulting the OS - I was pointing out it's still a viable attack
vector, despite the OS's best efforts to stop it.

--==_Exmh_1207189987_3351P
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Exmh version 2.5 07/13/2001

iD8DBQFH9EHjcC3lWbTT17ARAlOpAKCItV1eQbzPmWG+sZyDWw9VtoO7ggCeIB26
9qr6RzDSrcuK1chm1uDkIHw=
=h5fP
-----END PGP SIGNATURE-----

--==_Exmh_1207189987_3351P--