Welcome to Welcome to DNF.com™ - Domain Sales, Domain Forum, Domain Appraisals, Domain Registrars

If you are new to domains and looking to buy, sell and learn about domains then you have come to the right place. DNForum is the largest domain name community on the internet and continues to grow every day. There are over 105,000 domainers on DNForum doing everything from buying domains, selling domains, learning about domains and discussing domains. Take a minute and Register.

Register Today on DNForum IT'S FREE!

Results 1 to 13 of 13
  1. #1
    DNF Regular
    stevey's Avatar
    Join Date
    Aug 2004
    Location
    Button Moon
    Posts
    887
    DNF$
    8,887
    Bank
    0
    Total DNF$
    8,887
    Donate  

    for ppl who use msn

    for ppl who use msn

    BOSTON, MA: FEBRUARY 8, 2005 – Core Security Technologies, provider of CORE IMPACT, the first-to-market penetration testing product for assessing specific information security risks, today published a vulnerability in Microsoft’s MSN Messenger, an instant messaging program currently used by over 130 million people worldwide. Core researchers discovered that by selecting a specially-crafted graphic as the user’s display picture in MSN Messenger, an attacker could trigger a buffer overflow vulnerability on the chat partner’s computer and surreptitiously take over machines running instant messaging software. The attack would travel through the established chat session and would pass unnoticed by firewalls, network intrusion detection systems and even host-based personal firewalls and antivirus software. According to the vendor, Windows Messenger and Windows Media Player are also affected by this vulnerability.
    “This is a critical security flaw since it directly affects more than 130 million users and because the attack is very likely to go unnoticed by the several layers of security countermeasures commonly used today,” said Ivan Arce, CTO at Core Security Technologies. “Since initially reporting the flaw, we have been working closely with the vendor and we are pleased to see that a fix is now available.”

    Vulnerability Specifics: The MSN Messenger protocol allows for the transmission of images between users during electronic conversations. The image format used to transfer those images is called Proprietary Network Graphics (PNG). When a user selects a picture to be displayed, Messenger converts it to the PNG format, with a fixed size and encoding characteristics. These images are then transmitted over the same communication channel used to exchange text messages. By sending a specially crafted PNG image, an attacker can trigger a buffer overflow and execute arbitrary code on the chat partner’s machine.

    Other Vulnerability Related Facts:

    Microsoft estimates the number of MSN Messenger users to be around 130 million worldwide (http://www.microsoft.com/presspass/p...FlirtingPR.asp).
    Systems running vulnerable MSN Messenger clients on Windows XP with Service Pack 2 installed are also exploitable.
    The vulnerability is exploitable in MSN Messenger client software up to version 6 including binary files compiled with the Visual Studio GS stack overflow protection mechanism. MSN Messenger 7 (beta) clients are not vulnerable.
    Exploitation of the vulnerability can be carried out though the same communications channel used by legitimate users for normal chat sessions, therefore it is very difficult to differentiate attacks from normal traffic.
    A similar vulnerability in the open source libPNG image-processing library was discovered by Chris Evans and fixed in August 2004.

    Microsoft denies this security flaw has anything to do with the MSNM network being down.
    http://www.goodridgeelec.com
    Electrical Contractors, West Midlands, UK

  2. #2
    Account Terminated
    Join Date
    Nov 2004
    Location
    Sydney, Australia
    Posts
    216
    DNF$
    704
    Bank
    0
    Total DNF$
    704
    Donate  

    Re: for ppl who use msn

    Thanks for telling us about that

  3. #3
    Oldbie
    Mr Webname's Avatar
    Join Date
    Jan 2003
    Location
    USA
    Posts
    3,899
    DNF$
    2,282
    Bank
    0
    Total DNF$
    2,282
    Donate  

    Re: for ppl who use msn

    New msn was made available couple of days ago - wonder if this was a fix?

  4. #4
    develope and spread!
    spaghetti's Avatar
    Join Date
    Mar 2005
    Location
    Rome, ITALY
    Posts
    212
    DNF$
    1,429
    Bank
    0
    Total DNF$
    1,429
    Donate  

    Re: for ppl who use msn

    useful..
    .

  5. #5
    DNF Addict
    Stinos's Avatar
    Join Date
    May 2004
    Location
    Belgium
    Posts
    1,494
    DNF$
    3,527
    Bank
    0
    Total DNF$
    3,527
    Donate  

    Re: for ppl who use msn

    *shuts down msn messenger*
    http://www.hostyourimage.eu
    .NET :Daddies.net - QAB.net - OXH.net - QKQ.net

  6. #6
    Platinum Lifetime Member

    Join Date
    Jun 2004
    Posts
    2,911
    DNF$
    1,268
    Bank
    0
    Total DNF$
    1,268
    Donate  

    Re: for ppl who use msn

    Luckily I only chat with people I know and trust.

  7. #7
    Platinum Lifetime Member

    Join Date
    Oct 2004
    Posts
    441
    DNF$
    5,374
    Bank
    0
    Total DNF$
    5,374
    Donate  

    Re: for ppl who use msn

    Thanks for the heads up.

  8. #8
    Platinum Lifetime Member
    dturnbull's Avatar
    Join Date
    Jan 2005
    Posts
    556
    DNF$
    534
    Bank
    0
    Total DNF$
    534
    Donate  

    Re: for ppl who use msn

    thnx for the info

  9. #9
    Social Media Evangelist
    dotcomgiant's Avatar
    Join Date
    Feb 2005
    Location
    Hyderabad
    Posts
    778
    Country

    India Follow dotcomgiant On Twitter Add dotcomgiant on Facebook
    DNF$
    4,590
    Bank
    0
    Total DNF$
    4,590
    Donate  

    Re: for ppl who use msn

    Nice info.. very useful.. though dont use MSN Messanger. i always prefer GAIM..

    LocaFY.in - The smartest way to find local information in India

  10. #10
    Platinum Lifetime Member
    sufi's Avatar
    Join Date
    Mar 2005
    Location
    Karachi
    Posts
    1,032
    DNF$
    620
    Bank
    0
    Total DNF$
    620
    Donate  

    Re: for ppl who use msn

    Thanks for the info. I hope they fix it as soon as possible. Can't live without MSN :(

  11. #11
    Platinum Lifetime Member

    Join Date
    Feb 2005
    Posts
    44
    DNF$
    346
    Bank
    0
    Total DNF$
    346
    Donate  

    Re: for ppl who use msn

    lucky i dont use msn

  12. #12
    DNF Regular
    stevey's Avatar
    Join Date
    Aug 2004
    Location
    Button Moon
    Posts
    887
    DNF$
    8,887
    Bank
    0
    Total DNF$
    8,887
    Donate  

    Re: for ppl who use msn

    ok, for ppl to check if they have the virus go here: http://www.microsoft.com/security/ma...e/default.mspx it scans your pc, takes about a minute to do
    http://www.goodridgeelec.com
    Electrical Contractors, West Midlands, UK

  13. #13
    Exclusive Lifetime Member
    mark's Avatar
    Join Date
    Jun 2004
    Location
    Texas
    Posts
    1,225
    Country

    United States
    DNF$
    5,364
    Bank
    0
    Total DNF$
    5,364
    Donate  

    Re: for ppl who use msn

    Quote Originally Posted by stevey
    ok, for ppl to check if they have the virus go here: http://www.microsoft.com/security/ma...e/default.mspx it scans your pc, takes about a minute to do
    ---------------------

    thanks for the heads up stevey

Similar Threads

  1. aim? icq? msn? / Who is best?
    By FMS in forum Gold Cafe
    Replies: 21
    Last Post: 05-17-2004, 01:47 PM
  2. Msn Network
    By Tripes in forum Domain Name Appraisal Discussion
    Replies: 0
    Last Post: 04-22-2004, 04:36 PM
  3. MSN Messenger
    By Steen in forum Suggestions and Feedback
    Replies: 0
    Last Post: 03-05-2004, 06:57 PM
  4. MSN to drop Looksmart
    By DeCal in forum Search Engines and Traffic Building
    Replies: 3
    Last Post: 10-20-2003, 08:10 AM
  5. Aim or MSN - Anyone use it?
    By NameTower in forum Gold Cafe
    Replies: 1
    Last Post: 04-28-2003, 09:52 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

Domain name forum recommended by Domaining.com