Friday, December 24, 2004

Four New Unpatched Windows Vulnerabilities Discovered

Slashdot reports that four unpatched Windows vulnerabilities have been found.

C|Net has details on two of them. A Chinese security group, Xfocus, discovered them and posted the details online. The first one is an image vulnerability, that an attacker could take advantage of to compromise your system when you view a specially crafted image. The other is a problem in the Windows Help system, and could affect any program that opens a help file. Basically, all versions of Windows and all browsers and email clients are affected.

Security Focus has the info on the other two bugs, also found by Xfocus, a Microsoft Windows Kernel ANI file parsing crash and Dos vulnerability. Both vulnerabilities could allow an attacker to either crash or freeze a system.


