[Full-Disclosure] Re: MS04-028 Jpeg EXPLOIT - msn

i.t fulldis at it97.dyndns.org
Sun Sep 26 10:57:33 BST 2004


> On Saturday 25 September 2004 16:59, raza wrote:
> > I just compiled this and it works well..
> >
 ...
> yes and it works very well.
> > I can see this ones gaana be fun...
> We'll have a worm within days.

for nearly all of my clients using win xp I've deinstalled win messenger.
one urgently wanted it back for communicating in real-time; and, of course, 
it's much more fun seeing a live picture of the counterpart(s) in the chat 
window...

even having installed sp2 and the newest patches plus AV I can imagine a virus 
spreading within those pictures throughout the whole msn and so on...
any other defense?
or ist this too much paranoia?

i.t




Full-Disclosure is hosted and sponsored by Secunia.