Now all we need is an exploit... I am thinking why isn&#39;t there a Month of windows bugs.. <br><br><div><span class="gmail_quote">On 3/30/07, <b class="gmail_sendername">3APA3A</b> &lt;<a href="mailto:3APA3A@security.nnov.ru">
3APA3A@security.nnov.ru</a>&gt; wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">Dear Michaі Majchrowicz,<br><br>This&nbsp;&nbsp;image&nbsp;&nbsp;also&nbsp;&nbsp;effectively&nbsp;&nbsp;exploits stack overflow (?) in FastStone
<br>Image Viewer 2.8, EIP/EBP is 0x41414141.<br><br>--Monday, March 26, 2007, 12:20:07 AM, you wrote to <a href="mailto:vulndiscuss@vulnwatch.org">vulndiscuss@vulnwatch.org</a>:<br><br>MM&gt; Everytime&nbsp;&nbsp;you&nbsp;&nbsp;try&nbsp;&nbsp;to turn on the slideshow with a JPG file in the
<br>MM&gt; folder&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;you&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; get&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; BSoD<br>MM&gt; (<a href="http://sectroyer.110mb.com/vuln/vista_bsod.jpg">http://sectroyer.110mb.com/vuln/vista_bsod.jpg</a>). You can test it by<br>
MM&gt; turning&nbsp;&nbsp;&nbsp;&nbsp;on&nbsp;&nbsp;&nbsp;&nbsp;the&nbsp;&nbsp; slideshow&nbsp;&nbsp; in&nbsp;&nbsp; the&nbsp;&nbsp; following&nbsp;&nbsp; directory:<br>MM&gt; c:Windows\Web\Wallpaper\&nbsp;&nbsp;Since&nbsp;&nbsp;this&nbsp;&nbsp;case&nbsp;&nbsp;cannot&nbsp;&nbsp;be connect with<br><br><br>--<br>~/ZARAZA <a href="http://securityvulns.com/">http://securityvulns.com/
</a><br>Патриотизм - это та же религия. (Твен)<br><br>_______________________________________________<br>Full-Disclosure - We believe in it.<br>Charter: <a href="http://lists.grok.org.uk/full-disclosure-charter.html">http://lists.grok.org.uk/full-disclosure-charter.html
</a><br>Hosted and sponsored by Secunia - <a href="http://secunia.com/">http://secunia.com/</a><br></blockquote></div><br><br clear="all"><br>-- <br><a href="http://www.goldwatches.com/watches.asp?Brand=39">http://www.goldwatches.com/watches.asp?Brand=39
</a><br><a href="http://www.wazoozle.com">http://www.wazoozle.com</a>