Slashdot Mirror


XP/Vista IGMP Buffer Overflow — Explained

HalvarFlake writes "With all the hoopla about the remotely exploitable, kernel-level buffer overflow discussed in today's security bulletin MS08-0001, what is the actual bug that triggers this? The bulletin doesn't give all that much information. This movie (Flash required) goes through the process of examining the 'pre-patch' version of tcpip.sys and comparing it against the 'post-patch' version of tcpip.sys. This comparison yields the actual code that causes the overflow: A mistake in the calculation of the required size in a dynamic allocation."

7 of 208 comments (clear)

  1. Haven'y you guys figured out by Anonymous Coward · · Score: -1, Troll

    that M$ is a bunch of NIGGERS?!?!

    Nigger Nigger Nigger

    1. Re:Haven'y you guys figured out by Anonymous Coward · · Score: -1, Troll

      No that was Romney, you can not get any more racist than being both a politician AND a mormon.

  2. It's a fucking advert by Anonymous Coward · · Score: -1, Troll

    It's a fucking advert

  3. Re:well gee by Anonymous Coward · · Score: -1, Troll
  4. Re:Sounds like HowStuffWorks material! by jo42 · · Score: 0, Troll

    how he analyzes ms patches for differences You mean it is something other than disassemble pre, disassemble post, diff?

    Mebbe I should become one of these masters...
  5. Re:you BINARY PATCH core OS code??? by Anonymous Coward · · Score: -1, Troll

    >> This does bring up an interesting possibility - rather than completely reimplement Windows through something like ReactOS, or translate the API like WINE, how about replacing components of a real Windows install with F/OSS replacements? Drop in a workalike, but open source tcpip.sys and know where it's coming from.

    Cool, so you take the "best" of both worlds! : a closed-source proprietary OS, which doesn't work anymore.

  6. Re:Why Windows 95 and NT 4 are enough by justthinkit · · Score: 0, Troll

    I believe the Windows 95/98 backup program is different than the one in XP. A friend of mine had his machine crash with key contents lost. He emailed me his backup files but I couldn't restore them despite some effort -- XP could not restore 9x backups. Idiotic I know but what I ran up against.

    --
    I come here for the love