MS04-028 exploits released

Discussion in 'other security issues & news' started by the mul, Sep 23, 2004.

Thread Status:
Not open for further replies.
  1. the mul

    the mul Registered Member

    Joined:
    Jul 31, 2003
    Posts:
    1,703
    Location:
    scotland
    Posted at: http://forums.subratam.org/index.php?showtopic=2020


    QUOTE
    FYI...from the Internet Storm Center:

    - http://isc.sans.org/diary.php?date=2004-09-23

    Updated September 23rd 2004 16:30 UTC

    "This is a preliminary diary, and will be updated throughout the day, as the situation warrants, due to the possibility of a rapidly emerging exploit, or worm, we are releasing this early.

    Over the last 24hrs, several exploits taking advantage of the JPEG GDI vulnerability (MS04-02:cool: have been released. We expect a rapid developemnt of additional exploits over the next few days. Tom Liston has put together a scanner, which will scan your systems for vulnerable versions of the GDI libraries you can get it at:

    - http://isc.sans.org/gdiscan.php

    This program should have an MD5 checksum of {91ff45c6158e77eb57fbf6fbe38f05d1). Several non-microsoft programs include versions of GDI libraries which are vulnerable to exploitation. Using this tool you can identify programs which may be vulnerable, and attempt to obtain updates from the software developer..."


    THE MUL
     
  2. chew

    chew Registered Member

    Joined:
    Jun 29, 2004
    Posts:
    515
    Location:
    GeordieLand.
    The Mul

    Thanks for the info.

    But how do I use the scan developed by Tom Liston to ...

    1) Install?

    2) Run Scan?

    3) Uninstall?

    More information please.

    Cheers

    Chew
     
Loading...
Thread Status:
Not open for further replies.