TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Four RCE Zero-Day Flaws Plague Internet Explorer

54 pointsby hackinsideralmost 10 years ago

7 comments

amaksalmost 10 years ago
&quot;Microsoft was initially given a May 12, 2015 deadline, but this deadline was extended to July 19 at the vendor’s request. Since the company failed to meet this deadline, ZDI has decided to inform users of the existence of this flaw.&quot;<p>I would expect Microsoft to handle security vulnerabilities with a higher priority. Not sure why they are dropping this on the floor.
评论 #9937642 未加载
评论 #9937523 未加载
sagoalmost 10 years ago
I&#x27;m not a &#x27;security researcher&#x27;, and have only a technical layman&#x27;s grasp of the issue, but:<p>&gt; &quot;By manipulating a document&#x27;s elements an attacker can force a dangling pointer to be reused after it has been freed. An attacker can leverage this vulnerability to execute code under the context of the current process,”<p>The first and second sentence there feels like an &#x27;and then a miracle happens&#x27; argument (<a href="http:&#x2F;&#x2F;star.psy.ohio-state.edu&#x2F;coglab&#x2F;Miracle.html" rel="nofollow">http:&#x2F;&#x2F;star.psy.ohio-state.edu&#x2F;coglab&#x2F;Miracle.html</a>). I get that, in some cases dangling pointers might allow you to get a bit of uploaded data to be treated like a bit of internal data. But it seems to me like a piece of extraordinary unlikely bad luck to allow this to execute arbitrary code.<p>So I don&#x27;t dismiss that there is a theoretical risk, but can anyone suggest how much risk is in these risks. In particular, is the risk of such an exploit greater than the risk of an exploiter finding a new weakness? If not, then I can understand why there is no great urgency to patch these flaws.
评论 #9936734 未加载
评论 #9937017 未加载
评论 #9936951 未加载
评论 #9937707 未加载
terminadoalmost 10 years ago
So, does this affect Windows 10 and the new Edge web browser?
评论 #9938012 未加载
orandalmost 10 years ago
RCE stands for Remote Code Execution
MichaelGGalmost 10 years ago
WTF? Microsoft must have known what would happen. This isn&#x27;t 1999 anymore. Did they just call HP&#x27;s bluff? I was under the impression that MS was generally doing a fairly good job as far as taking these reports seriously.
eugeneionescoalmost 10 years ago
They didn&#x27;t drop anything. You cannot reproduce the vulnerabilities from the details they published.
na85almost 10 years ago
How embarassing. I think it&#x27;s hubris at this point that keeps Internet Explorer alive. I think it&#x27;s been obvious for years that Microsoft just doesn&#x27;t have the engineering talent to make a decent browser. It&#x27;s time they bow out of that particular arena and focus on areas where they are strong.
评论 #9937577 未加载