Serious buffer management bug in Windows
,----[ Quote ]
| It’s a serious buffer management bug , which is present in cmd.exe (command
| prompt). By using “start” command at command prompt user will be able to pas
| s buffer of any length to cmd.exe, which further process this long buffer as
| a file or object name without checking its length.
`----
http://www.openrce.org/blog/view/801/serious_buffer_management_bug_in_Windows
Windows is still good for some things. It saves beer:
http://swiss-lupe.blogspot.com/2007/07/dank-xp-bier-nicht-mehr-ausleeren.html
It also inspires some Linux theme developers on the face of it:
http://kde-look.org/content/show.php/show.php?content=54701&vote=good&tan=22941255
|
|