Search Perform an advanced search query SOFTPEDIA
 
SOFTPEDIA
Updated one minute ago
HomeSubmit a program for being reviewedAdvertise on our websiteGet help on surfing our websitesSend us your feedbackGet information about our XML/RSS backend and how to use itBrowse the news archiveVisit our discussion forumVizitati forumul in limba romana



KLIP
  1. HOME
  2. SCIENCE
  3. TECHNOLOGY
  4. WEBMASTER
  5. SECURITY
  6. MICROSOFT
  7. LINUX
  8. APPLE
  9. GAMES
  10. TELECOMS
  11. REVIEWS
  12. LIFE & STYLE
  13. EDITORIALS
  14. INTERVIEWS
  15. RSS
Welcome!
Hello, Guest

Login if you have a Softpedia.com account.

Otherwise, register for one.

MICROSOFT

The First Internet Explorer 7 Vulnerability

- Truth or hoax?

By: Marius Oiaga, Technology News Editor

The report of a vulnerability affecting Internet Explorer 7, in fact the first vulnerability in IE7, has been around for quite some time, but I have just came across it. In fact, the vulnerability was
initially reported on November 1, 2006. As far I was unable to confirm its authenticity from my usual sources, and this is explanatory for the subtitle. But I am also going to go on a limb and call it a hoax. I will explain why, just bear with me.

According the flaw report, Internet Explorer 7 is vulnerable to DLL-load hijacking. "When IE7 is executed it will load several DLL files. While trying to load some of those files, it does not provide the full path of the DLL file to the function which loads the DLL file to the memory, and therefore Windows will search for this file in the user's machine using the directories provided in the PATH environment variable, and will load the first match it will found," reported Aviv Raff.

In this context, for the browser to actually load a malicious DLL or the downloader DLL of a malicious file, the file in question must first of be planted via a process that bypasses the generic detection of startup folder and startup registry keys alterations by security software, in one of the PATH directories. On the next launch of Internet Explorer 7, the browser will load and execute the malicious DLL.

Let me translate this. This scenario involves an already compromised system. In fact Microsoft's response to this is: "If the attacker can put a dll on the box in a location that is in the user's PATH variable, then they already own the box." Otherwise Internet Explorer 7 is not impacted by the DLL-load hijacking vulnerability. Time is another factor. This report is over a month old and the fact that exploits are hesitating to appear is proof that IE7 DLL-load hijacking is a hoax.

Additionally, Windows would not limit the search to the directories provided in the PATH environment, but to an array of locations that differ in concordance with the enabled/disabled status of SafeDllSearchMode. These are the locations searched: the directory from which the application loaded, the system directory, the 16-bit system directory, the current directory and the directories that are listed in the PATH environment variable.



























MORE RELATED ARTICLES: Internet Explorer 7 Immune to October's Vulnerabilities Free IE6 VPC Windows XP SP2 = a Microsoft Success IE7 Redirected 1.2 Million Phishing Attacks in 2 Weeks Internet Explorer 7 Down – Firefox 2.0 Up Windows Live OneCare Updated with Anti-phishing Technology Activation Security Vulnerabilities in Internet Explorer 7 3.06 Percent Global Share for Internet Explorer 7 Upgrade to IE7 Optimized for Google The Internet Explorer 6 Virtual PC - Run IE6 and IE7 Side by Side IE7 Speaks Chinese and Hebrew
 
Comments | Link here | Subscribe
Print | Send to friend
Today's News | Yesterday's News

Search:

14th December 2006, 13:43 GMT | Copyright (c) 2006 Softpedia | Contact:
Read by 1,990 user(s) | Rating: | 4 vote(s) so far | Cast your vote:
The First Internet Explorer 7 Vulnerability - USER OPINIONS




We are sorry, there are no opinions available for this article.






SHARE YOUR OPINION ABOUT The First Internet Explorer 7 Vulnerability

Since you are not logged on, your comments will have to be approved before being displayed.
Click here to login, or register.
Your Name:
Your Email:
Type in the result:
Your Opinion:
 


DO YOU WANT TO CONTACT US?  

If you have some comments or you want to send us some information you can send us an email directly to .
You can use the form below for the same purpose.
Your full name: (at least 3 characters)
Your email address: (at least 5 characters)
Message subject: (at least 5 characters)
Message text:
(at least 10 characters)
Type in the result:
 
 



© 2001 - 2008 Softpedia. All rights reserved.
Softpedia™ and Softpedia™ logo are registered trademarks of SoftNews NET SRL.
Copyright Information | Privacy Policy | Terms of Use | Contact Softpedia | Update your software | Archive