C
CheshireCat
Ive just received the kb828035 critical update automatically this morning
and went to look it up in the knowledgebase "Buffer overrun could allow code
execution".
"An attacker who successfully exploited this vulnerability could be able to
run code with Local System privileges on an affected system, or could cause
the Messenger Service to fail. The attacker could then be able to take any
action on the system, including installing programs, viewing, changing or
deleting data, or creating new accounts with full privileges."
Can anyone explain how such a bug could allow this sort of thing to happen?
Why doesn't their program just crash and that's it?
and went to look it up in the knowledgebase "Buffer overrun could allow code
execution".
"An attacker who successfully exploited this vulnerability could be able to
run code with Local System privileges on an affected system, or could cause
the Messenger Service to fail. The attacker could then be able to take any
action on the system, including installing programs, viewing, changing or
deleting data, or creating new accounts with full privileges."
Can anyone explain how such a bug could allow this sort of thing to happen?
Why doesn't their program just crash and that's it?