FW: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20 msgs

2004-09-29 Thread Todd Towles
Meant for the list I believe. -Original Message- From: GuidoZ [mailto:[EMAIL PROTECTED] Sent: Wednesday, September 29, 2004 1:05 PM To: Todd Towles Subject: Re: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20 msgs That's also my understanding, and expereince,

Re: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20 msgs

2004-09-29 Thread GuidoZ
That's also my understanding, and expereince, from testing it. I'm sure it's possible to find other ways to toy with JPEG parsing, such as wallpaper. (I believe Todd brought this up before somewhere.) Try it with Active Desktop (as you'll need to when setting a JPEG to wallpaper), which uses IE to

Re: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20 msgs

2004-09-29 Thread DanB UK
We REALLY DONT need to see all of the digest on the list... When you reply, just leave in the lines that you are commenting about!! Bloody waste of bandwidth! -- DanB UK London, UK ___ Full-Disclosure - We believe in it. Charter: http://lists.netsys

RE: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20

2004-09-28 Thread Todd Towles
What if it copies itself to the wallpaper? -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Geo. Sent: Tuesday, September 28, 2004 1:27 PM To: [EMAIL PROTECTED] Subject: RE: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20 >>far-f

Re: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20

2004-09-28 Thread Barry Fitzgerald
Geo. wrote: far-fetched. Would it be possible to create a jpeg that would copy itself to other drives on a shared network in an auto-executable position? I suppose so... however, it would be noisy and probably wouldn't be amazingly successful.<< Picture a company full of users and a worm t

RE: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20

2004-09-28 Thread Geo.
>>far-fetched. Would it be possible to create a jpeg that would copy itself to other drives on a shared network in an auto-executable position? I suppose so... however, it would be noisy and probably wouldn't be amazingly successful.<< Picture a company full of users and a worm that copys the jp

Re: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20 msgs

2004-09-28 Thread Barry Fitzgerald
milw0rm Inc. wrote: JPEG GDI problem, Isn't this problem only capable of running if the jpeg was opened via the users actions? Is it possible that webpages could be effected with jpegs with internet explorer viewing them? I wouldn't think so since what I have read from multiple peoples articles th

Re: [Full-Disclosure] Re: Full-Disclosure digest, Vol 1 #1933 - 20 msgs

2004-09-28 Thread DanB UK
Hi, When you post a reply to the list, please don't include all the digest! It's a REAL waste of bandwidth!!! Regards, Dan. On Mon, 27 Sep 2004 13:12:10 -0500, milw0rm Inc. <[EMAIL PROTECTED]> wrote: > JPEG GDI problem, > > Isn't this problem only capable of running if the jpeg was opened via