Tech Talk Discuss PC Hardware, Software, Internet and Other Technology

XP USERS MUST READ - major flaw

Old 09-10-02, 11:55 AM
  #1  
DVD Talk Special Edition
Thread Starter
 
Join Date: Jun 2001
Location: Richardson, TX
Posts: 1,505
XP USERS MUST READ - major flaw

on the screensavers yesterday they demonstrated a way a link on a webpage could delete all the files in a folder the webpage wants to...

This is only a problem with xp:

two ways to fix this problem

1. Upgrade to SP1, if you have a questionable key or if you can't download the file then do step two.

2. Find the file uplddrvinfo.htm and rename it or delete it.

more info:

http://grc.com/default.htm
http://www.techtv.com/screensavers/s...398516,00.html

(scroll to the middle for the "boot camp tip" for the second link)
hypeiv is offline  
Old 09-11-02, 02:16 PM
  #2  
DVD Talk Special Edition
Thread Starter
 
Join Date: Jun 2001
Location: Richardson, TX
Posts: 1,505
bump... sorry for the spam i just think this is very important for people who are not running sp1.
hypeiv is offline  
Old 09-12-02, 01:40 AM
  #3  
omi
Senior Member
 
Join Date: Mar 1999
Location: Woodinville, WA
Posts: 290
Cool, thanks for letting me know.
omi is offline  
Old 09-12-02, 02:40 AM
  #4  
DVD Talk Hero
 
jfoobar's Avatar
 
Join Date: Jun 2000
Posts: 37,600
Too bad the download button for XP SP1 on the MS site is dead, at least for the past two hours.

http://www.microsoft.com/WindowsXP/p...p1/express.asp

jfoobar is offline  
Old 09-12-02, 03:57 AM
  #5  
dek
DVD Talk Legend
 
Join Date: Dec 1999
Location: On the road to reclaiming Lord Stanleys Cup, Turlock CA
Posts: 11,311
They were dead last night too, try this, I dled it fast on DSL :

http://premierdownload.microsoft.com...sp1_en_x86.exe

\
dek is offline  
Old 09-12-02, 01:29 PM
  #6  
DVD Talk Special Edition
Thread Starter
 
Join Date: Jun 2001
Location: Richardson, TX
Posts: 1,505
i tested this exploit on my machine and made a directory called c:\test\ and put some files in it. Using the link code (found on newsgroups and all over irc) I ran it in a browser and it brought up this help like window, when i closed it all the files in that folder were deleted. I know msft doesn't want to help people out who are using no legit versions of xp, but by including this update only in the service pack it puts dail up users at risk.
hypeiv is offline  
Old 09-12-02, 10:49 PM
  #7  
DVD Talk Hero
 
D.Pham4GLTE (>60GB)'s Avatar
 
Join Date: Jul 2001
Location: Stick out your tongue!
Posts: 39,186
Originally posted by hypeiv
i tested this exploit on my machine and made a directory called c:\test\ and put some files in it. Using the link code (found on newsgroups and all over irc) I ran it in a browser and it brought up this help like window, when i closed it all the files in that folder were deleted. I know msft doesn't want to help people out who are using no legit versions of xp, but by including this update only in the service pack it puts dail up users at risk.
well, you *could* purchase it...i mean, how else is m$ gonna make money, but by ringing the poor people for every cent they have?
D.Pham4GLTE (>60GB) is offline  
Old 09-12-02, 11:08 PM
  #8  
DVD Talk Special Edition
Thread Starter
 
Join Date: Jun 2001
Location: Richardson, TX
Posts: 1,505
Originally posted by D.Phlowbee
well, you *could* purchase it...i mean, how else is m$ gonna make money, but by ringing the poor people for every cent they have?
hehe, actually my school has a site license so i have a legit copy but its not only that... alot of people have dail up and can't get sp1... msft could have made a 4k security update for the automatic update users out there that fixed the problem.
hypeiv is offline  

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Thread Tools
Search this Thread

Archive Advertising Cookie Policy Privacy Statement Terms of Service

Copyright 2018 MH Sub I, LLC dba Internet Brands. All rights reserved. Use of this site indicates your consent to the Terms of Use.