[FLUG] Lavorare nella sicurezza fa male...

  • From: BlueRaven <blueraven@xxxxxxxxx>
  • To: ML Fortunae LUG <fanolug@xxxxxxxxxxxxx>
  • Date: Thu, 24 Jul 2003 10:12:44 +0200

Mailing List del Fortunae LUG
=============================

Secondo me, uno che scrive un advisory in questo modo o è matto di suo
oppure ha un esaurimento nervoso. :-DDD
Il post viene da Bugtraq e descrive una vulnerabilità in una DLL per
l'esecuzione di file MIDI che può portare all'esecuzione di codice
arbitrario.

Description:
A little over six hundred years ago, in a quaint German hamlet called
Hamelin, the Pied Piper proved to the townsfolk that he could take control
of their rodents and children with just a song.  Turns out the same thing
works on Windows.

E ancora:

Technical Description:
Modern folklore contends that some bands used to inject subliminal messages
into their music by recording spoken commands or phrases and dubbing them
backwards into the track.  Although these allegations and the effectiveness
of the technique were  never proven conclusively, it is known that computers
running a vulnerable version of QUARTZ.DLL will happily do whatever they're
instructed to do without litigation, as long as the commands in the MIDI
music are in machine language.

MA ROTFL!!! :-DDD

-- 
#include <best/regards.h>

BlueRaven

Apparently a teacher has been arrested in the UK in possession of
compasses, protractors, and straight edge rulers. It is claimed he is a
member of the Al Gebra movement bearing weapons of math instruction.
-- 
Steve Reich

Other related posts:

  • » [FLUG] Lavorare nella sicurezza fa male...