Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Microsoft Security Advisory (935423) Vulnerability in Window
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
dinput.dll »
« Pimp my Tinfoil hat  

swhx7
Premium
join:2006-07-23
Elbonia
·RoadRunner Cable

Re: Microsoft Security Advisory (935423) Vulnerability in Window

OK, I can see Fireferret/Moz browsers being vulnerable if a page can get them to call the Windows routines for using a new cursor from an .ani file instead of the regular cursor the user already has going on. But how would that happen?

In several years of surfing with Mozilla/Seamonkey I've never had the cursor become animated. If it did I would have immediately found a way to prevent it, because I find that sort of thing intolerably annoying.

This must not be confused with the substitute cursors that can be specified with stylesheets. With some CSS you can make a compliant browser use a question mark or crosshairs, for example, instead of the usual pointer. An ani cursor, I presume, would be actually moving on its own.

KachiWachi

join:2004-02-12
PA, USA

Re: Microsoft Security Advisory (935423) Vulnerability in Window

I guess you don't visit myspace often then swhx7.

swhx7
Premium
join:2006-07-23
Elbonia
·RoadRunner Cable

Re: Microsoft Security Advisory (935423) Vulnerability in Window

said by KachiWachi See Profile :

I guess you don't visit myspace often then swhx7.
Well, seriously, if you or anyone can give me a link to a page that has this in it (harmless .ani file that is), I'd like to check it out. PM is OK.
Forums » Up and Running » Security » Securitydinput.dll »
« Pimp my Tinfoil hat  


Friday, 04-Dec 23:26:28 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [145] Avast Antivirus Has Gone Mad
· [126] Comcast Makes NBC Universal Acquisition Official
· [104] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [101] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [83] FCC Ponders Moving From PSTN To IP Voice
· [81] Latest Consumer Reports Survey Not Kind To AT&T
· [74] Sprint Defuses GPS Privacy Media Bomb
· [73] The Bandwidth Hog Does Not Exist
· [70] Baltimore To Ban Lazy Cable Installs
Most people now reading
· False positive in Avast! or is it real? [Security]
· Windows 7 boot manager editing questions [Microsoft Help]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Google takes aim at browser redirection [Security]
· Farewell [Bell Canada]
· DNS options, what are YOU using? [TekSavvy]
· Evading throttling with uTP / uTorrent 1.9a [TekSavvy]
· Why do you switch distros? [All Things Unix]
· Using AirMax to provide triple play services? [Wireless Service Providers]
· IPComms Free DIDs now with sip registration maybe?? [VOIP Tech Chat]