Windows XP SP2 flaw complex but dangerous

By Dan Ilett, Special to ZDNet
02 December 2004 09:14 AM
Tags: security, sp2, windows, flaw, xp, exploit, bypass, setting
Security experts have identified a modified exploit that can target computers running Windows XP SP2.

Although the exploit is tricky to perform, it combines two vulnerabilities in Internet Explorer 6 with a series of ActiveX exploits to break security settings in computers running SP2. It runs when a user moves a file or an image from one part of a Web page to another, but in the process the exploit downloads code to machines that circumnavigates Local Computer security settings in SP2.

Researchers at Danish security company Secunia have labelled the vulnerability as "highly critical" because it allows hackers to access local resources and bypass security features in Windows XP SP2.

"This is the most serious vulnerability for SP2 that we have the moment," said Thomas Kristensen. "The problem is that by exploiting this vulnerability in IE it's possible to drag a file into the local security zone and change the settings. On an SP2 system, this shouldn't be a problem, but it is still possible to bypass the security with an Active X control."

The company pointed out that Windows XP SP2 does not run Active Scripting in the Local Computer zone, but by performing a series of Active X exploits it is possible to bypass those setting in SP2.

"It's a series of events you have to perform before you are able to bypass security settings," said Kristensen. "It is complicated. But they are several minor issues that can be compromised so it's possible to circumnavigate the security settings."

Kristensen added that SP2 was supposed to tightly lock down the security issues with IE 6, but this was clearly a compromise in it security. He said that the solution was to disable the drag-and-drop or copy-and-paste options on Internet Explorer and set the security level to "high" in the Internet zone.

Advertisement

Talkback 2 comments

    Service Pack 2 is no better. I ...Anonymous -- 02/12/04

    Service Pack 2 is no better.

    In my experience with service pack 2 I would not recomend it at all.

    For starters I have been hacked through 2 firewalls within 3 days of a rebuild to go to service pack 2. The security features are a nightmare for gamers who want to tweak performance by disabling certain services and apps.

    Typical Microsoft rubbish, Once agin they are not thourough in their work.

    I personally dont care hiow many lines of code ther are as it is irrelavant, they just need to make it safe no matter what and not release it untill it works with feature which suit all situations.

    I made a big mistake last year ...Anonymous -- 03/12/04

    I made a big mistake last year letting my Norton Internet Security expire because I thought Microsoft was enough protection and I ended up hiring a local technician to clean my disk which was infected with 47 viruses. Now I have Norton firewall working. It seems to block everything that it considers an intrusion. My question is about gaming. Everytime I download a game from Real Arcade I am getting a HIGH RISK warning from Norton's program about the WELCHIA WORM SCAN. I used the tracking feature and it tracked it back to an address in Washington State. This keeps happening over and over. What is this? And should I worry about it?

Add your opinion

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Suzanne Tindal Love me, tender
    Considering how expensive and drawn-out tender processes can be to solve problems that might be very immediate, it's little wonder that the Victorian Police IT department tried to work the tender exemptions system.
  • Array 2009 funding drought rolls on
    For Australian start-ups looking for venture capital, 2009 was a very bad year. 2010 may be no better.
  • Array Can not-so-smart meters help the NBN?
    It was interesting to witness Conroy's recent enthusiasm to spruik the NBN's role in supporting the Smart Grid, Smart City initiative. What a pity that Conroy hadn't yet seen the damning report from the Victorian auditor-general about that state's smart-meter roll-out.
  • More blogs »

Tags

Back to top

Featured