# Friday, December 19, 2003

Open Source O

Open source outfit releases patch for IE vulnerability.  What a kind, festive thought... [via The Register]

Yep, the source for the patch indicates a) All your navigations are converted to navigations to http://www.openwares.org/cgi-bin/exploit.cgi and b) it has more buffer overrun opportunites in fewer lines of code than I've seen in a while, c) it probably stops forms posting working and d) the install program must be doing more that they have release source for (I presume it installs as a BHO). But, they've got a lot of publicity.

Avoid.

#    Comments [0] |
Comments are closed.