WMF exploit testing on Windows 98



I had hoped to get in another test of Windows 98 with yet another WMF viewer (tried Kodak imaging, and irfanview). So far I haven’t seen a way that the WMF exploits can work on Windows 98 SE. I’m running out of time before I have to run to some computer service appointments and maybe will be able to pick up again this afternoon/evening. Larry Seltzer had a post this morning that earlier versions of Windows might not be as vulnerable because they had no default WMF viewer, but with a default WMF viewer they may be susceptible. I’m still looking for a WMF viewer that makes the exploit possible on Windows 98 SE.


Again, I’ll leave this thread open to comments in case someone else finds a combination that is vulnerable. Previous posts on the issue with WMF and Windows 98 on my site are:

http://www.averyjparker.com/2006/01/02/windows-98-and-the-wmf-exploit/
http://www.averyjparker.com/2006/01/01/version-2-of-the-wmv-exploit-vs-windows-98-se/
http://www.averyjparker.com/2006/01/01/more-wmf-exploit-testing-on-windows-98/
http://www.averyjparker.com/2006/01/01/wmf-exploit-and-windows-98/

Related Posts

Blog Traffic Exchange Related Posts
  • Windows XP and IPP printers I really like printers with their own built in print server. They can be plugged into the network and some operating systems can just find them. Unfortunately most of the time Windows doesn't just find an IPP printer. One tool that can be handy for such a time as this......
  • WMF 0-day exploit There seems to be a 0-day exploit involving WMF (Windows Meta File's) according to SANS. Here's their lead-in Just when we thought that this will be another slow day, a link to a working unpatched exploit in, what looks like Windows Graphics Rendering Engine, has been posted to Bugtraq. It's......
  • More testing on the second WMF exploit After my Windows 98 tests which failed to exploit the system with either the first or the second vulnerability, I started wondering how well the antivirus companies were doing in detecting this second exploit variation. I had setup and updated metasploit so I could test my Windows 98 SE install......
Blog Traffic Exchange Related Websites
  • Pacific Grove Golf Course, Pacific Grove, CA Pacific Grove Golf Course is located in Pacific Grove, CA Phone: 831.648.5775 Website: http://www.ci.pg.ca.us/golf/default.htm Course History: This is a beautiful municipal course that has been voted one of the best municipal courses in the nation. The value is absolutely unbeatable and the old English links style of play is......
  • My Prosper Internal Rate of Return Update (End of Jan 07) -- 1.67% I am tracking my Prosper internal rate of return (IRR).  As a reminder my prosper IRR is defined as actual cash flows up to the current month.  The current month is positive account balance minus monies added minus loan values in default. I currently have 0 loans in default and......
  • LDS General Conference: What I Learned or Gained from My Fellow Twitterers First off, let me start by saying, I knew that there would be tons of people online watching and tweeting General Conference this weekend. Second, I really wanted to be part of it, and I knew that it could be huge. Between Twitter and Google, the TOP TRENDS were LDS.org......
PDF24    Send article as PDF   

Similar Posts


See what happened this day in history from either BBC Wikipedia
Search:
Keywords:
Amazon Logo

3 Responses to “WMF exploit testing on Windows 98”

  1. caius Says:


    The following HTML snippet turns InternetExplorer 5.0 into a WMF viewer; doesn’t work with Mozilla. Only tested with valid WMF files;

  2. caius Says:


    [less than] img src=”file.wmf” alt=”not vulnerable” [greaterthan]

  3. Avery Says:


    I tested that possibility – it didn’t render, didn’t trigger the exploit. IE treated it like a broken image.

Leave a Reply

You must be logged in to post a comment.


Switch to our mobile site