Skip navigation.

風吹くままに

Drift in the wind.

November 2007

( Monthly archive )

Firefox v2.0.0.10 for Windows Is Now Available.

, ,

Download :
http://www.mozilla.com/en-US/

The following security issues were fixed.

MFSA 2007-39 Referer-spoofing via window.location race condition
MFSA 2007-38 Memory corruption vulnerabilities (rv:1.8.1.10)
MFSA 2007-37 jar: URI scheme XSS hazard

KAGUYA (SELENE) Image Taking of Earth-Rise/Earth-Set by HDTV

The Japan Aerospace Exploration Agency (JAXA) and NHK (Japan Broadcasting Corporation) have successfully performed the world's first high-definition image taking of an Earth-rise* by the lunar explorer "KAGUYA" (SELENE,) which was injected into a lunar orbit at an altitude of about 100 km on October 18, 2007 (Japan Standard Time. Following times and dates are all JST.)

Read more...

Vienna Vegetable Orchestra

AntiFreeze, freeware

,

I used a software which named AntiFreeze. It's free.

According to the product description, AntiFreeze offer a last recourse when you find your computer in a hung state.

When your computer has become unresponsive and you have not run even Windows Task Manager(CTRL+ALT+DEL), you can press the key combination, ALT+CTRL+WIN+HOME by default, to run AntiFreeze. As soon as you press the key combination, you will be shown the dialogbox, called the "Emergency Task Manager". The screenshot is below.

Read more...

Apple QuickTime Security Update

,

Update to version 7.3 or later.
http://www.apple.com/quicktime/download/

NOTE: This version is not supported on Windows 2000.

From SECUNIA


Description:
Some vulnerabilities have been reported in Apple QuickTime, which can be exploited by malicious people to disclose sensitive information, bypass certain security restrictions, and compromise a user's system.

1) An error in the handling of image description atoms can be exploited to cause a memory corruption when a user is enticed to open a specially crafted movie file.

2) A boundary error in the handling of Sample Table Sample Descriptor (STSD) atoms can be exploited to cause a heap-based buffer overflow when a user opens a specially crafted movie file.

3) Multiple errors exist in QuickTime for Java. These can be exploited by untrusted Java applets to disclose sensitive information or to execute arbitrary code with escalated privileges when a user visits a web page containing a malicious Java applet.

4) A boundary error exists in the processing of panorama sample atoms in QTVR (QuickTime Virtual Reality) movie files, which can be exploited to cause a heap-based buffer overflow when a user is enticed to open a specially crafted movie file.

5) A boundary error in the processing of PICT image files can be exploited to cause a stack-based buffer overflow when a user opens a specially crafted PICT image file containing an invalid length for the "UncompressedQuickTimeData" opcode.

6) Errors exist in the parsing of Poly type opcodes (opcodes 0x0070-74) and the PackBitsRgn field (Opcode 0x0099) when processing PICT image files. These can be exploited to cause a heap corruption when a user opens a specially crafted PICT image file.

7) An error in the parsing of CTAB atoms can be exploited to cause a heap-based buffer overflow when a user opens a specially crafted movie file containing an invalid color table.

Successful exploitation of these vulnerabilities allows execution of arbitrary code.

The vulnerabilities are reported in QuickTime prior to version 7.3.

Secunia has constructed the Online Software Inspector, which you can use to check if your local system is vulnerable. If you wish to scan your corporate network, then please refer to the Network Software Inspector.

Joke Site, "File Destructor"

, ,

The site where a broken file is made.

Want to play games on your Playstation but got a deadline for an exam or report that didn’t match your gaming ambitions?

Then you have come to the right place.


Please access HERE

"Virtual ImagePrinter"

, ,

When the print preview function is not provided in software and you want to confirm the print image, you can use "Virtual ImagePrinter".

Virtual ImagePrinter is based on the Microsoft universal printer driver. ImagePrinter can print any document which can be printed in your Windows system to the one or many BMP, PNG , JPG, TIFF or PDF files.
Download Virtual Image Printer driver

Project Admins: tariel
Operating System: MinGW/MSYS (MS Windows), 32-bit MS Windows (NT/2000/XP)
License: GNU General Public License (GPL)
Category: Office/Business, Printing, Hardware Drivers


Download:
http://sourceforge.net/projects/imageprinter

Sample:

Spybot S&D, Critical Glitch

,

Spybot S&D(v1.5.1) detect Smitfraud-C after you updated its definition file("Updates 31. October 2007"), but this detection is a false positive. If you delete this detection, Spybot S&D delete all registry keys that belong to "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall".

So, you cannot uninstall all programs with "Add/Remove Program".

I heard that Spybot S&D don't make a backup, even if you set a backup. In this case, if you don't use the registry backup utility like "ERUNT", you have to repair your registry with "System Restore".

It seems that this problem is due to the following registry key:

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"DisplayName"=""
"UninstallString"="\\TMPatch.exe /U:\"\""


If you delete these keys, Spybot S&D does not detect Smitfraud-C.
If you delete these keys, Spybot S&D does not detect the false positive of Smitfraud-C.