Windows WMF Metafile Vulnerability HotFixWindows WMF Metafile Vulnerability HotFix

Posted on January 3rd, 2006 by Juzman under Security

This week a new vulnerability was found in Windows: http://www.microsoft.com/technet/se…ry/912840.mspx. Browsing the web was not safe anymore, regardless of the browser. Microsoft will certainly come up with a thouroughly tested fix for it in the future, but meanwhile I developed a temporary fix - I badly needed it. The fix does not remove any functionality from the system, all pictures will continue to be visible. It should work for Windows 2000, XP 32-bit, XP 64-bit, and Windows Server 2003.

Technical details: this is a DLL which gets injected to all processes loading user32.dll. It patches the Escape() function in gdi32.dll. The result of the patch is that the SETABORT escape sequence is not accepted anymore. If for some reason the patch does not work for you, please uninstall it. It will be in the list of installed programs as “Windows WMF Metafile Vulnerability HotFix”.

Download: Windows WMF Metafile Vulnerability HotFix
Source: MSFN

Print This Post  Email This Post |

Leave a Reply

You must be logged in to post a comment.

 

Bad Behavior has blocked 106 access attempts in the last 7 days.