On MovieTome: Highest Metascore Streaming Movies
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 14 of 91:
Next »
« Previous
Wait just a moment...
Most of us had a LONG argument/discussion/no rules cage match yesterday on this very same subject in regards to the Linux worm issue.

What I would like to interject here is, didn't anyone learn anything yesterday?

Yesterday, an old, already patched, insignificant possibly exploitable problem is identified on Linux. The MS crowd goes wild. But wait, that exploit allows for the possiblity of a backdoor.

Fast forward today, a very similiar situation exists, but this is only a 'flaw'? What was that again?

The linux exploit requires three seperate software packages to be installed and running. The software has to be older than a certain release, and to properly fulfill it's intended goal, the worm MUST be able to exploit all three issues at once. If one of the packages are different, or if two have been patched with the newest code then all bets are off and the worm exploit is ineffective.

Again fast forward, we have here today a known 'flaw' in windows that affects the OS through graphic file types. This 'flaw' gives instant root (administrative for you MS guys) ownership of that box. And like the Linux software, this has already been patched. However this is an OS core process, wherein the Linux exploit is software only, unable to touch the core OS.

So I guess what I am confused about is, how can an 'exploit' of Linux software, that requires very specific packages to be installed under just the right conditions that does not allow root access be called an 'exploit', when a Windows 'flaw' that allows complete control over that box's Operating System be muted to the word 'flaw'?

We're all intelligent. I, like most here, have an extended degree from an accredited university, but for the life of me I do not understand how one is an 'exploit' and one is only a 'flaw', when the 'flaw' allows for potentially more destructive abilities...

***as a disclaimer: absolutely yes, I am a Linux person make no other judgements about that. In my opinion it is the best OS in the world. I understand that MS people have their opinions as well and BSD'ers too, as well as MAC folks and the like.
This is not a flame, this is truely a want for an honest explaination. If you can interject thought-inducing comments, they are welcome, trolls can move along...
Posted by: yourkiddingright   Posted on: 11/09/05 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

The real critical flaw .....  An_Axe_to_Grind | 11/08/05
Microsoft Has an Image Problem  schneb | 11/09/05
No it's a talent problem ...  An_Axe_to_Grind | 11/09/05
That's why the irrelevant PhP vulnerability was pushed so hard  michael_t | 11/08/05
You do know the difference ...  ShadeTree | 11/08/05
he he he ... my good friend  michael_t | 11/08/05
Substitute "that" for "if" and...  ShadeTree | 11/08/05
Whoa nelly!  Jeff Spicoli | 11/08/05
Kudos Shady-greymater! Did think that all by yourself? That must took a  michael_t | 11/08/05
Message has been deleted.  Jeff the god of biscuits | 11/08/05
I though my big foot up  michael_t | 11/09/05
So let me get this straight.  ShadeTree | 11/09/05
Mike T  Jeff the god of biscuits | 11/09/05
Wait just a moment...  yourkiddingright | 11/09/05
Pretty simple actually  IT Scion | 11/09/05
Ok, so is this correct then...  yourkiddingright | 11/09/05
Sure  IT Scion | 11/09/05
Last time I checked the PhP flaw  michael_t | 11/09/05
Just like you  IT Scion | 11/09/05
You resort to semantics of the colloquial meaning of words  michael_t | 11/09/05
Wow..  IT Scion | 11/10/05
nothing like fearing ever 'href' click  nynetsec | 11/08/05
Image-handling flaws put Windows PCs at risk  Loverock Davidson | 11/08/05
I thought so!  stormdoor | 11/08/05
I know so  Loverock Davidson | 11/08/05
If this were a flaw in linux...  Sxooter_z | 11/08/05
Captain Obvious strikes again!  Loverock Davidson | 11/09/05
I know so by Loverock Davidson  btljooz | 11/09/05
Whelp...  Cardinal_Bill | 11/08/05
I think what you meant to say was....  tic swayback | 11/08/05
Not widespread, not a problem, already patched  rpmyers1 | 11/08/05
a couple of Questions  wexwimpy@... | 11/09/05
well what was balmer saying about been different  toxicfreak | 11/08/05
yadayada top cost yadyada bottom quality yaDA ... nt  michael_t | 11/09/05
Adult Section  MarkieMark | 11/09/05
"Been Different"?  MarkieMark | 11/09/05
Ah the irony!  Linux Advocate | 11/08/05
A quote from Loverock...cuz he's wize like that...  techboy_z | 11/08/05
Very fun day indeed  Loverock Davidson | 11/09/05
LOL... Like this is SURPRISING news...  asrai | 11/08/05
The entire Windoze O/S code is a SECURITY FLAW...  realitycheck101 | 11/08/05
Shut up troll  Jeff the god of biscuits | 11/08/05
Way to go!!!  dsentman@... | 11/09/05
UK Law  MarkieMark | 11/09/05
The ideas of 'fitness for consumer usage' and quality  michael_t | 11/09/05
The ideas of 'fitness for consumer usage' and quality  wjarvis@... | 11/11/05
RE:The entire Windoze O/S code is a SECURITY FLAW... by YEAHRIGHT  btljooz | 11/09/05
The entire Windoze O/S code is a SECURITY FLAW...  zzbottom | 11/20/05
WMF? Is this a Web Format? Not Where I'm Sitting  PMC-CON | 11/08/05
That Would Be WMF File ... Damn Typos  PMC-CON | 11/08/05
Hackers will always be a reality  erniem1970@... | 11/08/05
Just In Time...  The Rifleman | 11/08/05
Time to sing Kumbaya  kray_z | 11/08/05
Were You In Illinois?  PMC-CON | 11/08/05
Champaign?  MarkieMark | 11/09/05
Mike Cox 2 ??? . . . Try harder - I'll give you a 3.2 (nt)  Plain Logic | 11/08/05
Ya think??? Hardly Mike Cox (2 or otherwise) (nt)  mdsmedia | 11/09/05
Firing Policy  MarkieMark | 11/09/05
hmmm, what does anyone think?  u2in99 | 11/08/05
The Windows architects are responsible  kevin.cline@... | 11/08/05
first sensible message in thread  mdsmedia | 11/09/05
Nothing is 100%  fragos | 11/08/05
WINDOWS VS VISTA  fakir005@... | 11/08/05
Anyone here ever study statistics?  Jeff the god of biscuits | 11/08/05
Todays critical flaws from SecuritySpace.com  Jeff the god of biscuits | 11/08/05
Nice list.  Cardinal_Bill | 11/08/05
And...  Hugh Jass | 11/08/05
Shut up troll  Jeff the god of biscuits | 11/08/05
Troll?  yourkiddingright | 11/09/05
YHBT HAND  Jeff the god of biscuits | 11/09/05
lmfao  IT Scion | 11/10/05
Irony escapes some  Jeff the god of biscuits | 11/08/05
Did irony escaped you when you posted data that  michael_t | 11/09/05
Hey Mike  Jeff the god of biscuits | 11/09/05
And your point would be what?  Chad_z | 11/09/05
I think  IT Scion | 11/09/05
You "think" ? Isn't that a stretch ? ...;) nt  michael_t | 11/09/05
Shhhhhhh!!!!  Jeff the god of biscuits | 11/10/05
Sounds Fishy To Me...  bmcgrath | 11/08/05
The graphic file is just the vehicle.  Hugh Jass | 11/08/05
Its not a flaw  Outside T. Box | 11/09/05
Not good  IT Scion | 11/08/05
So, while on this image handling flaw  Boot_Agnostic | 11/09/05
(nt)There have been similar image handling flaws for other platforms.  toadlife | 11/09/05
Oh Boy  tslocum7 | 11/09/05
Oh Boy  tslocum7 | 11/09/05
My question STILL stands....  btljooz | 11/09/05
My questions are  Boot_Agnostic | 11/09/05
My Question is...  The Rifleman | 11/09/05
God! how out dated! Old News! New File Formats  Behold | 11/11/05
Simple fix go to fire fox  opensource-geek | 12/09/05

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement
Click Here
  • Smart Tech Expert advice on innovations in healthcare and the green technologies that make it happen. Find out more
  • Smart Business Discussion and advice on management issues that revolve around making your world smarter and more useful. More Smart Advice
  • Smart People The best and worst moves in the management and strategy trenches. Learn More