Freedom The Open Source Way Contribute Articles or News to OSForgeOSForge HomeLogout from Forums
Contacting OSForgeOSForge HomeAbout OSForge
  

Root
Contribute News
Learning Corner
Linux Distributions
Linux Common FAQ's
Discussion Forums
Community Gallery
Links Directory
Search OSForge
Networking
Industry Updates
Linux & Open Source
Opinions
Press Release
Programming
Security
Web Development

White Paper
Plat'Home Unveils Winners of “Will Linux Work?” Contest
Zenoss Core Recognized as Best Open Source Network Monitoring Solution
LinMin™ Joins Intel® Certified Software Solutions Program
xTuple™ ERP 3.0 Wins “Best Business Application” At LinuxWorld Conference & Exp
Holland Computing Center - Rocks+Moab Provides Windows/Linux Cluster Solution
LogMeIn Launches Mobile Plug-in for Linux
FuseMail Selects Funambol’s Open Source Push Email and PIM Sync Solution
Zenoss Expands IT Management Solution for Managed Service Providers
Moab Workload Manager Claims Title as World’s First Petaflop Scheduler

View More

Microsoft's borrowed zlib causes problems
By : Eric Lim [www] Find more article by Eric Lim on Security
Thursday the 14th, March 2002 at 11:05 PM (EST)
Send this Story to a Friend Readers TalkBack (0) - 388 Reads

Printer Friendly Page Printable format
Send this Story to a Friend Foward to Email

The zlib library has been used as a fundamental components in Linux and it obviously can be found in any *NIX environment. From a report on Thursday, researchers reported that Microsoft had at least nice applications, such as IE and FrontPage, are likely incorporate borrowed code from the compression library and might cause the same security risk.

A group of researchers reported on this early Thurdays that they had found at least nine M$ applications, such as IE and FrontPage, could possibly be attacked because of the security flaw in the open source compression library that have been annouced earlier. Later on, M$ representatives said that the software giant's security response team has started the investigation of this issue to ensure whether or not those M$ applications would be vulnerable.

"It's not a foregone conclusion that the applications are affected," a company representative said.

The zlib has been using by *NIX environment for long, and could be found in any of these machines. Because the some of the codes have been adopted, M$ apparently made himself again into the security flaw issue.

By the list that has been annouced by the Members of the open-source compression project, it shows that there are about 600 applications that are affected by this security flaw, and nine M$ applications are on the list, too. There are Microsoft DirectX 8, FrontPage, the next-generation Graphics Device Interface, InstallShield, Internet Explorer, Office, NetShow, Visual Studio and Messenger. This is another nightmare for M$ because the next-generation Graphic Device Interface is a part of Windows XP, which means the operating system itself could be affected.

By the way, this is not the first time we have heard that M$'s issue of borrowing source code. Hence let's wait until next notice from M$ about this issue and see what they will say to clarify this security flaw.


  
Reader Rating from 1-5

 

Poor very 

1

2

3

4

5
 very Excellent

Talkback

Post Your Talkback | View All Talkback (0 Posted)


 Currently there are no Talkback posted on "Microsoft's borrowed zlib causes problems", Click here to be the first to post a talkback.


 
Scroll Up

   About | Term of Use | Privacy | Contact us | Tell a Friend | Advertise  

OSForge News RSS Feed