don't click here

Security hole in every 32-bit version of Windows NT since 3.1

Discussion in 'Technical Discussion' started by GerbilSoft, Jan 20, 2010.

  1. GerbilSoft

    GerbilSoft

    RickRotate'd. Administrator
    2,972
    86
    28
    USA
    rom-properties
    http://tech.slashdot.org/story/10/01/20/13...ce-NT?art_pos=3
    64-bit versions are unaffected, since they don't support running 16-bit DOS or Windows programs. The only workaround for 32-bit systems is to disable the VDM subsystem, which results in being unable to run 16-bit programs.

    Also, this vulnerability was reported to Microsoft in June 2009, and they chose to do nothing about it. Classy.
     
  2. Overlord

    Overlord

    Now playable in Smash Bros Ultimate Moderator
    19,556
    1,127
    93
    Long-term happiness
    Wow. That's an impressive range of affected OSes. Good thing my 7 install I'm in the middle of migrating to right now is 64bit =P
     
  3. Infiniti

    Infiniti

    ↑ & ↓ & ↻ Member
    476
    0
    0
    UK
    Well, I was planning on upgrading to the 64-Bbit version of Windows 7, this weekend. I was/still am holding off for a response to a question I asked on another forum, reguarding SSF (Sat emu). I heard that some games suffer on the 64-Bit OS. Beyond that, I'm all for the move.
     
  4. Ell678

    Ell678

    Am I Annoying You? Member
    2,382
    26
    28
    Barrow, England
    Sonic Incursion
    The only games I have that give me a problem on 64bit 7 are the Worms games, and Sonic Riders. All emulators run fine, except the Dreamcast. None others worked except NullDC, and even that needed tinkering with. Not sure about the Saturn emulation, but just felt like throwing this out there for anyone else intrested in 7.
     
  5. SeanieB

    SeanieB

    Chief Server Monkey Administrator
    457
    39
    28
    San Diego, CA
    Fixing Sonic Retro
    NullDC has worked for me on every version of 64 bit windows I've tried...

    Also typical microsoft, this is why I quit using windows full time if I can.
     
  6. Mr. Ksoft

    Mr. Ksoft

    Member
    Deal-breaker.

    I'm sticking with 32-bit for a while. (Probably helps that I just finished getting my new install of 7 32-bit all set up how I like it, and I think my computer would probably suffer a little due to having only 3 GB of RAM)

    On the plus side, from what I've gathered, you need local access before this exploit is useful due to how NTVDM executes code. So in order to exploit this vulnerability remotely, you've first got to use another normal Windows vulnerability to get there and plant the code.
     
  7. SegaLoco

    SegaLoco

    W)(at did you say? Banned
    I gotta learn how to do this, I wanna rip up on all the computers at school. =P
     
  8. SwissCM

    SwissCM

    Member
    I don't have a problem with Worms Armageddon (provided it's patched and everything).
     
  9. To run the (older) worms games, all you gotta do is kill the explorer.exe task and start the game via the task manager.

    Cheers :)
     
  10. BiafraRepublic

    BiafraRepublic

    SSR DJ, longtime TSS staffer, and all-around nice/ Oldbie
    29
    0
    0
    Unincorporated Galveston County, TX, USA
    A/V Hijack: Mondays 6-8PM GMT/BST on SSR - http://j.mp/ssrsite
    That, or use a Windows XP SP3 virtual machine with host only networking (best VM to use for this would be Sun VirtualBox)
     
  11. Yes. WinXP Mode doesn't work with W:A for some reason.
     
  12. Syniphas

    Syniphas

    also known as Svetlana Member
    28
    0
    0
    Brazil
    That bug is older than me

    good job microsoft
     
  13. On top of that:

    Windows 98 is more secure. Hooray!

    *runs*
     
  14. What I think is amazing, is how long this bug went unnoticed. Being around for so long, I would have expected there to by a huge amount of exploits in the wild taking advantage of this.
     
  15. Spanner

    Spanner

    Used and Worn Out Member
    3,372
    183
    43
    United Kingdom
    Falling asleep for once
    Hahahahahaha, oh wow. Microsoft are lazy fucks.

    As for the whole 32-bit/64-bit situation, I'm using 32-bit Windows on both computers that I use (my laptop is 64-bit capable though, I'd max my RAM up to 4GB before I do anything). I'm considering building a desktop in the summer and that will probably be 64-bit in order to get with the times. =P
     
  16. GerbilSoft

    GerbilSoft

    RickRotate'd. Administrator
    2,972
    86
    28
    USA
    rom-properties
    Windows 98 doesn't have any sort of security infrastructure to exploit. *Everything* runs as Administrator.

    This is probably why no one noticed this before, too. Everyone runs as Administrator on Windows, so privilege escalation isn't needed for massive pwnage.
     
  17. Banoon

    Banoon

    yes Member
    577
    0
    16
    Auckland, New Zealand
    Yeth (hack)
    Probably a stupid question, but how do you turn off the MSDOS and WOWEXEC subsystems? And what important things need 16-bit to work, anyway?
     
  18. nineko

    nineko

    I am the Holy Cat Tech Member
    6,386
    537
    93
    italy
    Many of the programs I use.

    However, should I disable the NTVDM (or switch to 64-bit), I can just run them in dosbox, so that's not a big problem.
     
  19. Windows 3.x support is so-so in Dosbox....

    What you can also do, is get Windows 7 and run your 16-Bit apps in Virtual XP mode :V
     
  20. NoNameAtAll

    NoNameAtAll

    MY HAT'S ON FIRE. HALP! Moderator
    566
    7
    18
    Fuck you, I run as a standard user. :v:

    'Course, I'm running 64-bit, but even on my Windows Vista and 7 VMs, I run as a standard user.