| |
BGonline.org Forums
NAV warns against dl.downloadusercontent.com
Posted By: Mike Petch In Response To: NAV warns against dl.downloadusercontent.com (Taper_Mike)
Date: Thursday, 11 April 2013, at 9:17 p.m.
It would be more than plausible (although unlikely) to put a virus in a rollout file if it were to found that XG had an exploitable stackoverflow or buffer overrun vulnerability. If that scenario existed then it would be possible for an XG file (carefully crafted by crackers) to be loaded (by XG) and for a virus/trojan code to be run. Now, do I know of any such exploit? No.
So the likelihood is low but technically not impossible. This would be the same way that in the past a carefully crafted html file and content could be exploited to run arbitrary code on a persons PC. An example of this:
http://technet.microsoft.com/en-us/security/bulletin/ms03-023
| |
BGonline.org Forums is maintained by Stick with WebBBS 5.12.