Determina Fix for CVE-2006-1359 1.0
Based on the same technology used in the VPS LiveShield product, Determina has engineered a standalone fix that provides free and immediate protection to users worldwide that need to protect systems from related attacks until such time as Microsoft issues its own patch.
|
Based on the same technology used in the VPS LiveShield product, Determina has engineered a standalone fix that provides free and immediate protection to users worldwide that need to protect systems from related attacks until such time as Microsoft issues its own patch. Note that current Determina VPS customers do not have to apply this patch as they have been protected against this attack without the need for any update.
The source code of the Shield is included in the download for review by any independent security expert.
Determina Fix is a free and useful runtime fix for the IE createTextRange() vulnerability. It can be applied to Windows 2000, XP and 2003 systems running Internet Explorer 5.01 and 6.0. The vulnerability lies in the MSHTML.DLL rendering engine which is loaded into many applications for HTML rendering, including but not limited to Internet Explorer and Microsoft Office.
The installation of the fix consists of adding the fix DLL to the AppInit_DLLs registry key in
HKLMSOFTWAREMicrosoftWindows NTCurrentVersionWindows
The MSI installer will do this automatically. This will enable loading this fix DLL into all the vulnerable applications. The fix does not modify any file or application on the disk. It will only modify the vulnerable applications and DLLs in memory. The fix will not be applied to any processes that are running at the time of the installation. To enable the patch, you have to restart IE, Outlook and any other process that need to be protected. After the installation, run status.exe to verify that your system is protected. If you have a version of MSHTML.DLL that the patch does not support, status.exe will report that the protection is not active.
Once Microsoft releases an official patch and it is installed by the user, the Determina Shield will not be applied any more. Determina recommends uninstalling this fix even though keeping it active will not affect the system. To uninstall the fix, use “Add Remove Programs” in the Control Panel. To uninstall it manually, remove the DLL from the AppInit_DLLs key and restart your machine. You can then safely delete the DLL.
This tool requires administrative privileges on the vulnerable machines in order to install the fix.
Requirements
tags the fix internet explorer the vulnerable the installation will not the patch you have that the the dll does not microsoft internet status exe this fix
Download Determina Fix for CVE-2006-1359 1.0
Download Determina Fix for CVE-2006-1359 1.0
Authors software
Determina Fix for CVE-2006-1359 1.0
Determina
Based on the same technology used in the VPS LiveShield product, Determina has engineered a standalone fix that provides free and immediate protection to users worldwide that need to protect systems from related attacks until such time as Microsoft issues its own patch.
Similar software
Determina Fix for CVE-2006-1359 1.0
Determina
Based on the same technology used in the VPS LiveShield product, Determina has engineered a standalone fix that provides free and immediate protection to users worldwide that need to protect systems from related attacks until such time as Microsoft issues its own patch.
eEye’s Temporary Workaround 1.0
eEye Digital Security
eEye Digital Security is advising customers to the existence of exploit code that targets a critical security vulnerability in Microsoft Internet Explorer.
Patch for ANI Cursor Vulnerability
eEye Digital Security
An unspecified vulnerability exists within Microsoft Windows which may possibly allow for a remote attacker to execute arbitrary code under the context of the logged in user.
DCOMbobulator 2.01
GRC
What is DCOM?
Windows employs a component-based system to help programmers manage Windows' complexity.
Windows Cumulative Patch for Internet Explorer Aug
Microsoft
August 2002, Cumulative Patch for Internet Explorer (Q323759) eliminates all previously addressed security vulnerabilities affecting Internet Explorer, well as additional newly discovered bugs.
Microsoft WMF Security Patch
Microsoft Corporation
A remote code execution security issue has been identified in the Graphics Rendering Engine that could allow an attacker to remotely compromise your Windows-based system and gain control over it.
Microsoft Virtual Machine 5.00.3810
Microsoft Corporation
Microsoft Java Virtual Machine for Internet Explorer lets you view java applets on internet pages.
Microsoft Application Compatibility Toolkit 5.0
Microsoft
ACT (Application Compatibility Toolkit) will enable IT professionals, ISVs (independent software vendors) and software developers that work in a corporate environment to determine, before rolling out within the organization, whether their applications are compatible with a new version of the Microsoft Windows operating system.
Patch Parent Paths 1.0.0.0
BullZip.com
Patch your ASP applications to run on an IIS without the Enable Parent Paths option set.
PATCHifier 1.0
TEFASOFT
PATCHifier is a very customizable patch organizer/installer for the Windows platform.
Other software in this category
VisualICE Report Utility 4.7
Visualize Software
VisualICE Report Utility - so what do you do if you would like to know more about what the hacker tried to do, who he is, where he`s from or how to report him to the proper authorities?
That`s where VisualICE Report Utility comes in.
Gopher Smoker .06
PivX Sollutions, LLC
PivX Solutions, LLC released a program appropriately named `Gopher Smoker`.
Bouncer for Windows 1.0 RC6
Chris Mason
Bouncer is a network tool which allows you to bypass proxy restrictions and obtain outside connections from an internal LAN.
Slap 1.2.2.0
Security Software
If your like me you run firewall software that tells you when someone tries to access your system.
VisualZone Report Utility 5.7
Visualize Software
VisualZone Report Utility is a report utility and an intrusion analyser for ZoneAlarm and ZoneAlarm Pro.