Ancient DOS bug gets squashed
What can we say about you, DOS? You've rocked the personal computer world and changed the way we all feel about white on black console screens. Your retirement is a well deserved one and... wait, you're getting a patch? Amazingly, Microsoft is fixing a bug that has existed in the Windows Virtual DOS Machine (VDM) subsystem since it was added to Windows NT way back in the simple days of 1993, when flannels were everywhere and 32 bits were more than we knew what to do with. Google engineer Tavis Ormandy found the exploit a few weeks ago, which grants an attacker the ability to run code in kernel mode, and a critical update has been issued to fix this most aged of vulnerabilities. Perhaps now, DOS, your work is finally done.
























Well that's good to know, but now I'm going to have nightmares because of that image.
@EljhHck
OMG...I can't un-see that!
@MGarvey I love his chin... it's so... long...
@EljhHck
Yea, thanks Engadget!
@friendly0ne
Long chin, parasite, must be Jay Leno...
what IS that image??
@ColinScatt
I want to know too!
Looks upside down.
@ColinScatt
Right-click --> View Image --> "Prehistoric Bug".
I guess it's some sort of prehistoric bug.
@ColinScatt It is a species of Spiny Assassin Bug.
http://www.uglybug.org/07dex.shtml
@ColinScatt http://www.darkroastedblend.com/2008/07/they-bite-ugly-bug-faces.html
found using http://www.tineye.com
@Oli +1 for TinEye. Awesome link, thank you.
@ColinScatt : Its a caveman penis.
@Oli
damn! beat me too it. i love tineye, this is the first time i got so many results!
@Mr Blurrycam
For those who've just discovered TinEye - there's also a Firefox extension that adds a 'Search Image on Tineye' entry into the right click context menu
https://addons.mozilla.org/en-US/firefox/addon/8922
@ScottishDan
cheers dude! :)
What is that monstrous beast?
And DOS, how I miss you on my old butter-fly keyboard IBM.
Where art thou, buried within mine Windows 7 Kernel. I know you still shine.
@blacfalcon
http://1.bp.blogspot.com/_YacG59Ec_l4/SivMlG-7iiI/AAAAAAAAAR4/Lhj3AMBWTyo/s400/micro_10.jpg
Here is it's cousin.
@blacfalcon Ha, that 'monstrous beast' could probably fit him and 1000 of his friends on 1 of your eyelashes :p
@blacfalcon
I'm completely consumed with jealousy at the fact that you had a butterfly-keyboard ThinkPad 701... if only I had been wiser (and wealthier) at the age of, er, 5 (in 1995), I would have bought one.
Okay I'm scared! What is that?
@Pookiewood Thats what I thought, friggan gross.
I bet it's an SEM of a bed bug or something.
@reductant
I also think it's a SEM image, but I can't figure it out!
That's nothing. A dude named Otto Moerbeek fixed a 33 years old bug in BSD/yacc back in 2008: http://tinyurl.com/6fdcxk
Apple doesn't need to patch OS'es from '93 because MacOS X has little to no relation (in terms of code) to MacOS Classic. This bug might be part of an ancient code-base, but nevertheless exists in modern Microsoft Windows releases.
@thoughtmonster Wouldn't that BSD bug have been in OS X? It's my understanding that OS X is based on BSD and that Cocoa is based on NextSTEP, which both have pretty old roots.
Looks more like a cross between my mother in law and those gigantic killer sandworms in Beetlejuice.
I'm not surprised it took them this long to find the bug, have you seen how small it is?! It looks like Microsoft fixed the bug by poking it's eyes out, too.
That spiky blind long-tongue goblinsnake looks sick with its swollen lymph nodes like that.
it's a "Spiny Assassin Bug". what a name.
http://www.uglybug.org/
@skip Uhhhh thanks....I think. Now my nightmares will have a name! O_o LOL!
Thats a neat website though.
Suddenly, I can't stop screaming.
Looks like a muppet. Made by Satan.
What is that picture....
I still use the command prompt most days running one script or another. It hardly seems like DOS has gone anywhere.
Looks like my ex.
ZIIINNG!
@Nitesh If that looks like your ex then you have a poor taste in looks
@Nitesh
Shots fired!! shots fired!!
Hurry rush Nitesh to the hospital!!!! Seems like your ex found ya @_@
@bob e
Well actually a command prompt and dos aren't the same thing.
DOS refined? Compared to *nix? In other news, Windows gets a shorter 'users' folder, admin account, but still lacks many security features.
DOS refined? Compared to *nix? In other news, Windows gets a shorter 'users' folder, admin account, and a security fix.
And I was just about to go to sleep...
@Bioran23
For the record, Hong Kong resident here.
@Bioran23 Me too -- just landed in Hong Kong. Thanks for this, Tim! I'll probably get panda eyes tomorrow.
The hideousness of that bug will haunt my dreams forever!
As any true DOS aficionado knows:
DOS ain't done until Lotus won't run.
Great, now they can move on to the just slightly younger bugs in Microsoft Word.
What about the "other" dos exploit:
Echo y|del *.*>nul
... my favourite :)
Well I for one think the prehistoric bug is strangely cute.
I'm wondering if this is the AT.exe priviledge escalation exploit...
I mean it isn't exactly old, but I'm not sure it's been around since 3.1!
(for those who don't know, you can use the at command from a command window in a guest account to open a command window with system level priviledges).
I fixed this where i worked by using a GPO to prevent access to the at command for anyone but admins. Seems it's pretty trivial to bypass security in windows!