Ir iznākusi jauna apakšversija Microsoft DirectX 9.0b. Par iepriekšējo var palasīt arhīvā Microsoft DirectX® 9.0 Final. Diemžēl sīkāku informāciju par šo versiju neatradu, lai gan faila datums ir 17.jūlijs.
LongT šajā sakarā pirms pāris dienām atsūtīja norādi uz Neowin.net lapu kurā spriedelēja par noklīdušām versijām.
Lejupielādēt var no Microsoft Akamai [LV] servera Microsoft DirectX 9.0b 32 652KiB kā arī iekš download.pods.lv varēs atrast spoguli. Ja nu pēkšņi Latnets atliecas (joks) 🙂
Papildināts.
Izrādās, ka tas viss prieks ir dēļ kārtējā MS03-030: Unchecked Buffer in DirectX Could Enable System Compromise.
DirectX is made up of a set of low-level Application Programming Interfaces (APIs) that is used by Windows programs for multimedia support. The DirectShow technology in DirectX performs client-side audio and video sourcing, manipulation, and rendering. There are two buffer overruns that have the same effects in the function that is used by DirectShow to check parameters in a Musical Instrument Digital Interface (MIDI) file. These buffer overruns may cause a security vulnerability because it would be possible for a malicious user to try to exploit these flaws and run code in the security context of the logged on user.
An attacker could seek to exploit this vulnerability by creating a specially crafted MIDI file that is designed to exploit this vulnerability and then host this file on a Web site or on a network share, or send it by means of an HTML e-mail message. If the file was hosted on a Web site or network share, the user would have to open the specially crafted file. If the file was embedded in a page, the vulnerability could be exploited when a user visits the Web page. If the file is sent in an HTML e-mail message, the vulnerability could be exploited when a user opens or previews the HTML e-mail message. A successful attack could either cause DirectShow or a program that is using DirectShow to fail, or it could cause an attacker’s code to run on the user’s computer in the security context of the user.
Kas tas tads AKMAI un ka vins darbojas???
palasies gan sapratiisi…..
http://www.akamai.com/
Ir kada jeega no 9 versijas? Ir kada progza kas to pieprasa?
Colin MCRaly 3
DirectX 9.0b Official Release
http://neowin.net/comments.php?id=12858&category=main
Direct X 9.0 Software Development Kit with DirectX 9.0b Runtime
9.0b Redist
DirectX 9.0b Developer Runtime
Delf laikam ir paarspeeleejies jeegu, ja pat geima nosaukumu nevar pareizi uzraxtiit 🙂
DirectShow Security Fix for DirectX 9.0 and DirectX 9.0a
http://neowin.net/comments.php?id=12852&category=main
Labs security fix. Gljuks protams veel labaaks. Iespeeja ar kaadu labu background MIDI failu ielikt trojaaniiti… un praktiski universaals, 100% Windows(tm) paarklaajums (kaads veel DX3 lieto?). Diez, naakoshais buus buffer overflow ieksh HTML TITLE tega parseeshanas? 🙂
h3h3 : kam vajag sapratiis, parejie lai iet guleet. anywei nelikshu dx9 niparko, nu ja vieniigi hl2 neprasiis
prieksh dx9 vajag video karti kas atbalsta dx9, tad var izjust vinja reaalo jeegu.
h4h4, tu jauc softu ar hardware. parasti ir taa, ka softs lieto hardware, nevis otraadi.
bet ssosoftu var lietot tikai ar speciaalu hardware daaaaaa