About Wine Security

Stefan Dösinger stefandoesinger at gmail.com
Thu Jan 8 02:54:13 CST 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Am 2015-01-07 um 21:19 schrieb Alexandre Julliard:
> That's the sort of thing I was alluding to in our private
> discussion. In the context of Wine, postulating a specially crafted
> binary doesn't make sense. Obviously such a binary doesn't need to
> exploit Wine to do anything it wants.
PE parsing may be an exception though. A specially crafted PE binary
could try to execute code when e.g. the file selection dialog wants to
extract its icon. Microsoft had a related problem on Windows a while
ago: http://blogs.msdn.com/b/oldnewthing/archive/2011/06/09/10172702.aspx

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=msbx
-----END PGP SIGNATURE-----



More information about the wine-devel mailing list