Re: dont go opening them thar .wmf files now...
Isn't it the case that as soon as you rename it to a .gif or whatever, the browser will attempt to open the file itself, realise that the file is either unreadable or corrupted and thus be unable to display it, rather than sending it on to the vulnerable Windows Image Viewer component?
I seem to recall a .jpeg vulnerability issue a while back that was a problem caused by a faulty Windows component as well, which Opera was not affected by because it uses it's own programming to handle the viewing of .jpeg images.
|