It seems as all of IBM/Lenovo Windows XP preloads are extracted to FAT32 partition and converted to NTFS later. I noticed there is a difference in NTFS permissions for "All Users" folder. While on clean Windows XP installation the folder is read-only for members of Users group, ThinkPads have always set full permissions for Everyone. A malicious software running under limited account (Users) can easily modify some system-wide settings like startup programs for all users, including Administrators ! There is Microsoft KB article about it:
File security issues after converting FAT32 partitions to the NTFS file system
http://support.microsoft.com/kb/810142
Unfortunately there is not any solution you can easily apply. I'd expect a BAT file or any kind of script which would automatically correct this issue. I also tried to search IBM support with no luck. Has anyone tried to correct the permissions yourself ?
I'd consider it as serious security issue today.
Possible file security issues of IBM/Lenovo Windows XP
-
Puppy
- Senior ThinkPadder

- Posts: 2264
- Joined: Sat Oct 30, 2004 4:52 am
- Location: Prague, Czech Republic
Possible file security issues of IBM/Lenovo Windows XP
ThinkPad (1992 - 2012): R51, X31, X220, Tablet 8
-
RealBlackStuff
- Admin
- Posts: 17512
- Joined: Mon Sep 18, 2006 5:17 am
- Location: Mt. Cobb, PA USA
- Contact:
Have you tried Start/Run/secpol.msc to modify those settings?
Lovely day for a Guinness! (The Real Black Stuff)
Check out The Boardroom for Parts, Mods and Other Services.
Check out The Boardroom for Parts, Mods and Other Services.
My All Users folder has the Read & Execute, List Folder Contents, and Read allowed permissions for the Everyone Group.
This OS install was directly from the Restore CD for my T43.
Maybe this has changed for newer models?
This OS install was directly from the Restore CD for my T43.
Maybe this has changed for newer models?
This space for rent!
Send PM.
IBM (No Lenovo logo on LCD bezel) ThinkPad T60 2623-D6U, Core Duo 1.83 Ghz, 14.1" SXGA+, 4GB RAM, Hitachi 7k320, Windows XP Pro SP3
Lenovo ThinkPad T500 2055-2CU, Core 2 Duo 2.53 Ghz, 15.4" WSXGA+, 8GB RAM, Hitachi 7k750, Windows 7 Ultimate 64 Bit
Send PM.
IBM (No Lenovo logo on LCD bezel) ThinkPad T60 2623-D6U, Core Duo 1.83 Ghz, 14.1" SXGA+, 4GB RAM, Hitachi 7k320, Windows XP Pro SP3
Lenovo ThinkPad T500 2055-2CU, Core 2 Duo 2.53 Ghz, 15.4" WSXGA+, 8GB RAM, Hitachi 7k750, Windows 7 Ultimate 64 Bit
-
- Similar Topics
- Replies
- Views
- Last post
-
-
Hard Drive won't boot and external USB Hard Drive enclosure/caddy/adapter for file retrieval
by E350 » Thu Apr 06, 2017 11:38 am » in ThinkPad T6x Series - 5 Replies
- 926 Views
-
Last post by axur-delmeria
Thu Apr 06, 2017 9:43 pm
-
-
- 0 Replies
- 1122 Views
-
Last post by pdrachman
Wed Mar 01, 2017 2:34 am
-
-
(Company + Individuals): Strategies to Mitigate Cyber Security Incidents
by RealBlackStuff » Tue Feb 07, 2017 9:40 am » in ** HOW TOs & FAQs ** - 1 Replies
- 750 Views
-
Last post by Digitalhorizons
Tue Feb 07, 2017 1:39 pm
-
-
-
Remote security exploit in all 2008+ Intel platforms
by Puppy » Mon May 01, 2017 6:51 pm » in GENERAL ThinkPad News/Comments & Questions - 15 Replies
- 651 Views
-
Last post by TPFanatic
Mon Jun 05, 2017 11:02 am
-
Who is online
Users browsing this forum: No registered users and 1 guest



