Serious flaw discovered in Windows Vista's Explorer


Recommended Posts

At a time where everyone is anxiously awaiting the upcoming service pack for Windows Vista (and while others flock back to Windows XP in droves), yet another flaw in the Windows Vista operating system has been discovered that can bring the Windows shell ("Windows Explorer") to its knees within 20 seconds. Even worse, this issue occurs under every day usage of the operating system if you use the Search function regularly with boolean search operators.

  1. Click on Start, and then click on Documents.
  2. In the Search entry box, type "NOT Shortcut" (without the quotes).
  3. Click on the "Save Search" button and save the search query as "Search Test".

This has been confirmed as a flaw in Windows Vista (all editions) and Windows Vista 64-bit (all editions), and even worse, the issue still occurs on the latest release candidate for Service Pack 1, and has been marked as "will not be fixed". The bigger question is, will Microsoft step up to the plate and fix this issue or will they let it pass on by while they work heavily on Windows "7", ignoring the fact that Windows Vista still has flaws and inconsistancies that are seeing larger companies hold back deployment until 2009 or even skip Vista?

Source of instructions to reproduce issue: ActiveWin.com

Holy cow, think of the countless people who will be put into shambles, i mean, people search for NOT Shortcut all the time, and i for one always save my queries as search test.

We can only curse at things like this because WinFS would have certainly avoided such problems.

*sigh*

:ike:

Acdtually, all three major components of WinFS IS in Vista, in the forms of Instant Search, VSC and som other stuff.

It doesn't crash my system :s

Windows Vista Home Premium with the RC of SP1.

It crashed my system without SP1, but didn't crash with SP1 so this is fixed with SP1 I guess. Either way, why is anyone searching for NOT shortcut in the first place? I mean most people search for specific files, not everything on their damn system. This is a non-issue IMO.

I love how people quickly defend Microsoft's Vista OS when people find issues with it. The right thing to do is expect this bug to be fixed. There is no excuse for not fixing a bug. You pay good money for it and in exchange you expect support for it, especially a the price tags of Vista's many flavours, why would you defend its flaws?

I'm not saying XP or anything else is perfect, but for christ sake people this is a PIECE OF SOFTWRE, not a cult or religion. Yes the person who posted about this bug probably hates Vista but it's a bug nevertheless regardless if the person is a Vista hater or supporter and a bug should eventually be fixed. It's as simple as that.

I love how people quickly defend Microsoft's Vista OS when people find issues with it. The right thing to do is expect this bug to be fixed. There is no excuse for not fixing a bug. You pay good money for it and in exchange you expect support for it, especially a the price tags of Vista's many flavours, why would you defend its flaws?

I'm not saying XP or anything else is perfect, but for christ sake people this is a PIECE OF SOFTWRE, not a cult or religion. Yes the person who posted about this bug probably hates Vista but it's a bug nevertheless regardless if the person is a Vista hater or supporter and a bug should eventually be fixed. It's as simple as that.

Yes, the bug should be fixed, but I don't care if they get around to fixing it in Vista SP1 or SP5 - I'll never encounter it, period. I'm more concerned about memory leaks and actual bugs that hamper my experience then some obscure bug I'll never accidentally encounter.

Please let us know when it proves to be a remotely exploitable buffer overflow that is usable as a program loader. Then we can upgrade its status to either serious or critical. At this point it's just a minor irritation, something that is in every version of every OS I've ever worked with. Pttht!

Interesting fallout from this...

Going back to 14 months ago...

I'm at the Microsoft Windows Vista October Beta Tour and am in one of three groups of ~40 of the Vists Beta Testers invited to spend 2 days at Microsoft, and Robert McLaws ( owner & admin of www.windows-now.com ) happens to be in my group - a very easy-to-talk-to guy who also knows what he talks about. I got to meet alot of very interesting people and renewed some very old (around 20-years-ago) friendships with former co-workers from various former employers.

...fast-forward to present time...

I see that the original post that generated this thread and the one on ActiveWin came from Robert's site - which causes me to raise my eyebrows slightly. I click on the link for the originating blog entry....and get ZIP from the website. I go back and see the list of Bloggers on the site, locate the author's blogs...and am greeted with this page. I go back and try to click on the actual blog entry - which now takes us back to the top of the Blogs section.

It's nice to see a site admin who has absolutely zero tolerance to buffoon-posts from buffoons. Give Robert a pat on the back, folks.

IMHO, this whole issue has got to be the biggest non-issue with Vista ever - and is near-perfectly timed to coincide with the end of 2007. Kinda nice to end the year with a whimper.

--ScottKin

Alright, so I published this over at Windows-Now.com (it does not display on the front page), I figured that I would post it here as well before my account here is deleted.

Alright, so after being harassed, flamed, and torn apart for the past ~24 hours via instant messenger and e-mail (which has resulted in me having to delete my personal e-mail account) about a post that I made on this website in regards to an issue that was found in the Windows Vista Explorer Search module, I've decided that I should come forth a little bit with you all.

Let's begin -- several years ago, during the Windows Code-name "Longhorn" era, I teamed up with Chris Holmes, someone who I consider to be a good friend, to work on several "guides" for tweaking the operating system, at the time I was only representing myself under the screen name "Nighthawk", although further into the Windows Vista beta I decided to use my actual name on the guides, as I felt it represented a step forward in professionalism in something that I enjoyed doing.

First and foremost, the reason that I posted the information regarding the flaw is because I was contacted by Microsoft stating that they would not be fixing the bug for Service Pack 1, which in my mind is a little bit boggling -- so I figured that a little bit of attention on this flaw would perhaps give someone over in Redmond a bit of a push to get this resolved, because it is a valid issue.

I've heard things such as "You're a [expletive] idiot for posting this", and "why the hell would you search for NOT Shortcut anyway?" This doesn't just apply to "NOT Shortcut", it applies to anything with "NOT".

You could search the folder for "NOT Music" or "NOT Peanuts" for all I care, it still crashes the process. I would have never thought that I would receive this kind of response to something like this, and I am truly disappointed. It seems as if some have reached a point where it doesn't matter if the operating system is full of bugs, as long as nobody speaks negatively about it, then all is well.

Unfortunately, I'm not the kind of person who will stand by and not take a stand for what I think is right. As an enthusiast and a human being, I cannot pretend and stand by to do what is "right" for the community, and no matter what the cost is, I cannot and will not continue with things in this state.

I was recognized for my contributions with the Microsoft MVP award in October for 2008, in the competency of Windows - Shell/User, which I felt was a real accomplishment and I was quite proud of myself. I've always had the passion to write -- and I focused primarily on Windows documentation, tweak guides, and tips & tricks. But unfortunately, after all of this, I've almost lost the inspiration and the passion to continue with my work as a Windows enthusiast. I've seen an extreme amount of distaste against what seems to be the truth lately, and that anything that doesn't go with the flow is automatically picked apart by fanboys and ego-maniacs.

At this point in time I would like to inform each and every one of you, and any of my readers out there, that I am pulling out from any current projects, tweak guides, and tips & trick guides, along with any involvement that I have with the community at this point in time. I'm going back to living my life, without being harassed over a blog post that I thought would be informative. With that being said, I do not know if I will be returning due to what seems to be a growing trend with "fanboyism" and the sheer amount of immaturity and disrespect that I have received in the past 24 hours.

To my fellow enthusiasts whom I have collaborated with over the years, including Chris, Mahmoud Al-Qudsi (author of EasyBCD), my friends at Microsoft Corporation, I wish you all the best and thank you for your assistance, guidance, and friendship. To Robert, the owner of Windows-Now.com, I would like to thank you for allowing me to host my information here on Windows-Now.com, and apologize if my previous blog post has caused you any grief.

I wish you all the best in the New Year and that you all take care of yourselves. Thank you for taking the time to read this entry.

Wow, I am completely astounded by this thread. All Kris did was post about an issue that was found in Windows explorer that Microsoft said they would not fix. He gave it a bit more of a public light in the hopes that it would kick someone over at Redmond in the ass and make them actually fix something for a change instead of senselessly closing the bug as "Not Reproducable".

The part that really gets me is that the same people who are flaming Kris about this, because it is not a "real issue", are the same people that bitch and moan all day long about vista being "****" and how it has so many issues. Umm hello? Anyone else seeing the irony here, or do you people just like to bitch for a living?

If there's one thing I've learned over the years, it's that you just have to stop caring about what other people have to say about you, because 99% of it is bull**** coming from immature little losers anyway. You guys may have succeeded in pushing out a great member of the community, I hope you're all happy now. I for one would not be pushed out like this because I don't pay any attention to senseless comments like this. I just stepped in now because this really needs to be addressed because it IS getting out of hand. Who CARES if you don't think it's an issue? In my book, ANYTHING that can crash a component of windows without adding a 3rd party plugin/application into the mix is a bug that MUST be fixed. Oh well, I don't even know why I'm wasting my breath on this, I'd probably make more progress talking to my walls.

Thanks for your kind words, Kris.

I know I speak for a lot of people here and in the rest of the online community when I say that no matter what transpired over the past couple of days everyone will certainly miss your contributions.

I'm shocked in disappointed in the reaction of many people as well, one would have expected a higher level of maturity when dealing with such issues, especially when they're being disclosed in good faith with the intention of getting them fixed, not flamebaited.

I wish you luck, wherever it is you choose to go from here.

Wow, I am completely astounded by this thread. All Kris did was post about an issue that was found in Windows explorer that Microsoft said they would not fix.

I think it's the sensationalist headline that most people have a problem with. It's not a serious flaw, by any means. A serious flaw (for example) would be an exploit that allows somebody to take over my computer remotely without me having to do anything. Not something that I type into the search field that crashes Explorer for a few seconds.

Steve.

Alright, so I published this over at Windows-Now.com (it does not display on the front page), I figured that I would post it here as well before my account here is deleted.

Instead of admitting that you blew it way out of proportion you choose to call everybody else fanboys? Comon, you could do better than that.

[Cross posted to Windows-Now]

We faced an issue with Vista. The issues? A few bugs being blown out of proportion, people thinking the beta of Vista was the final quality, people running Vista on CRAP hardware, and the most important; the blogosphere hating Vista.

So people started getting defensive of Vista against the stupid Mac heads and Linux heads. What happened here is that people got TOO defensive. We as a community are turning into the communities of zealotry, which we so despise, one of the principal reasons that we use Windows. We are becoming fanbois, and throwing our own under the bus.

What we all need to do is unite as a single community, drop these community wars, and start collaborating and trying to help Microsoft make a better operating system. Not say "IT IS PERFECT THE WAY IT IS!" I for one refuse to be part of a community where we must accept the OS as perfect, or be a "DUMB MAC FANBOI!" I am neither.

I have a genuine fear for where Windows and the community are going. Currently Microsoft seems to be trying to emulate Apple, and is doing so poorly. Microsoft is trying to follow a model that does not allow their community to make MAJOR change in their products. They are building up walls when they should be taking them down. As a community we are moving towards a model where we either must hate the OS to get Microsoft to change it or we need to defend it to the point where we spam one of the longest and smartest members of the Windows community, who deserves nothing less than our respect! It is absolutely disgusting to me that all these new comers to the beta scene think they have the right to harass one of the longest standing members of the community, and that they are smarter than someone who deserves nothing but respect. At this point today I am ashamed to call myself a part of what the Windows community has become, this Windows Community. Any of you who took part in the events of the last 24 hours, or any sort of extreme zealotry at all, should seriously rethink whether they should or deserve to call themselves Windows Enthusiasts.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Segra 1.6.2 by Razvan Serea Segra is a free, open-source OBS-powered game recorder offering fast gameplay capture, instant clips, AI highlights, deep game integration, and seamless uploads—perfect for gamers, streamers, and content creators. Lightweight, fast, zero bloat. Segra key features: Automatic Game Recording: Begin capturing gameplay the moment your game launches, with zero manual setup. Instant Clipping: Save important moments instantly using a customizable hotkey—perfect for highlights, montages, or quick shares. Segra AI Highlights: Let Segra automatically detect kills, assists, deaths, and key events to generate polished highlight reels without manual editing. Gameplay Uploads: Upload recordings and clips directly to Segra.tv for fast sharing and cloud access. Deep Game Integration: Enjoy advanced game-data tracking across hundreds of supported titles, enabling smart highlight generation and stat-informed clipping. High-Performance Capture: Record up to 4K at 144 FPS using OBS-powered technology with minimal performance impact, supporting NVENC, AMD VCE, and custom quality controls. Segra Editor: Edit recordings easily with timeline controls, segment management, and event-based navigation to build the perfect clip. Customization Options: Adjust hotkeys, output formats, storage paths, codecs, capture quality, and performance settings for a tailored recording experience. Segra 1.6.2 changelog: UI: Improved the transition from the loading skeleton to the real content card. Security: Added Segra.dll code signing and automatic VirusTotal upload. Settings: Fixed the settings header to highlight Account when scrolled to the top. Recording: Updated OBSKit.NET to 1.4.1. Download: Segra 1.6.2 | 74.5 MB (Open Source) View: Segra Homepage | Github | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Hey Google, these are the Gemini features I want in 2026 by Aditya Tiwari Google Gemini has been around for over three years. The AI chatbot started its journey back in 2023 (as Bard) when ChatGPT was already a talk of the town. However, it quickly attracted criticism after misrepresenting facts about the James Webb Space Telescope. The search giant spent a year fine-tuning Bard before rebranding the chatbot and its underlying generative AI model to Gemini, drawing inspiration from NASA's first human spaceflight program. Note that Bard was initially powered by LaMDA and PaLM 2; Google has since added several new features and integrations to Gemini. That said, there is scope for improvement and a gap for new features. I have been using Gemini for a while now and have realized that the chatbot lacks several features, making it harder for me to research across topics. These are mostly function-over-form updates that can improve the overall experience. Delete individual messages from a conversation Image via DepositPhotos.com One good thing about Gemini is that it can maintain context throughout the conversation. But things might get chaotic when you want to ask a related question, but don't want it to be part of your conversation in the long run. You can't ask that related question in a fresh chat because Gemini will lose the active conversation context of what you're trying to research. If Google allowed you to delete individual question/answer pairs, you could simply ask about a sub-topic and remove it from the conversation to create a smooth flow of important stuff. Offline mode Image via DepositPhotos.com A big pain of using Gemini daily is that everything loads from the cloud. It takes time for your chats to appear, and you can't view your conversation history while offline. To get a better idea, you can open the Gemini app and see how it looks without an internet connection. While Gemini models run in the cloud, it wouldn't hurt if Google could store chats (at least the text part) on the device so we can refer to them when offline. Google can also offer a lightweight version of its AI model to help with basic drafting, summarization, and other tasks. It has the Gemini Nano model, which can perform on-device processing on Google Pixel, Samsung, and some other Android brands, but it's a system feature and not related to the cloud-based Gemini app. Make temporary chats permanent I can't thank Google enough for taking the time and effort to add incognito mode or temporary chat mode to the Gemini app. It lets you have conversations without worrying that the topics will end up in your chat history or used for model training (at least on paper). Google claims that it doesn't use your temporary chats to "personalize your Gemini experience or train Google’s AI models." However, the data is stored "up to 72 hours to respond to you and to process any feedback you choose to provide." That said, I often start researching something in a temporary chat, only to realize the chatbot's answer is good enough to refer to later. Sadly, Gemini doesn't have an option to make such temporary chats permanent. In other words, I won't be able to follow up on it if I close the temporary chat. I'm left with alternatives like copying the answers into notes or another app. My digital life will get a lot better if Gemini gets a button to make temporary chats permanent. Collapse answers for a cleaner view You're heavily invested in your research game and suddenly feel the need to go up in the chat to recall something. This is when the conversation thread starts to feel like an overwhelming, unending wall of questions and answers. What if Google added a way to collapse Q&A pairs in the Gemini chat thread? It would look quite clean and easy to navigate. You'll quickly get an overview of everything you have discussed with the chatbot. Add buttons to jump between messages Suggested mockup of the feature. This reminds me of a small but useful Gemini feature that Google could add to its chatbot: the ability to hop between prompts in a conversation. Just add simple up- and down-arrow buttons, similar to YouTube Shorts, so people can quickly scroll through the messages. A table of contents or Chat Overview It's hard to get a bird's-eye view of everything you have discussed with the chatbot during a lengthy conversation. This is where a table of contents, or Chat Overview, displayed at the top of the screen, possibly in a drop-down button, might come in handy. You'll be able to get an overview of the chat and jump between messages, serving as an alternative to the up/down arrow buttons. Temporary mode for Gemini Live Image: Google You can use Gemini Live to have real-time conversations with the chatbot, which feels like you're talking to someone in the same room. However, a downside is that Gemini Live doesn't work in Temporary Chat mode, so all your conversations end up in the chat history. Google should consider expanding the temporary chat mode to include Gemini Live. Default to a specific chat One thing that feels somewhat annoying to me is that Gemini always opens in a new chat, whether on web or mobile. Sometimes, you want to return to your last chat. Google can take cues from web browsers, which let you choose whether you want to go to a new tab or a specific web page(s). Gemini can also have options to default to a specific chat when reopened. That said, generative AI chatbots have endless possibilities given the vagueness of their work. You can mold them the way you want by attaching different connectors, adding custom instructions, and including source files. It remains to be seen what Google has in store for future updates and whether anything from this wishlist gets the green light. The search giant released a stream of new Gemini updates in recent months, including Gemini 3.5 Flash and Gemini Omni Spark, adding that it now has 13 products with more than a billion users each. What do you want to see in the Gemini app? Tell us in the comments.
    • Thank you for the post. Just a FYI that links to an outside site or promoting specific software is considered spamming here. Asking general questions is fine.
    • I have been thinking about AI detector tools as a software workflow rather than a single "AI score" widget. When someone pastes text or uploads a document, the UI can return a report with a probability-style score, sentence highlights, reliability notes, and limitations. The useful part is that it can point a reviewer toward passages worth reading again. The risky part is that a polished score can look more certain than it really is. For people who build or review web apps, what should happen before the user copies or exports that kind of report? The minimum I would expect is: A clear input boundary for pasted text versus document files. Limits shown near the workflow, including minimum text length and maximum file size. A report label that says the result is a signal, not proof of who wrote the text. Sentence highlights and evidence notes alongside the global score. Reliability notes when the sample is too short or lacks enough sentence variety. False-positive and false-negative caveats that remain visible in copied/exported summaries. I am trying to avoid the pattern where a clean report card becomes the whole product story. For AI detection, "review this evidence in context" seems more honest than "trust this score." Would you keep the warning text visible on every report, or make it collapsible so the main result stays easier to scan? Disclosure: I work on a small AI detector/reporting workflow, but I am intentionally not linking it here. I am asking about software and report design, not promoting a site.
  • Recent Achievements

    • Conversation Starter
      sumytbe earned a badge
      Conversation Starter
    • One Year In
      B4dM1k3 earned a badge
      One Year In
    • One Year In
      DarkWun earned a badge
      One Year In
    • Dedicated
      Almohandis earned a badge
      Dedicated
    • Dedicated
      JuvenileDelinquent earned a badge
      Dedicated
  • Popular Contributors

    1. 1
      +primortal
      507
    2. 2
      +Edouard
      181
    3. 3
      PsYcHoKiLLa
      86
    4. 4
      Michael Scrip
      78
    5. 5
      Steven P.
      76
  • Tell a friend

    Love Neowin? Tell a friend!