Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




fulldisclosure logo Full Disclosure mailing list archives

Re: Remote overflow in MSIE script action handlers (mshtml.dll)
From: Konstantine <listclient () gmail com>
Date: Sat, 18 Mar 2006 05:46:46 +0000

On 3/16/06, Michal Zalewski <lcamtuf () dione ids pl> wrote:
For non-believers, there's a short but fiery demonstration page available
at http://lcamtuf.coredump.cx/iedie.html (yes, it will probably crash your
browser).

Confirmed with 6.0.2900.2180.xpsp_sp2-gdr.050301-1519 on XPSP2
K.

<MATCHING_FILE NAME="mshtml.dll" SIZE="3015680" CHECKSUM="0x2246B95E"
BIN_FILE_VERSION="6.0.2900.2802" BIN_PRODUCT_VERSION="6.0.2900.2802"
PRODUCT_VERSION="6.00.2900.2802" FILE_VERSION="6.00.2900.2802
(xpsp_sp2_gdr.051123-1230)"
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]