[Full-disclosure] MSIE (mshtml.dll) OBJECT tag vulnerability

KF (lists) kf_lists at digitalmunition.com
Mon Apr 24 02:39:37 BST 2006


Out of curriosity ... do you approve of your vendors (M$ in this case) 
poor coding practices? How about the disclosure practices that THEY use? 
Didn't think so...
-KF

Paul Nickerson wrote:

>Confirmed on IE 7 beta 2 on Windows XP SP2
>
>For the record, I don't approve of your disclosure practices, Mr. Zalewski,
>but good work none-the-less.
>
>  
>




Full-Disclosure is hosted and sponsored by Secunia.