[Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr)

Ismail Dönmez ismail at pardus.org.tr
Sun Feb 25 18:44:45 GMT 2007


On Sunday 25 February 2007 20:27:19 Stan Bubrouski wrote:
> The test on that page still puts my 2.0.0.2 in a completely unusable
> state, try it yourself and let me know what happens.

Doesn't crash here on Linux, I just see http://slashdot.org in URL bar and 
empty page below, so I can confirm 2.0.0.2 fixed the issue.

-- 
Ismail Donmez ismail (at) pardus.org.tr
GPG Fingerprint: 7ACD 5836 7827 5598 D721 DF0D 1A9D 257A 5B88 F54C
Pardus Linux / KDE developer




Full-Disclosure is hosted and sponsored by Secunia.