[Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr)

Stan Bubrouski stan.bubrouski at gmail.com
Sun Feb 25 18:47:22 GMT 2007


I can't say the same it shoots my CPU up to 100% and is completely
unresponsive on win2k sp4.

On 2/25/07, Ismail Dönmez <ismail at pardus.org.tr> wrote:
> On Sunday 25 February 2007 20:27:19 Stan Bubrouski wrote:
> > The test on that page still puts my 2.0.0.2 in a completely unusable
> > state, try it yourself and let me know what happens.
>
> Doesn't crash here on Linux, I just see http://slashdot.org in URL bar and
> empty page below, so I can confirm 2.0.0.2 fixed the issue.
>
> --
> Ismail Donmez ismail (at) pardus.org.tr
> GPG Fingerprint: 7ACD 5836 7827 5598 D721 DF0D 1A9D 257A 5B88 F54C
> Pardus Linux / KDE developer
>




Full-Disclosure is hosted and sponsored by Secunia.