[Full-disclosure] Apple Safari ... DoS Vulnerability
Nick FitzGerald
nick at virus-l.demon.co.uk
Tue Mar 3 09:52:48 GMT 2009
Chris Evans to me:
> So, you have injected HTML into stupid.com, and you choose to inflict
> the fury of a closing tab upon hapless visitors?
Your point?
I said nothing about how big or bad of a vulnerability it is, just that
it is one.
Are there lots and lots of trivial vulns in software?
Yes.
Do we reliably know which ones are safe to ignore?
Not if history is any vague kind of guide...
Regards,
Nick FitzGerald
Full-Disclosure is hosted and sponsored by Secunia.