<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<HTML>
<HEAD>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1">
<META NAME="Generator" CONTENT="MS Exchange Server version 6.5.7651.59">
<TITLE>RE: firefox 2.0.0.2 crash</TITLE>
</HEAD>
<BODY>
<!-- Converted from text/plain format -->
<P><FONT SIZE=2>Firefox even crashes if you have it open and visit the site from lynx...<BR>
<BR>
$ lynx <A HREF="http://people.zoy.org/~sam/firefox-crash-save-session-before-clicking.gif">http://people.zoy.org/~sam/firefox-crash-save-session-before-clicking.gif</A><BR>
<BR>
Looking up people.zoy.org<BR>
Making HTTP connection to people.zoy.org<BR>
Sending HTTP request.<BR>
HTTP request sent; waiting for response.<BR>
HTTP/1.1 200 OK<BR>
Data transfer complete<BR>
/usr/bin/firefox '/tmp/XXXXggdfOe/L23367-1095TMP.gif'<BR>
<BR>
lynx: Start file could not be found or is not text/html or text/plain<BR>
Exiting...<BR>
--<BR>
Kristian Hermansen<BR>
<BR>
___<BR>
Date: Fri, 09 Mar 2007 20:31:40 +0200<BR>
From: T?nu Samuel <tonu@jes.ee><BR>
Subject: [Full-disclosure] firefox 2.0.0.2 crash<BR>
To: full-disclosure@lists.grok.org.uk<BR>
Message-ID: <1173465100.5229.48.camel@duo.jes.ee><BR>
Content-Type: text/plain; charset=UTF-8<BR>
<BR>
Can be dupe but in fast browsing over topics I did not discovered this<BR>
exploit:<BR>
<BR>
<A HREF="http://people.zoy.org/~sam/firefox-crash-save-session-before-clicking.gif">http://people.zoy.org/~sam/firefox-crash-save-session-before-clicking.gif</A><BR>
<BR>
<BR>
I do NOT know anything else than this url. Just seen it in random<BR>
discussion and anyone else I asked knows nothing. Current tests indicate<BR>
that Mozilla 2.0.0.2 gets killed within second, 1.5.0.10 survives.<BR>
<BR>
T?nu</FONT>
</P>
</BODY>
</HTML>