Full Disclosure mailing list archives

Re: info about recent Ms issue


From: "ad () heapoverflow com" <ad () heapoverflow com>
Date: Fri, 14 Apr 2006 18:43:46 +0200

if you are looking about this

http://www.securityfocus.com/archive/1/430871/30/0/threaded

this is not a vulnerability for MS because the .hlp file is a script file and they believe that's not secured at all, c0ntex just posted a fresh advisory of something wich has been found years ago, disclosed hundred of times, but he looks to have time to loose.

snowmo () online ie wrote:
Hi, I recently read an exploit for an MS issue in which the author apologised to some people he had met at a sec. conference for not disclosing the vulnerability at that time because he was holding out for the iDefense bounty. I can't find the exploit now and was wondering if anyone else had read this and can point me in the right direction.

thanks.
Moe.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/




_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: