Full Disclosure mailing list archives

Re: Update: [GSEC-TZO-44-2009] One bug to rule them all - Firefox, IE, Safari, Opera, Chrome, Seamonkey, iPhone, iPod, Wii, PS3....


From: Michal Zalewski <lcamtuf () coredump cx>
Date: Tue, 21 Jul 2009 16:15:26 -0700

The W3C DOM specifies the select.length attribute to be *read only*.

Does not seem to be the case in HTML5 at least?

http://dev.w3.org/html5/spec/Overview.html#the-select-element

In fact, it has the behavior for writes defined:

"On setting, it must act like the attribute of the same name on the
options collection."

It may or may not have any practical uses (dynamic resizing of SELECTs
without having to delete individual options).

/mz

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: