Vulnwatch mailing list archives

Re: Remote overflow in MSIE script action handlers (mshtml.dll)


From: Konstantine <listclient () gmail com>
Date: Sat, 18 Mar 2006 05:46:46 +0000

On 3/16/06, Michal Zalewski <lcamtuf () dione ids pl> wrote:
For non-believers, there's a short but fiery demonstration page available
at http://lcamtuf.coredump.cx/iedie.html (yes, it will probably crash your
browser).

Confirmed with 6.0.2900.2180.xpsp_sp2-gdr.050301-1519 on XPSP2
K.

<MATCHING_FILE NAME="mshtml.dll" SIZE="3015680" CHECKSUM="0x2246B95E"
BIN_FILE_VERSION="6.0.2900.2802" BIN_PRODUCT_VERSION="6.0.2900.2802"
PRODUCT_VERSION="6.00.2900.2802" FILE_VERSION="6.00.2900.2802
(xpsp_sp2_gdr.051123-1230)"

Current thread: