Full Disclosure mailing list archives

Re: Firefox 0.92 DoS via TinyBMP


From: Ali Campbell <fdisclosure () alicampbell org uk>
Date: Mon, 12 Jul 2004 17:19:32 +0100

Just for the record, this caused 2.7 gigabyte virtual memory usage on a PowerBook running OS X / Firefox 0.9, so it's not a x86 only issue.

thE_iNviNciblE wrote:

Hi,

there is a security vulnerability in Firebox 0.92 (latest Version)

http://www.4rman.com/exploits/tinybmp.htm

this link causes that your virutal memory will be rise up 1,2 GB used Memory...

maybe Thunderbird 0.72 is also vulnerable via HTML.

credits to: StupidWhiteMan


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: