Pretty crazy that we're closer to 2030, than we are 2005. Where did the time go!
0 Members and 2 Guests are viewing this topic.
hi,Affected Software : Microsoft Internet ExplorerVulnerability : Remote DOS / CrashTested On : MS IE 6.0 SP1, Win2K SP4, [up-to-date]according to windowsupdate.comDiscovered by : Gregory R. PanakkalHomePage : http://www.crapware.tkDetails=======Pointing a link to the URI -> file://!:\ [replace !with the character with ascii value for eg:- 0xA0].Causes IE6-SP1 to crash, the illegal op occuring inuser32.dll. Other special characters are alsopossible.Demo====A demonstration is available at the following URL.http://crapware.lx.ro/junkcode/security/ie-sp1-file-a0-crash.htmGreetz to=========Rakesh Balasunder - r0ck@iNfyCK - Saitegog! rgds,Gregory R. Panakkal
I'd personally do as Joe suggests
You might be right about that, Joe.
>> Discovered by : Gregory R. PanakkalIncorrect: E.Kellinis reported it on Friday, May 07, 2004 to bugtraq:http://www.securityfocus.com/archive/1/362524/2004-05-06/2004-05-12/0>> Pointing a link to the URI -> file://!:\ [replace !>> with the character with ascii value for eg:- 0xA0].>> Causes IE6-SP1 to crash, the illegal op occuring in>> user32.dll. Other special characters are also>> possible.More details can be found here:http://lists.netsys.com/pipermail/full-disclosure/2004-May/021272.htmlhttp://lists.netsys.com/pipermail/full-disclosure/2004-December/030115.html .-----------------------------------, / Berend-Jan Wever aka SkyLined ) / skylined@edup.tudelft.nl / \ / http://www.edup.tudelft.nl/~bjwever / / / PGP key ID 0x48479882 / / / .----. , / / / ( ' / / . __ __/ / / / `'-._ /.' | / / / ( / /_.'.' / / / ( ) / ) |/ / / / ) (__ (__/ / / \-------' ------` '-----------------< / \______.`\______\/\_________________\/
I have a programming folder, and I have nothing of value there
Our species really annoys me.