lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Thu, 16 Jul 2009 15:02:15 +0200
From: Thierry Zoller <Thierry@...ler.lu>
To: R Dicaire <kritek@...il.com>
Cc: bugtraq@...urityfocus.com
Subject: Re[2]: [GSEC-TZO-44-2009] One bug to rule them all - Firefox, IE,  Safari,Opera, Chrome,Seamonkey,iPhone,iPod,Wii,PS3....

Hi R,

Please  read  Patch  section.  There  is no effect because Mozilla has
patched the bug.

RD> On Wed, Jul 15, 2009 at 2:17 PM, Thierry Zoller<Thierry@...ler.lu> wrote:
>> ________________________________________________________________________
>>
>>                     One bug to rule them all
>>       IE5,IE6,IE7,IE8,Netscape,Firefox,Safari,Opera,Konqueror,
>>       Seamonkey,Wii,PS3,iPhone,iPod,Nokia,Siemens.... and more.
>>               Don't wet your pants - it's DoS only
>> ________________________________________________________________________
>> IV. Proof of concept
>> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
>> URL: http://www.crashthisthing.com/select.html

RD> I accessed the above URL, followed its instructions, using firefox 3.5
RD> as shipped by Fedora 11 (firefox-3.5-1.fc11.i586), and experienced
RD> none of the stated issues. Business as usual.

RD> 32 bit system on an Intel P4 1.8GHz, 1 GB RAM, Fedora 11 with all
RD> current updates as of July/15/09.





-- 
http://blog.zoller.lu
Thierry Zoller


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ