lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite for Android: free password hash cracker in your pocket
[<prev] [next>] [day] [month] [year] [list]
Date: 21 Mar 2008 21:50:44 -0000
From: jplopezy@...il.com
To: bugtraq@...urityfocus.com
Subject: Safari 3.1 for windows download bug

This is another flaw I found in the Safari browser for Windows, the fault lies when trying to download a file with a very long name that causes the program is broken and pull the following exception.

Access violation when reading[11b5c539]

If the file is filled with more letters to cause an exception but when he writes, in the proof of concept only leave the reading as geocities leaves no upload a file with a long name but if you assemble your own server and create a zip archive with nothing inside and the name of the letter "A" until there is no more space in the name provokes the following exception.

Acess violation when writing to [9c236d62]

Below left the proof of concept… greetings and continue well !!!!!!!

POC

http://es.geocities.com/jplopezy/pruebasafari2.html

Juan Pablo Lopez Yacubian
fuzzertina.blogspot.com

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ