lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-Id: <201308170951.r7H9p2jL009307@sf01web1.securityfocus.com> Date: Sat, 17 Aug 2013 09:51:02 GMT From: geinblues@...il.com To: bugtraq@...urityfocus.com Subject: x90c WOFF Firefox 1day exploit Hi Forks! I share my WOFF 1day exploit. * attachment: http://www.x90c.org/exploits/x90c_WOFF_exploit.tgz (dep bypass) * vulnerability: CVE-2010-1028 WOFF Heap Corruption due to Integer Overflow * affacted Products: - Mozilla Firefox 3.6 ( Gecko 1.9.2 ) - Mozilla Firefox 3.6 Beta1, 3, 4, 5 ( Beta2 ko not released ) - Mozilla Firefox 3.6 RC1, RC2
Powered by blists - more mailing lists