[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <489d2f300601030153p1f152f2fh33be92779c58f390@mail.gmail.com>
Date: Tue Jan 3 09:54:01 2006
From: sumit.siddharth at gmail.com (Sumit Siddharth)
Subject: Buffer Overflow vulnerability in Windows
Display Manager [Suspected]
I think the problem is with the intel driver and particularly with file
ialmnt5.sys
Hope it helps
Sumit
On 1/3/06, Sumit Siddharth <sumit.siddharth@...il.com> wrote:
>
> Dear All,
> Sorry for the delayed response.
> I had success in exploiting it remotely by a simple javascript
> <script>window.open("http://aa...");</script>. But i think it doesnt work
> with some drivers.I am using XP ,professional, SP2. and firefox 1.0.6. I
> am using a string of about 53,000 char to overflow the buffer.
> Thanks
> Sumit
>
>
--
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20060103/be1105db/attachment.html
Powered by blists - more mailing lists