OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Gdiplus.dll division by 0

From: giacomo collini (gclistegmail.com)
Date: Tue Aug 01 2006 - 10:24:27 CDT


On 7/31/06, Early Warning Team <ewttelecomitalia.it> wrote:
> We tried the Proof of Concept on our test machines and couldn't reproduce the reported exceptional behavior. The scenarios we tested were:
> - Windows XP Service Pack 2, <img> tag in Internet Explorer 6
> - Windows XP Service Pack 2, "Insert picture" in Word 2003
> - Windows XP Service Pack 2, display picture in MSN Messenger 7.0 and 7.5
>
> In all cases, all we got were non-fatal "invalid picture" errors

I tried opening the picture created by the script on IE (without HTML,
only dragging) and also on Windows Picture And Fax Viewer,and i got a
nice crash on both of them.
The hosting system is a Win XP SP2, gdiplus.dll release is 5.1.3102.2180

cheers

giacomo collini