OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Advice On FireFox Bug

From: John Cobb (johncnobytes.com)
Date: Sat Jul 30 2005 - 10:28:20 CDT


Hello All,

After the recent increase of Internet Browser exploits I couldn't help but
give it a quick play.
After a bit of playing I found a bug with the latest version of FireFox
which seems to work on Win2K & WinXP.

I believe the bug to be with one of the plugins but since im not a
coder/reverse enigneerer it's a bit difficult to understand what's causing
the problem.

Anyway as a quick test I attached OllyDbg to FireFox and loaded up my 'evil'
html file and followed it through and found that FireFox crashes with the
same exception on both Win2K & WinXP.

Now what I need to work out now is which part of my html file is causing the
problem.

Is there anyway way I can trace FireFox as it runs through each piece of
HTML code?

Also what other ways can I analyse the bug?

Thanks

John Cobb
www.NoBytes.com

(This bug is 0day. If you work for a nice rich security company and want to
purchase this of me, email me: johncnobytes.com :) )