OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[VulnWatch] Re: Remote overflow in MSIE script action handlers (mshtml.dll)

From: Konstantine (listclientgmail.com)
Date: Fri Mar 17 2006 - 23:46:46 CST


On 3/16/06, Michal Zalewski <lcamtufdione.ids.pl> wrote:
> For non-believers, there's a short but fiery demonstration page available
> at http://lcamtuf.coredump.cx/iedie.html (yes, it will probably crash your
> browser).

Confirmed with 6.0.2900.2180.xpsp_sp2-gdr.050301-1519 on XPSP2
K.

<MATCHING_FILE NAME="mshtml.dll" SIZE="3015680" CHECKSUM="0x2246B95E"
BIN_FILE_VERSION="6.0.2900.2802" BIN_PRODUCT_VERSION="6.0.2900.2802"
PRODUCT_VERSION="6.00.2900.2802" FILE_VERSION="6.00.2900.2802
(xpsp_sp2_gdr.051123-1230)"