Bugtraq mailing list archives

Re: [Full-Disclosure] MSIE <IFRAME> and <FRAME> tag NAME property bufferoverflow PoC exploit (was: python does mangleme (with IE bugs!))


From: Menashe Eliezer <menashe () finjan com>
Date: 8 Nov 2004 04:34:00 -0000

In-Reply-To: <BAY10-DAV29UqLpHkat00000751 () hotmail com>

The published exploit is working also with the &lt;EMBED&gt; tag, and not just with the <IFRAME> and the <FRAME> tags.
Finjan's advisory can be found at: 
http://www.finjan.com/SecurityLab/AttackandExploitReports/alert_show.asp?attack_release_id=114

==
Regards,
Menashe Eliezer
Senior application security architect
Malicious Code Research Center
Finjan Software
http://www.finjan.com/mcrc
 
Prevention is the best cure!


Current thread: