Full Disclosure mailing list archives
Re: [lists] python does mangleme (with IE bugs!)
From: Elliott Bäck <ecb29 () cornell edu>
Date: Mon, 25 Oct 2004 12:43:53 -0400
The URL you give for the crash_IE files simply refresh until they get to http://felinemenace.org/~nd/crash_ie/2447.html and show a 404 error...
Thanks, Elliott C. Bäck
607-229-0623 119 Blair St. #2 ------------------------------------------ www.spreadIE.com www.elliottback.com ned wrote:
i've made a port of mangleme: http://felinemenace.org/~nd/htmler.py with a few extra quirks (such as file extentions/url types) it finds IE bugs after roughly 2.5 -> 3 hours and they are at: http://felinemenace.org/~nd/crash_ie/They are not the null pointer dereference that Michal found (which curiously seems to not own my 6.0.2800.1106.xpsp1?) but some other probably non-exploitable problems!htmler.py doesn't use CGI like mangleme but generates webpages in the directory 'html1' numbered 0.html to n.html. 0.html then uses a refresh to load 1.html and so on with little user interaction required!anyway, if you find bugs with it, don't sell to anyone/notify vendors! - nd
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- python does mangleme (with IE bugs!) ned (Oct 23)
- Re: python does mangleme (with IE bugs!) Berend-Jan Wever (Oct 24)
- Re: [lists] python does mangleme (with IE bugs!) Elliott Bäck (Oct 25)