Velocity Reviews - Computer Hardware Reviews

Velocity Reviews > Newsgroups > Programming > HTML > Microsoft Internet Explorer Scrollbar-Base-Color Partial Denial Of Service Vulnerability

Reply
Thread Tools

Microsoft Internet Explorer Scrollbar-Base-Color Partial Denial Of Service Vulnerability

 
 
kayodeok
Guest
Posts: n/a
 
      10-25-2003
Microsoft Internet Explorer Scrollbar-Base-Color Partial Denial Of
Service Vulnerability

http://www.securityfocus.com/bid/8874/discussion/

"It has been reported that Microsoft Internet Explorer is prone to a
vulnerability that may allow an attacker to cause a denial of service
condition in the software. The problem occurs due to improper
handling of scrollbar-base-color attribute of the div object.

Successful exploitation of this issue may allow an attacker to create
a webpage containing malicious script code that would cause a user's
browser to crash upon visiting the site.

Microsoft Internet Explorer 6.0 has been reported to be vulnerable to
this issue, however other versions may be affected as well."

Proof of Concept at:
http://www.securityfocus.com/bid/8874/exploit/

--
Kayode Okeyode
http://www.kayodeok.co.uk/weblog/
 
Reply With Quote
 
 
 
 
Woolly Mittens
Guest
Posts: n/a
 
      10-25-2003
"kayodeok" <(E-Mail Removed)> wrote in message
news:Xns941FCAD828679news4kayode@130.133.1.4...
has been reported that Microsoft Internet Explorer is prone to a
> vulnerability that may allow an attacker to cause a denial of service
> condition in the software. The problem occurs due to improper
> handling of scrollbar-base-color attribute of the div object.


How the hell did microsoft get a bug in something THAT simple =(


 
Reply With Quote
 
 
 
 
Nicolai P. Zwar
Guest
Posts: n/a
 
      10-25-2003
Woolly Mittens wrote:

> "kayodeok" <(E-Mail Removed)> wrote in message
> news:Xns941FCAD828679news4kayode@130.133.1.4...
> has been reported that Microsoft Internet Explorer is prone to a
>
>>vulnerability that may allow an attacker to cause a denial of service
>>condition in the software. The problem occurs due to improper
>>handling of scrollbar-base-color attribute of the div object.

>
>
> How the hell did microsoft get a bug in something THAT simple =(


Plenty of experience.

--
Nicolai Zwar
http://www.nicolaizwar.com

 
Reply With Quote
 
 
 
Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Microsoft Windows Live Messenger Contact List Processing Remote Denial of Service Vulnerability imhotep Computer Security 2 07-06-2006 01:52 AM
Microsoft NetMeeting Remote Memory Corruption Denial of Service Vulnerability imhotep Computer Security 0 06-09-2006 12:47 AM
Microsoft Internet Explorer Frameset Denial of Service Vulnerability imhotep Computer Security 6 06-07-2006 05:31 AM
Microsoft Internet Explorer Malformed HTML Parsing Denial of Service Vulnerability Imhotep Computer Security 16 06-03-2006 02:30 AM
Microsoft Internet Information Server 5.1 DLL Request Denial of Service Vulnerability Imhotep Computer Security 0 12-21-2005 06:10 AM



Advertisments