Re: Remote overflow in MSIE script action handlers (mshtml.dll)

Konstantine <[email protected]> Sat, 18 Mar 2006 05:46:46 +0000
Newsgroups gmane.comp.security.vulnerabilities.watch.announce
Message-ID <4e79549a0603172146m3fbad3d0g35a27a6b7fc87742__27063.6577778079$1142661139$gmane$org@mail.gmail.com>
On 3/16/06, Michal Zalewski <[email protected]> wrote:
> For non-believers, there's a short but fiery demonstration page available
> at http://lcamtuf.coredump.cx/iedie.html (yes, it will probably crash your
> browser).

Confirmed with 6.0.2900.2180.xpsp_sp2-gdr.050301-1519 on XPSP2
K.

<MATCHING_FILE NAME="mshtml.dll" SIZE="3015680" CHECKSUM="0x2246B95E"
BIN_FILE_VERSION="6.0.2900.2802" BIN_PRODUCT_VERSION="6.0.2900.2802"
PRODUCT_VERSION="6.00.2900.2802" FILE_VERSION="6.00.2900.2802
(xpsp_sp2_gdr.051123-1230)"