Re: IE Denial of service (sorta)

From: Nick Lange (nicklangeat_private)
Date: Wed Dec 05 2001 - 07:01:02 PST

  • Next message: Blue Boar: "Red Hat 7.1 rpc.statd problem"

     crashed me.
     5.50.4807.2300
     of ie under 2k w/ various patches ( I think up to sp2)
     as well I think this is sposed to be 5.5 sp2 of i.e. I'm using if I
    remember
     correctly
     nick
    ----- Original Message -----
    From: "zeno" <zenoat_private>
    To: <incidentsat_private>; <bugtraqat_private>;
    <vuln-devat_private>
    Sent: Tuesday, December 04, 2001 4:00 PM
    Subject: IE Denial of service (sorta)
    
    
    >
    > Hey
    >
    > I found this months ago and though it was patched but it managed to cause
    new errors
    > on win me with all updates on IE in kernel. On default win2k IE install it
    sucks up 100 percent cpu
    > for half on hour(128 meg of ram).
    >
    > Please click on it and tell me what happens to you.
    > (include version and patch info)
    >
    > Its a image tag with some garbage characters in a particular order.
    > I haven't bothered contacting microsoft yet because I'm not sure just how
    common a problem
    > this is, and with what patches installed.
    >
    > www.cgisecurity.com/crash.shtml
    > also try /crash2.shtml
    >
    > -zenomorph
    >
    



    This archive was generated by hypermail 2b30 : Wed Dec 05 2001 - 10:57:05 PST