Re: IE Denial of service (sorta)

From: Alan Richardson - Stuff Trading (stufftradingat_private)
Date: Wed Dec 05 2001 - 14:53:33 PST

  • Next message: Matthew G. Marsh: "CERT Conference 2002 Call for Presentations"

    Hello,
    
    Patched (all standard MS security & update patches, up to Oct 01) Win98SE
    with IE 5.00.3314.2100 (256Mb RAM) lost approx 3% CPU (Celeron 466/66) over
    10 minutes in both instances - not too shabby considering the amount of
    rubbish I tend to run in the bg on this box...haven't tested with other
    boxes and/or OS's though.
    
    Stuff
    
    >
    > Hey
    >
    > I found this months ago and though it was patched but it managed to cause
    new errors
    > on win me with all updates on IE in kernel. On default win2k IE install it
    sucks up 100 percent cpu
    > for half on hour(128 meg of ram).
    >
    > Please click on it and tell me what happens to you.
    > (include version and patch info)
    >
    > Its a image tag with some garbage characters in a particular order.
    > I haven't bothered contacting microsoft yet because I'm not sure just how
    common a problem
    > this is, and with what patches installed.
    >
    > www.cgisecurity.com/crash.shtml
    > also try /crash2.shtml
    >
    > -zenomorph
    >
    



    This archive was generated by hypermail 2b30 : Wed Dec 05 2001 - 15:38:42 PST