Re: greek characters buffer overflow, AGAIN!

From: xfesty (xfestyat_private)
Date: Tue Apr 16 2002 - 10:25:23 PDT

  • Next message: Jim Kovalchuk: "Re: Oracle Databases Allow HTML/SQL injection"

    Loads no problems on IE 6.0.
    
    I don't see the problem here - Microsoft have obviously addressed the
    issue... IE 5.0 is very old.
    
    - Ryan
    
    On Tue, 2002-04-16 at 19:40, MegaHz wrote:
    > 
    > One year ago I discovered a buffer overflow in the address bar of IE 5.0 using greek characters, look at:
    > http://www.cyhackportal.com/modules.php?name=News&file=article&sid=81
    > 
    > 
    > Today I discover this:
    > http://www.bestbuy.com.cy/cgi-bin/buy.storefront/<<<\x1388>>>/Product/View/CMPL_00_GDXbox
    > 
    > (do not use: <<<,>>>)
    > and yes, Internet explorer, exited by itself. Very strange. I don't know why, pls try that 
    > I uploaded here a sample html, 
    > http://megahz.cyhackportal.com/hey.html
    > 
    > I test it out on 3 pcs I have at my work, but there was only one that seemed to have the bug, and resolve on closing the IE.
    > 
    > maybe is bestbuy's problem, and the software they use,
    > the original url was:
    > http://www.bestbuy.com.cy/cgi-bin/buy.storefront/3cbbef7d0794c70e27a4c30e950106f2/Product/View/CMPL_00_GDXbox
    > 
    > 
    > maybe is storefronts problem...
    > 
    > 
    > pls test it out, and let me know,
    > 
    > 
    > 
    > Thank you,
    > 
    > 
    > /*
    >  * Andreas Constantinides (MegaHz)
    >  * http://www.cyhackportal.com
    >  *
    >  */
    > 
    -- 
    :: Ryan Verner           xfesty/irc.oublinet.net ::
    :: ICQ 76626240       MSN dev.festyat_private ::
    :: EverQuest, Tholuxe Paells:    Mummer, Arrjart ::
    :: <xfestyat_private>   <ryanat_private> ::
    
           "Spiral out.  Keep going, going..."
    



    This archive was generated by hypermail 2b30 : Tue Apr 16 2002 - 12:48:43 PDT