Search the archives!
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Full-disclosure] Advisory 03/2007: Multiple Browsers Cross Domain Charset Inheritance Vulnerability
- From: pdp.gnucitizen at googlemail.com (pdp (architect))
- Subject: [Full-disclosure] Advisory 03/2007: Multiple Browsers Cross Domain Charset Inheritance Vulnerability
- Date: Fri, 23 Feb 2007 22:38:13 +0000
indeed On 2/23/07, Michal Zalewski <lcamtuf at dione.ids.pl> wrote: > On Fri, 23 Feb 2007, Stefan Esser wrote: > > > Proof of Concept: > > > > The Hardened-PHP Project is not going to release a proof of concept > > exploit for this vulnerability. > > ...because pretty much no exploit is needed. Scary. Good catch. > > /mz > > _______________________________________________ > Full-Disclosure - We believe in it. > Charter: http://lists.grok.org.uk/full-disclosure-charter.html > Hosted and sponsored by Secunia - http://secunia.com/ > -- pdp (architect) | petko d. petkov http://www.gnucitizen.org
- References:
- Prev by Date: [Full-disclosure] Advisory 03/2007: Multiple Browsers Cross Domain Charset Inheritance Vulnerability
- Next by Date: [Full-disclosure] [ MDKSA-2007:049 ] - Updated spamassassin packages fix DoS vulnerability
- Previous by thread: [Full-disclosure] Advisory 03/2007: Multiple Browsers Cross Domain Charset Inheritance Vulnerability
- Next by thread: [Full-disclosure] Advisory 03/2007: Multiple Browsers Cross Domain Charset Inheritance Vulnerability
- Index(es):