BetaONE will rise again!

BetaONE will rise again! (http:\\b1.hcanet.com\forum/index.php)
-   Internet Security and Privacy (http:\\b1.hcanet.com\forum/forumdisplay.php?f=38)
-   -   IE Crashes Using Simple HTML Code (http:\\b1.hcanet.com\forum/showthread.php?t=7875)

KingCobra 4th May 03 04:32 AM

Quote:

Just recently a piece of code has been making its way round the internet that allows people to open others CD drives by simply getting them to vist a website. Annoying as that was there is another piece of code which isn't even really all that advanced that will crash Internet Explorer with the error "Unhandled exception in iexplore.exe (SHLWAPI.DLL): 0xC0000005: Access Violation". Shockingly this line code is very easy to implement into any HTML.

The bug posted at BugTraq on the 21st of April is now spreading around the internet, so watch out for what URLs you click on from friends and in emails for now. The line of code is literally :

Read More for code and a test page which causes a crash.

---------------
< html>
< form>
< input type crash>
< /form>
< /html>
--------------

According to the post at BugTraq this line of code can also crash Outlook, Frontpage and all other Microsoft software that use shlwapi.dll to render HTML. Although this code is simply amazing it is simply a null pointer overwrite so it is not easily exploitable.

Get more information at BugTraq post.

Code:

http://www.securityfocus.com/archive/1/319360/2003-04-20/2003-04-26/0
Test your internet explorer and other browsers if they crash by clicking here:

Code:

http://www.warp2search.net/crash.htm


billybob3 4th May 03 06:09 AM

Yep, crashed my browser. I'd like to know how to open the cdrom drives with a bit of code. That sounds like a great prank.

SlickVic78 4th May 03 06:27 AM

The funny thing is that you don't need "crash" within the input tag to have it crash your browser... Pretty major flaw if you ask me :)

-SlickVic78

KingCobra 4th May 03 06:27 PM

Quote:

Yep, crashed my browser. I'd like to know how to open the cdrom drives with a bit of code. That sounds like a great prank.
There was a link posted on BetaONE about a free cupholder and I used it which did open the CD-Rom drive. I still have the link saved, but will not post it here. Myself and others used it and noticed that it unmounted all your virtual CD-Rom drives. A bug or virus, don't know.

Hunted 4th May 03 07:17 PM

Yep crashed my browser. Very interesting indeed.


All times are GMT +1. The time now is 05:52 PM.

Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.