BetaONE will rise again!


 
Prev Previous Post   Next Post Next
  #1  
Old 4th May 03, 05:32 AM
KingCobra's Avatar
KingCobra KingCobra is offline
Senior Member
 
Join Date: Dec 2001
Location: Illinois
Posts: 2,409
KingCobra is on a distinguished road
Send a message via Yahoo to KingCobra
Quote:
Just recently a piece of code has been making its way round the internet that allows people to open others CD drives by simply getting them to vist a website. Annoying as that was there is another piece of code which isn't even really all that advanced that will crash Internet Explorer with the error "Unhandled exception in iexplore.exe (SHLWAPI.DLL): 0xC0000005: Access Violation". Shockingly this line code is very easy to implement into any HTML.

The bug posted at BugTraq on the 21st of April is now spreading around the internet, so watch out for what URLs you click on from friends and in emails for now. The line of code is literally :

Read More for code and a test page which causes a crash.

---------------
< html>
< form>
< input type crash>
< /form>
< /html>
--------------

According to the post at BugTraq this line of code can also crash Outlook, Frontpage and all other Microsoft software that use shlwapi.dll to render HTML. Although this code is simply amazing it is simply a null pointer overwrite so it is not easily exploitable.

Get more information at BugTraq post.

Code:
http://www.securityfocus.com/archive/1/319360/2003-04-20/2003-04-26/0
Test your internet explorer and other browsers if they crash by clicking here:

Code:
http://www.warp2search.net/crash.htm
__________________
Reply With Quote
 


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT +1. The time now is 09:04 AM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.