Yarr The Pirate!
https://w.yarrthepirate.com/phpbb3/

For those that use Firefox
https://w.yarrthepirate.com/phpbb3/viewtopic.php?f=5&t=3521
Page 1 of 1

Author:  Matti [ Fri Feb 25, 2005 2:14 pm ]
Post subject:  For those that use Firefox

Heads up from another forum I whore...

Quote:
__Summary

Remember my Internet Explorer "scrollbar exploit" based on http-equiv's
"What a Drag"? When will people ever learn that "unusual user interaction"
can be hidden by common tasks...

Let's combine fireflashing, firetabbing, xul and javascript to run arbitrary
code by dragging a scrollbar two times.

__Proof-of-Concept

http://www.mikx.de/firescrolling/

__Status

The exploit is based on multiple vulnerabilities:

bugzilla.mozilla.org #280664 (fireflashing)
bugzilla.mozilla.org #280056 (firetabbing)
bugzilla.mozilla.org #281807 (firescrolling)

Upgrade to Firefox 1.0.1 or disable javascript.

The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2005-0527 to this issue.

__Affected Software

Tested with Firefox 1.0 on Windows and Linux (Fedora Core)

__Contact Informations

Michael Krax <mikx@mikx.de>
http://www.mikx.de/?p=11



In short: Go upgrade to 1.0.1 asap. :) [/code]

Author:  Ponuh [ Fri Feb 25, 2005 6:08 pm ]
Post subject: 

Ooo. I should do that for my PC

and since FIrefox copied the living shit out of safari i should go update that too LOL

Page 1 of 1 All times are UTC - 5 hours
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group
http://www.phpbb.com/