Bug#336171: mozilla-firefox: IFRAME Handling Remote Buffer Overflow

2005-11-22 Thread Mike Hommey
forwarded 336171 http://bugzilla.mozilla.org/show_bug.cgi?id=303433 close 336171 1.4.99+1.5beta2.dfsg-1 thanks On Tue, Nov 22, 2005 at 01:24:59PM +, Stephen Gran <[EMAIL PROTECTED]> wrote: > This one time, at band camp, Mike Hommey said: > > On Tue, Nov 22, 2005 at 12:41:21PM +, Stephen G

Bug#336171: mozilla-firefox: IFRAME Handling Remote Buffer Overflow

2005-11-22 Thread Stephen Gran
This one time, at band camp, Mike Hommey said: > On Tue, Nov 22, 2005 at 12:41:21PM +, Stephen Gran > <[EMAIL PROTECTED]> wrote: > > This one time, at band camp, Mike Hommey said: > > > Until it is proven to be exploitable, this can't be critical. > > > > Did you look at the link included? Th

Bug#336171: mozilla-firefox: IFRAME Handling Remote Buffer Overflow

2005-11-22 Thread Mike Hommey
On Tue, Nov 22, 2005 at 12:41:21PM +, Stephen Gran <[EMAIL PROTECTED]> wrote: > This one time, at band camp, Mike Hommey said: > > Until it is proven to be exploitable, this can't be critical. > > Did you look at the link included? There is a proof of concept exploit > on the page under the

Bug#336171: mozilla-firefox: IFRAME Handling Remote Buffer Overflow

2005-11-22 Thread Stephen Gran
This one time, at band camp, Mike Hommey said: > Until it is proven to be exploitable, this can't be critical. Did you look at the link included? There is a proof of concept exploit on the page under the 'exploit' tab. I don't care about severity wars, so I'm not going to reraise the severity of

Bug#336171: mozilla-firefox: IFRAME Handling Remote Buffer Overflow

2005-11-22 Thread Mike Hommey
severity 336171 important thanks Until it is proven to be exploitable, this can't be critical. Mike On Fri, Oct 28, 2005 at 10:50:09AM +0100, Stephen Gran <[EMAIL PROTECTED]> wrote: > Package: mozilla-firefox > Version: 1.0.7-1 > Severity: grave > Tags: security > > 05.41.42 CVE: Not Available

Bug#336171: mozilla-firefox: IFRAME Handling Remote Buffer Overflow

2005-10-28 Thread Stephen Gran
Package: mozilla-firefox Version: 1.0.7-1 Severity: grave Tags: security 05.41.42 CVE: Not Available Platform: Cross Platform Title: Mozilla Firefox IFRAME Handling Remote Buffer Overflow Description: Mozilla Firefox is reported to be vulnerable to a remote buffer overflow issue due to improper bo