Sunday, February 3, 2008

PoC: Crashing IE with Adobe Flash

Via SecuriNews -

By setting overly long values in the response header of an Adobe Flash video request, it is possible to crash Internet Explorer. Tested Version: 9.0.115.0 on Windows XP with IE 7

---------------------

I can confirm the PoC causes a IE DoS via the Flash9e.ocx (version 9.0.115.0).

No comments:

Post a Comment