[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] Buffer Overflow vulnerability in Windows Display Manager [Suspected]
- To: "ad@xxxxxxxxxxxxxxxx" <ad@xxxxxxxxxxxxxxxx>, lise_moorveld@xxxxxxxxx
- Subject: Re: [Full-disclosure] Buffer Overflow vulnerability in Windows Display Manager [Suspected]
- From: Sumit Siddharth <sumit.siddharth@xxxxxxxxx>
- Date: Tue, 3 Jan 2006 10:00:34 +0530
Dear All,
Sorry for the delayed response.
I had success in exploiting it remotely by a simple javascript
<script>window.open("http://aa...");</script>. But i think it doesnt work
with some drivers.I am using XP ,professional, SP2. and firefox 1.0.6. I am
using a string of about 53,000 char to overflow the buffer.
Thanks
Sumit
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/