Re: Internet Explorer URL parsing vulnerability

From: Andreas Plesner Jacobsen (apj_at_mutt.dk)
Date: 12/10/03

  • Next message: Tiago Pierezan Camargo: "Re: Internet Explorer URL parsing vulnerability"
    Date: Wed, 10 Dec 2003 20:26:22 +0100
    To: bugtraq@securityfocus.com
    
    

    On Wed, Dec 10, 2003 at 12:13:57AM +0000, Pedro Castro wrote:
    > >>From: <bugtraq@zapthedingbat.com>
    > >>To: bugtraq@securityfocus.com
    > >>Subject: Internet Explorer URL parsing vulnerability
    > >>
    > >>Internet Explorer URL parsing vulnerability
    > >>Vendor Notified 09 December, 2003
    > >>
    > >># Vulnerability ##########
    > >>There is a flaw in the way that Internet Explorer displays URLs in
    > >>the address bar.
    > >>
    > >>By opening a specially crafted URL an attacker can open a page that
    > >>appears to be from a different domain from the current location.
    > >>
    > >This exploit also applies to the Macintosh version of Explorer
    > >v5.2.3(5815.1)
    >
    > It does also apply to Mozilla Firebird 0.7.

    Not the Linux edition, perhaps only on Windows?

    -- 
    Andreas Plesner Jacobsen | Owe no man any thing...
                             |         	-- Romans 13:8
    

  • Next message: Tiago Pierezan Camargo: "Re: Internet Explorer URL parsing vulnerability"

    Relevant Pages

    • Re: Internet Explorer URL parsing vulnerability
      ... I don't see this problem with Mozilla Firebird 0.7. ... Pedro Castro wrote: ... >> This exploit also applies to the Macintosh version of Explorer ...
      (Bugtraq)
    • Re: Copy and Paste
      ... Explorer or any other Microsoft application. ... 'fix' of "Shut it down and turn it on again" to no avail. ... newsgroup dealing with Internet Explorer for the Macintosh. ...
      (microsoft.public.mac.explorer)
    • Re: Internet Explorer URL parsing vulnerability
      ... > John W. Noerenberg II wrote: ... >> This exploit also applies to the Macintosh version of Explorer ...
      (Bugtraq)

  • Quantcast