Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

2008-09-10 Thread Julien Stuby
Razi Shaban a écrit : I can confirm that the PoC _does_ crash Chrome 0.2.149.29 Build 1798 running on XP SP2. Perhaps it's the build? -- Razi I can confirm that the PoC _doesn't_ crash Chrome 0.2.149.29 Build 1798 on XP SP3 -- Julien

Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

2008-09-09 Thread Rotem Kerner
this successfully freezed my chrome on both Vista XP platforms dont move your mouse for a sec while its laying on the white background and it should freeze. Exodus. http://www.blackhat.org.il imagination is more importan than knowledge I could not duplicate this with either Chrome

Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

2008-09-09 Thread Razi Shaban
I can confirm that the PoC _does_ crash Chrome 0.2.149.29 Build 1798 running on XP SP2. Perhaps it's the build? -- Razi

Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

2008-09-09 Thread Mike Duncan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Yeah, when you do that, it is generating a tool-tip to display. Additionally, the large number of iterations this script must run through may cause a crash due to resource exhaustion. Have you tested further to see what values actually produce the

Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

2008-09-08 Thread Rotem Kerner
a vulnerability was found which allow a remote attacker to freeze the users browser by convincing him to visit a malicious web page Chrome(0.2.149.27) Denial of Service(Freeze) exploit poc: http://www.blackhat.org.il/exploits/chrome-freeze-exploit.html Exodus.

Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

2008-09-08 Thread a
Missing opening BODY tag. What it is supposed to do? 31337 iterations of any loop...

Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

2008-09-08 Thread Wellington Wagner F. Sarmento
I could not duplicate this with either Chrome v0.2.149.29. I think this problem was now solved. -- _Wellington Wagner F. Sarmento Where is the wisdom we have lost in knowledge? Where is the knowledge we have lost in information? T.S. Eliot 2008/9/8 Rotem Kerner [EMAIL PROTECTED]: a