Re: [Full-disclosure] Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)

2009-05-27 Thread Jim Parkhurst
If I understand the process, saving the text at [IV. Proof of concept] (following the ~~~... to an .XHTML file, and launch the file using Firefox, I should lose functionality (Browser doesn't respond any longer to any user input, all tabs are no longer accessible, your work if any (hail to the

Re: [Full-disclosure] Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)

2009-05-27 Thread Thierry Zoller
Hi Jim, Read again: Affected : All Firefox versions that support SVG. Then think about what version of Firefox you are using. JP If I understand the process, saving the text at [IV. Proof of JP concept] (following the ~~~... to an .XHTML file, and launch the JP file using Firefox, I should lose

Re: [Full-disclosure] Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)

2009-05-27 Thread Stuart Dunkeld
On Wed, May 27, 2009 at 7:38 PM, Thierry Zoller thie...@zoller.lu wrote: Hi Jim, Read again: Affected : All Firefox versions that support SVG. Then think about what version of Firefox you are using. SVG (including circle) was originally implemented in Firefox 1.5 -

Re: [Full-disclosure] Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)

2009-05-27 Thread Vladimir '3APA3A' Dubrovin
Dear Jim Parkhurst, It may depend on video card and video drivers and/or amount of memory/video memory. 9 years ago there was vulnerability in Internet explorer with displaying scaled image: http://securityvulns.com/advisories/ie5freeze.asp

Re: [Full-disclosure] Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)

2009-05-27 Thread Jim Parkhurst
Silly me. Since 1. There was no version specific information provided by the OP (I looked for that) -and- 2. you tell me that SVG [whatever that is] (including circle) was originally implemented in Firefox 1.5 -and- 3. There is no documentation that SVG has /not/ been removed from Firefox -and-

[Full-disclosure] Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG)

2009-05-26 Thread Thierry Zoller
For those that failed to reproduce, try naming the POC file with an XHTML extension. ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/