[120951] in cryptography@c2.net mail archive
Mark Dowd's Flash NULL Pointer Vulnerability Exploit
daemon@ATHENA.MIT.EDU (Ryan Phillips)
Fri Apr 18 16:53:10 2008
Date: Fri, 18 Apr 2008 08:38:37 -0700
From: Ryan Phillips <ryan-crypto@trolocsis.com>
To: Cryptography <cryptography@metzdowd.com>
Mail-Followup-To: Cryptography <cryptography@metzdowd.com>
[Moderator's note: Not our usual fare but I'll let it through anyway.
Bottom line is that it describes a new ugly exploit against Flash.
--Perry]
White Paper:
http://documents.iss.net/whitepapers/IBM_X-Force_WP_final.pdf
Decent Summary:
http://www.matasano.com/log/1032/this-new-vulnerability-dowds-inhuman-flash-exploit/
-Ryan
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com