[23404] in bugtraq

home help back first fref pref prev next nref lref last post

Re: IE Denial of service (sorta)

daemon@ATHENA.MIT.EDU (Jeff Sampson)
Wed Dec 5 17:18:19 2001

Message-ID: <001d01c17dd6$ead84580$0a01a8c0@lava.net>
From: "Jeff Sampson" <screff@routing.org>
To: <bugtraq@securityfocus.com>
Date: Wed, 5 Dec 2001 11:50:53 -1000
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit

crash.shtml - works against IE 6.0.2600.0000 on Win98SE but it takes a while
to hit
                 100%.  I think this is related to the fact that I'm
checking from a dialup,
                  and the flood of characters takes some time to download.

crash2.shtml - worked immediately against the above system, however I was
easily able
                  to stop it by hitting the stop button.

In my opinion I'd classify this more as an annoyance rather than a Denial of
service.  It
does seem to have potential to be much more effected when viewed from a
faster connection.

-Jeff


home help back first fref pref prev next nref lref last post