[4715] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Netscape Exploit

daemon@ATHENA.MIT.EDU (John Robert LoVerso)
Tue Jun 17 00:03:22 1997

Date: 	Mon, 16 Jun 1997 16:28:10 -0400
Reply-To: John Robert LoVerso <john@LOVERSO.SOUTHBOROUGH.MA.US>
From: John Robert LoVerso <john@LOVERSO.SOUTHBOROUGH.MA.US>
X-To:         Edwin Li-Kai Liu <robin.hood@IBM.NET>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To:  Message from Edwin Li-Kai Liu <robin.hood@IBM.NET>
              <33A3C968.52894A6E@ibm.net> .

Edwin,

I find this message thread annoying because no one here actually
knows the details of the bug or how to exploit it, yet the subject
line hints otherwise.  I give you, Edwin, great credit for all the
work you did in actually trying something before saying "just use
file upload and JavaScript", because it does not just work that way.

As history, I *found* a bug with JavaScript and file upload about
16 months ago in Netscape 2.01, just a few days after that release.
I did not release details of that bug until 2.02 was released.
However, I never got a $1000 "bounty" for that bug (although I did
for something earlier).  If you've an old browser around (as this
was fixed around 3.0b2, I think), you can try it at

        http://www.opengroup.org/~loverso/javascript/

and look for the entry dated March 21, 1996.

John

home help back first fref pref prev next nref lref last post