[6424] in bugtraq

home help back first fref pref prev next nref lref last post

Eudora Pro/IE bugs

daemon@ATHENA.MIT.EDU (Mike Zimmerman)
Tue Mar 31 02:33:02 1998

Date: 	Tue, 31 Mar 1998 01:04:51 -0500
Reply-To: Mike Zimmerman <mike@MOON2.WEB2000.NET>
From: Mike Zimmerman <mike@MOON2.WEB2000.NET>
To: BUGTRAQ@NETSPACE.ORG

In reference to the browser code bugs being posted, it should be noted
that Eudora Pro 4.x(and possibly other versions,  don't know the
development cycle), which uses IE 3.x or 4.x to view emails with embedded
HTML, is vulnerable to any hangs or crashes associated with those
browsers.

EXPLOIT: Simply send an email containing any of the posted exploits
directly in the body of the message to the victim.

FIX: In the Tools Menu under options, uncheck "Use Microsoft's viewer" in
the Viewing Mail section.

(Thanks to all of you who post your exploit code directly in your messages
and crashing my Eudora for finding this. :P)


Mike Zimmerman

home help back first fref pref prev next nref lref last post