Mon, 17 Oct 2005 06:12:09 +0100
Extract:
milw0rm.com have released proof of concept code for a denial of service exploit which apparently affects all versions of the Mozilla Foundations popular Firefox browser from version 1.0.7 downward (For the dim this INCLUDES Firefox 1.0.7). If this exploit has made it out into, or indeed been retrieved from the wild is unknown at this time. However it is clear that this exploit will indeed need patching as soon as possible - it does cause a nasty software loop/crash.
Editorial Comment:
It is apparent from user reports that Firefox 1.5 beta 2 is NOT affected by this vulnerability. Whitedust suggest that upgrading to the new Beta version will render this issue null (although possibly open the door for un discovered Mozilla 1.5 Beta 2 issues).
Source:
http://www.whitedust.net/speaks/1432/
The Link Contains the brief information above along with a link to the proof of concept code and a seperate link to test if your browser is vulnerable to the denial of service attack.