More discussion on the Firefox 1.5.0.3 “image bug”



There’s quite a bit more discussion on a DOS bug in Firefox 1.5.0.3, the link goes to a site where they’ve confirmed the issue and there is a link there to a POC, so be cautious. It turns out that using javascript, image tags can be made to have a mailto: link which can automatically launch tons of instances of whatever default mailhandler a system has (essentially one for each image tag.) Right now, this sounds more like a Denial of Service risk, as I don’t see at this point any evidence that anything WORSE could be done than really freezing up the system with too many copies of the mail program open.


There have been rumblings about this since at least May 6th… Sans (Incidents.org) had this to say about a workaround…

One possible workaround is to turn off automatic startup of your e-mai application in Firefox. To do so, enter in the URL bar: about:config . This will show a long list of configuration options. Search for ‘warn-external.mailto’ (e.g. use the ‘Filter’ option). By default, this value should be set to “false”. Click on the line to toggle it to “true” (it will be bold if it is not set to the default).Now, whenever you click on a mailto: link, you will first be asked if you would like to start your e-mail application. In the case of the exploit this will keep your system responsive, even though you may still have to click on all the dialogs. Disabling javascript is another option, or disabling mailto: link all together. But these options are more intrusive.

It doesn’t seem to be a high risk vulnerability – but a low danger, annoyance denial of service risk.

Popularity: 1% [?]

PDF Creator    Send article as PDF   
Blog Traffic Exchange Related Posts
  • Mustek ScanExpress A3 USB 1200 Pro Scanners... I had a nice microtek scanner that for the last year has refused to work and I decided to replace it. I have a project coming up that would require scanning some larger format pages so I was really pleased to find a $165 A3 scanner (usually the larger......
  • List of Open Source software Packages The following is long, but likely not complete. This is a list of open-source software packages: Computer software licensed under an open-source license. Software that fits the Free software definition may be more appropriately called free software; the GNU project in particular objects to their works being referred to as......
  • Exploit for Unpatched Internet Explorer vulnerability Well.... buckle your seatbelts it's going to be a bumpy start to the week. the securityfix as well as incidents.org are reporting on exploit code that has been released that takes advantage of an unpatched Internet Explorer vulnerability. According to the Sans institute diary entry... they have tested the exploit......
Blog Traffic Exchange Related Websites
  • Malware found in Lenovo software package Hii, I just got the news. Computer maker Lenovo is shipping a malware-infected software package to Windows XP users, according to warning from anti-virus researchers at Microsoft. The malicious file was identified by Microsoft as Win32/Meredrop, a Trojan dropper that is used to install and execute multiple malicious executables on......
  • Handyman - Chrome Extension of the Day Nothing is as valuable as Real Estate these days, so why should computers make an exception? I always try to find a way to maximize the screen space I get by closing unnecessary gadgets, tweaking windows, adjusting resolution, minimizing font size and so on. It irks me to scroll in......
  • SEO Tips for Blog Traffic Generation While it may be true to say content is king when it comes to blog publishing, the truth is that writing your blog content is not by far the only thing that you should be focusing on when it comes to attracting a readership following. Quality SEO, or search engine......

Similar Posts


See what happened this day in history from either BBC Wikipedia
Search:
Keywords:
Amazon Logo

Comments are closed.


Switch to our mobile site