Mozilla FireFox DoS Exploit Code Released

by admin October 17, 2005 at 3:02 pm

A non-critical bug in the Mozilla FireFox browser can be used to trigger a Denial of Service (DoS) attack, according to Whitedust Security.

Whitedust Security has publicly posted proof of concept exploit code as well as simple test link here to prove its assertion.

The bug that the exploit code triggers is not unknown to Mozilla. Since August, it has been listed on Bugzilla, Mozilla’s bug tracking system.,

Bugzilla Bug 303433 was originally reported by Tom Ferris of security-protocols.com and has the title of “Firefox 1.0.6 segfaults on this malformed .html page.”

Security firm Secunia posted an advisory on the bug on October 10th, and gave the “Mozilla Firefox Iframe Size Denial of Service Weakness,” bug a rating of “non-critical.”

Read more: internetnews.com