Ivan Fratric's Security Blog

Thursday, June 9, 2011

Memory disclosure technique for Internet Explorer

›
Memory disclosure became an important part of exploit development in the light of various protection mechanisms. The ability to read memory ...
329 comments:
Wednesday, October 13, 2010

Embedded Open Type (EOT) fonts remote code execution

›
There is a vulnerability in Microsoft Windows caused by incorrect processing of malformed Embedded Open Type (EOT) fonts. This vulnerability...
7 comments:
Wednesday, October 14, 2009

Windows GDI+ TIFF memory corruption

›
There is a memory corruption vulnerability in TIFF file processing in Microsoft GDI+ that can be used to crash a vulnerable application and ...
2 comments:

Windows Media Audio Voice remote code execution

›
There is a vulnerability in Windows Media Audio Voice decoder distributed with Windows Media Player that allows remote code execution by ope...
2 comments:
Wednesday, April 15, 2009

Internet Explorer 6 history.go() Remote Code Execution

›
There is a vulnerability in the implementation of history.go() function in Internet Explorer 6 exposed via JavaScript. The vulnerability ena...
2 comments:
Wednesday, October 15, 2008

Internet Explorer 6 componentFromPoint() remote memory disclosure and remote code execution

›
There is a bug in Internet Explorer 6 JavaScript implementation enabling remote memory disclosure and remote code execution. The vulnerabili...
11 comments:
Wednesday, September 10, 2008

Windows GDI+ GIF memory corruption

›
There is a memory corruption vulnerability in GIF file processing in Microsoft GDI+ that can be used to crash a vulnerable application and p...
76 comments:
‹
›
Home
View web version
Powered by Blogger.