Closed Bug 317353 Opened 19 years ago Closed 19 years ago

By clicking on the Windows SP2 link it can cause firefox to stop responding

Categories

(Firefox :: General, defect)

x86
Windows XP
defect
Not set
normal

Tracking

()

RESOLVED DUPLICATE of bug 317334

People

(Reporter: anubis085, Unassigned)

References

()

Details

User-Agent:       Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8) Gecko/20051111 Firefox/1.5
Build Identifier: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8) Gecko/20051111 Firefox/1.5

This is supposed to be a Proof of concept exploit for code execution on windows XP SP2, but when you click on it in Firefox, it sends CPU usage to 100% and added around 60-75 MB in my Page file usage output in windows task manager.  The first time I clicked on the link, it froze firefox, and it took about a minute to end the process after I used task manager to end it.  Immediately after firefox.exe ended, a screen opened that said my minimum virtual memory was being exceeded and my pagefile would be increased.

Reproducible: Always

Steps to Reproduce:
1.On the website provided click on the Windows XP (all service packs) link- provided this is the version of the OS you are using.
2.A small box will pop up and the problem occurs.
3.

Actual Results:  
It sent CPU usage to 100% and added around 60-75 MB in my Page file usage output in windows task manager.

Expected Results:  
The software should not have frozen, I'm not sure exactly what it should do though.

This is my first bug report so I'm sorry if this wastes time or effort.  I don't know very much about html code and know nothing about programming so hopefully this has all the information needed to solve the issue.

I am using Noia 2.0 (extreme) version 2.97
Clearing confidential flag, this is a public exploit.

Firefox eventually does respond again, but it keeps us busy enough to avoid the normal "unresponsive script" detection.
Group: security
Status: UNCONFIRMED → NEW
Ever confirmed: true
You're too late :)
Someone else beat you to it with filing the bug.

*** This bug has been marked as a duplicate of 317334 ***
Status: NEW → RESOLVED
Closed: 19 years ago
Resolution: --- → DUPLICATE
You need to log in before you can comment on or make changes to this bug.