<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Internet Explorer 0day Exploit</title>
	<atom:link href="http://larholm.com/2007/07/10/internet-explorer-0day-exploit/feed/" rel="self" type="application/rss+xml" />
	<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/</link>
	<description>Me, myself and I</description>
	<pubDate>Thu, 07 Aug 2008 19:55:42 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>By: Techzi &#187; Blog Archive &#187; New URI browser flaws worse than first thought</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1715</link>
		<dc:creator>Techzi &#187; Blog Archive &#187; New URI browser flaws worse than first thought</dc:creator>
		<pubDate>Wed, 15 Aug 2007 20:12:30 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1715</guid>
		<description>[...] bugs have become a hot topic over the past month ever since researcher Thor Larholm showed how a browser could be tricked into sending malformed data to Firefox using this technology. This bug allowed an attacker to run unauthorized software on a [...]</description>
		<content:encoded><![CDATA[<p>[...] bugs have become a hot topic over the past month ever since researcher Thor Larholm showed how a browser could be tricked into sending malformed data to Firefox using this technology. This bug allowed an attacker to run unauthorized software on a [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: New URI browser flaws worse than first thought</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1714</link>
		<dc:creator>New URI browser flaws worse than first thought</dc:creator>
		<pubDate>Wed, 15 Aug 2007 20:00:57 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1714</guid>
		<description>[...] bugs have become a hot topic over the past month ever since researcher Thor Larholm showed how a browser could be tricked into sending malformed data to Firefox using this technology. This bug allowed an attacker to run unauthorized software on a [...]</description>
		<content:encoded><![CDATA[<p>[...] bugs have become a hot topic over the past month ever since researcher Thor Larholm showed how a browser could be tricked into sending malformed data to Firefox using this technology. This bug allowed an attacker to run unauthorized software on a [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Official Blog for Goviphosting.com &#187; Mozilla rushes out second Firefox patch this month</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1353</link>
		<dc:creator>Official Blog for Goviphosting.com &#187; Mozilla rushes out second Firefox patch this month</dc:creator>
		<pubDate>Wed, 01 Aug 2007 17:21:23 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1353</guid>
		<description>[...] in the month security researcher Thor Larholm showed how to exploit this type of problem in order to make Internet Explorer and Firefox jointly launch [...]</description>
		<content:encoded><![CDATA[<p>[...] in the month security researcher Thor Larholm showed how to exploit this type of problem in order to make Internet Explorer and Firefox jointly launch [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Thor Larholm</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1347</link>
		<dc:creator>Thor Larholm</dc:creator>
		<pubDate>Wed, 01 Aug 2007 13:08:04 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1347</guid>
		<description>Alain, the link in comment #91 only deals with how Internet Explorer passes on the URI component.

Internet Explorer will by design pass the unescaped URI to the protocol handler. As Microsoft has stated several times, this is not a behavior that they intend to change, despite the new IE7 URI flaws.

Regards
Thor Larholm</description>
		<content:encoded><![CDATA[<p>Alain, the link in comment #91 only deals with how Internet Explorer passes on the URI component.</p>
<p>Internet Explorer will by design pass the unescaped URI to the protocol handler. As Microsoft has stated several times, this is not a behavior that they intend to change, despite the new IE7 URI flaws.</p>
<p>Regards<br />
Thor Larholm</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alain Saint-Etienne</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1342</link>
		<dc:creator>Alain Saint-Etienne</dc:creator>
		<pubDate>Wed, 01 Aug 2007 10:49:01 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1342</guid>
		<description>Mozilla foundation has published yesterday a new version of Firefox, v2.0.0.6, that is supposed to fix the vulnerability (comments #93, #94) :
- http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.6
- http://www.mozilla.org/security/announce/2007/mfsa2007-27.html

But is this fix enough, if -- as stated in comment #95 -- the Windows component that handles protocol handlers still unescapes the URI that Firefox now escapes ?</description>
		<content:encoded><![CDATA[<p>Mozilla foundation has published yesterday a new version of Firefox, v2.0.0.6, that is supposed to fix the vulnerability (comments #93, #94) :<br />
- <a href="http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.6" rel="nofollow">http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.6</a><br />
- <a href="http://www.mozilla.org/security/announce/2007/mfsa2007-27.html" rel="nofollow">http://www.mozilla.org/security/announce/2007/mfsa2007-27.html</a></p>
<p>But is this fix enough, if &#8212; as stated in comment #95 &#8212; the Windows component that handles protocol handlers still unescapes the URI that Firefox now escapes ?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mozilla Rushes Out Another Firefox Patch &#171; TechTitans™</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1308</link>
		<dc:creator>Mozilla Rushes Out Another Firefox Patch &#171; TechTitans™</dc:creator>
		<pubDate>Tue, 31 Jul 2007 13:33:23 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1308</guid>
		<description>[...] in the month security researcher Thor Larholm showed how to exploit this type of problem in order to make Internet Explorer and Firefox jointly launch [...]</description>
		<content:encoded><![CDATA[<p>[...] in the month security researcher Thor Larholm showed how to exploit this type of problem in order to make Internet Explorer and Firefox jointly launch [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mozilla rushes out second Firefox patch this month</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1307</link>
		<dc:creator>Mozilla rushes out second Firefox patch this month</dc:creator>
		<pubDate>Tue, 31 Jul 2007 11:53:35 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1307</guid>
		<description>[...] in the month security researcher Thor Larholm showed how to exploit this type of problem in order to make Internet Explorer and Firefox jointly launch [...]</description>
		<content:encoded><![CDATA[<p>[...] in the month security researcher Thor Larholm showed how to exploit this type of problem in order to make Internet Explorer and Firefox jointly launch [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: U R Insecure - how URI exploits are changing the webappsec landscape &#124; GNUCITIZEN</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1168</link>
		<dc:creator>U R Insecure - how URI exploits are changing the webappsec landscape &#124; GNUCITIZEN</dc:creator>
		<pubDate>Fri, 27 Jul 2007 15:01:41 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1168</guid>
		<description>[...] http://larholm.com/2007/07/10/internet-explorer-0day-exploit/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://larholm.com/2007/07/10/internet-explorer-0day-exploit/" rel="nofollow">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mozilla flaw attack code published &#171; TechTitans™</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1129</link>
		<dc:creator>Mozilla flaw attack code published &#171; TechTitans™</dc:creator>
		<pubDate>Thu, 26 Jul 2007 15:21:47 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1129</guid>
		<description>[...] URL handler has been a headache for Mozilla ever since security researcher Thor Larholm showed that the way IE (Internet Explorer) and Firefox interact with each other could be exploited to [...]</description>
		<content:encoded><![CDATA[<p>[...] URL handler has been a headache for Mozilla ever since security researcher Thor Larholm showed that the way IE (Internet Explorer) and Firefox interact with each other could be exploited to [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: B?ad w Firefox, nieprawid?owe filtrowanie wyra?e? w linkach. &#124; tPython</title>
		<link>http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1122</link>
		<dc:creator>B?ad w Firefox, nieprawid?owe filtrowanie wyra?e? w linkach. &#124; tPython</dc:creator>
		<pubDate>Thu, 26 Jul 2007 14:09:59 +0000</pubDate>
		<guid isPermaLink="false">http://larholm.com/2007/07/10/internet-explorer-0day-exploit/#comment-1122</guid>
		<description>[...] przy pomocy IE polega? na utworzeniu odpowiednio spreparowanego odno?nika, którego naci?ni?cie powodowa?o uruchomienie Firefoxa wraz dodatkowymi atrybutami [...]</description>
		<content:encoded><![CDATA[<p>[...] przy pomocy IE polega? na utworzeniu odpowiednio spreparowanego odno?nika, którego naci?ni?cie powodowa?o uruchomienie Firefoxa wraz dodatkowymi atrybutami [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
