Hi Steffen, On Sun, 7 Mar 2010 21:47:53 +1100 Steffen Joeris <steffen.joe...@skolelinux.de> wrote: > Thanks for the information. Have you been able to reproduce the problem with > IE and checked the patch?
Yes, I got answer from tDiry upstream author, TADA Tadashi and I confirmed problem with IE7, can reproduce it (and patched one prevents XSS). However, IE6 and IE8 seem to be not vulnerable. Should I report exploit as well? If so, secur...@d.o is suitable for that? -- Regards, Hideki Yamane henrich @ debian.or.jp/iijmio-mail.jp http://wiki.debian.org/HidekiYamane
pgpZsY96vpT8H.pgp
Description: PGP signature