Bug#354066: mozilla-firefox: HTML Parsing Denial of Service Vulnerability

2006-07-30 Thread Alexander Sack
close 354066 1.0.4-2sarge8 thanks On Mon, Jul 31, 2006 at 11:17:31AM +1000, Geoff Crompton wrote: > Alexander Sack wrote: > > AFAICT, this is fixed in sarge8 too. > > > > Can you confirm that the bug is gone for you too? > > > > - Alexander > > > > Yep, confirmed it doesn't crash my browser a

Bug#354066: mozilla-firefox: HTML Parsing Denial of Service Vulnerability

2006-07-30 Thread Geoff Crompton
Alexander Sack wrote: > AFAICT, this is fixed in sarge8 too. > > Can you confirm that the bug is gone for you too? > > - Alexander > Yep, confirmed it doesn't crash my browser anymore. Running 1.0.4-2sarge9. So feel free to close this bug. Thanks! -- Geoff Crompton Debian System Administrat

Bug#354066: mozilla-firefox: HTML Parsing Denial of Service Vulnerability

2006-07-24 Thread Alexander Sack
AFAICT, this is fixed in sarge8 too. Can you confirm that the bug is gone for you too? - Alexander -- GPG messages preferred. | .''`. ** Debian GNU/Linux ** Alexander Sack| : :' : The universal [EMAIL PROTECTED] | `. `' Operating System http://www.asoft

Bug#354066: mozilla-firefox: HTML Parsing Denial of Service Vulnerability

2006-02-22 Thread Eric Dorland
* Geoff Crompton ([EMAIL PROTECTED]) wrote: > Package: mozilla-firefox > Version: 1.0.4-2sarge5 > Severity: important > > No CVE yet, seen at http://www.securityfocus.com/bid/16741. Affects firefox > 1.0 through to 1.5 > > The bid has a html snippet that triggers it, which I've not reproduced her

Bug#354066: mozilla-firefox: HTML Parsing Denial of Service Vulnerability

2006-02-22 Thread Geoff Crompton
Package: mozilla-firefox Version: 1.0.4-2sarge5 Severity: important No CVE yet, seen at http://www.securityfocus.com/bid/16741. Affects firefox 1.0 through to 1.5 The bid has a html snippet that triggers it, which I've not reproduced here. I tried the snippet, and it immediately crashed my browse