FireFox DoS exploit public

Published: 2006-05-18
Last Updated: 2006-05-18 22:42:09 UTC
by Swa Frantzen (Version: 1)
An exploit is being made publicly available that creates a DoS situation in up to date FireFox versions.

Now as far as exploits that require javascript to be enabled go, I can't help but feel that a DoS is somewhat lame... If the attacker can already execute scripts, how much worse is getting the cpu load up to 100% ? Moreover the user will soon enough figure it out.

Your best option to mitigate this is to install something like NoScript.

Swa Frantzen -- Section66

