Closed Bug 657108 Opened 13 years ago Closed 13 years ago

XML-Parser crashes on malformed XML embedded through iframe.

Categories

(Core :: XML, defect)

x86_64
Windows 7
defect
Not set
critical

Tracking

()

RESOLVED DUPLICATE of bug 485941

People

(Reporter: alexander, Unassigned)

References

()

Details

User-Agent:       Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1
Build Identifier: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1

Take a look at
http://mrx3n.de/stuff/mozilla/xml9459.xml

(and don't use Firefox to do so)

Reproducible: Always

Steps to Reproduce:
1. Visit the Website that embeds the XML page
2. Firefox crashes
3. ???
4. PROFIT

Actual Results:  
Crash.

Expected Results:  
Show "Malformed XML"-Message. Which it does for a few secs.

Originally an exploit for Chrome 4
http://www.exploit-db.com/exploits/11639/
Summary: XML-Parser crashes on malformed XML embedded though iframe. → XML-Parser crashes on malformed XML embedded through iframe.
Group: core-security
Status: UNCONFIRMED → RESOLVED
Closed: 13 years ago
Resolution: --- → DUPLICATE
You need to log in before you can comment on or make changes to this bug.