<<< Date Index >>>     <<< Thread Index >>>

Re: Half-Life 2 source code stolen through IE exploit

Actually there have been a couple, just of of the top of my head there's

quartz.dll overflow


urlmon.dll overflow


and then  0day also doesn't exist right ?

I dont think there's cause for this kind of speculation.


----- Original Message ----- 
From: "Thor Larholm" <thor@xxxxxxxx>
To: <spackard@xxxxxxxxxxxx>
Cc: <bugtraq@xxxxxxxxxxxxxxxxx>
Sent: Friday, October 03, 2003 9:10 PM
Subject: RE: Half-Life 2 source code stolen through IE exploit

There hasn't been an Outlook vulnerability for years, the only
vulnerabilities you can exploit these days in Outlook are the ones that
are caused by the fact that Outlook uses IE to render HTML mails.

Hence the speculation on my part ;)


-----Original Message-----
From: spackard@xxxxxxxxxxxx [mailto:spackard@xxxxxxxxxxxx]
Sent: Friday, October 03, 2003 11:12 AM
To: Thor Larholm
Cc: bugtraq@xxxxxxxxxxxxxxxxx
Subject: Re: Half-Life 2 source code stolen through IE exploit

Um, the way that site reads it was a buffer overflow
in Outlook.  The thread's author just mentions IE as an aside.

Regards, Scott

On Fri, 3 Oct 2003, Thor Larholm wrote:

> Date: Fri, 3 Oct 2003 01:19:18 -0700
> From: Thor Larholm <thor@xxxxxxxx>
> To: bugtraq@xxxxxxxxxxxxxxxxx
> Subject: Half-Life 2 source code stolen through IE exploit
> http://www.halflife2.net/forums/showthread.php?s=e6e7d0ce0abe19997425e
> f50fa7fe1df&threadid=10692
> Regards
> Thor Larholm
> PivX Solutions, LLC - Senior Security Researcher
> http://pivx.com/larholm/unpatched - 31 Unpatched IE Security
> Vulnerabilities
