<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: IE finds JS in Images (old xss bug!)</title>
	<atom:link href="http://mituzas.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/feed/" rel="self" type="application/rss+xml" />
	<link>http://mituzas.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/</link>
	<description>where ideas come and die</description>
	<lastBuildDate>Fri, 26 Feb 2010 17:15:26 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0-alpha</generator>
	<item>
		<title>By: Tim is now vocal. &#171; domas mituzas: vaporware, inc.</title>
		<link>http://mituzas.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/comment-page-1/#comment-188724</link>
		<dc:creator>Tim is now vocal. &#171; domas mituzas: vaporware, inc.</dc:creator>
		<pubDate>Tue, 16 Dec 2008 10:51:49 +0000</pubDate>
		<guid isPermaLink="false">http://dammit.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/#comment-188724</guid>
		<description>[...] him at Wikimedia. Now he has a blog, where the first entry is already epic by any standards. I mentioned the IE bug, and Tim has done thorough analysis on this one, and similar [...]</description>
		<content:encoded><![CDATA[<p>[...] him at Wikimedia. Now he has a blog, where the first entry is already epic by any standards. I mentioned the IE bug, and Tim has done thorough analysis on this one, and similar [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: kuza55</title>
		<link>http://mituzas.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/comment-page-1/#comment-188423</link>
		<dc:creator>kuza55</dc:creator>
		<pubDate>Sat, 25 Oct 2008 08:34:37 +0000</pubDate>
		<guid isPermaLink="false">http://dammit.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/#comment-188423</guid>
		<description>I just stumbled upon this page again, and I just had a look at the mediawiki fix you link to, and it&#039;s vulnerable.

There are a bunch of other strings you need to filter (which I can&#039;t past here due to wordpress filtering) and you need to check the first 256 bytes, rather than the first 200 bytes.</description>
		<content:encoded><![CDATA[<p>I just stumbled upon this page again, and I just had a look at the mediawiki fix you link to, and it&#8217;s vulnerable.</p>
<p>There are a bunch of other strings you need to filter (which I can&#8217;t past here due to wordpress filtering) and you need to check the first 256 bytes, rather than the first 200 bytes.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: burah</title>
		<link>http://mituzas.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/comment-page-1/#comment-176492</link>
		<dc:creator>burah</dc:creator>
		<pubDate>Fri, 01 Aug 2008 17:43:09 +0000</pubDate>
		<guid isPermaLink="false">http://dammit.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/#comment-176492</guid>
		<description>The link to the fix is broken.  Is another file available elsewhere?</description>
		<content:encoded><![CDATA[<p>The link to the fix is broken.  Is another file available elsewhere?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mmm</title>
		<link>http://mituzas.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/comment-page-1/#comment-93591</link>
		<dc:creator>mmm</dc:creator>
		<pubDate>Mon, 07 Jan 2008 13:51:01 +0000</pubDate>
		<guid isPermaLink="false">http://dammit.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/#comment-93591</guid>
		<description>With PNG files - yes, it is fixed. With other types, e.g., PDF - still exists.</description>
		<content:encoded><![CDATA[<p>With PNG files &#8211; yes, it is fixed. With other types, e.g., PDF &#8211; still exists.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: brion</title>
		<link>http://mituzas.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/comment-page-1/#comment-93053</link>
		<dc:creator>brion</dc:creator>
		<pubDate>Sat, 05 Jan 2008 20:17:08 +0000</pubDate>
		<guid isPermaLink="false">http://dammit.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/#comment-93053</guid>
		<description>We can only hope that other XSS bugs can also be fixed in the same 3-year-plus time window. :)</description>
		<content:encoded><![CDATA[<p>We can only hope that other XSS bugs can also be fixed in the same 3-year-plus time window. :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: kuza55</title>
		<link>http://mituzas.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/comment-page-1/#comment-92762</link>
		<dc:creator>kuza55</dc:creator>
		<pubDate>Fri, 04 Jan 2008 16:43:16 +0000</pubDate>
		<guid isPermaLink="false">http://dammit.lt/2008/01/03/ie-finds-js-in-images-old-xss-bug/#comment-92762</guid>
		<description>IE still does auto-detection, however they have recently added a signature for PNG files (in the MS07-057 patch), so valid PNG files will never be recognised as HTML any more.

Not that IE is perfect or anything, but this issue is not so much of an issue now that JPG/GIF/PNG files will never be detected as html.</description>
		<content:encoded><![CDATA[<p>IE still does auto-detection, however they have recently added a signature for PNG files (in the MS07-057 patch), so valid PNG files will never be recognised as HTML any more.</p>
<p>Not that IE is perfect or anything, but this issue is not so much of an issue now that JPG/GIF/PNG files will never be detected as html.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
