Originally posted here by souleman
I recieved this in a bugtraq mailing. ken'@FTU found a DoS against IE in 2K and XP.... It is a 2 line object that causes IE to crash. Here is Microsofts reply...
[...]
Sounds like typical Microsoft. If you can restart, then you are ok....
<edit>This actually dates back to something MS posted in December 2000</edit>

<rant>
Oh geez... well, I guess this kind of explains their whole perspective on viruses/trojans, as well... as welll as just their whole attitude in the computer world.

Is it just something up there in that Seattle/Redmond air that rots these people's brains and somehow allows them to think up things like "well, if you just don't do that, then we'll pretend it never happened and that your computer still runs fine." Funny how specifically I believe the RFCs say "that which you don't understand you ignore" (in context of the web browser) not "process it and if it blows chunks call it a feature."

Frankly, I think it's a program's job to not crash and to simply recover gracefully no matter what kind of garbage I throw at it. There's absolutely nothing that I should be able to feed a web browser (or an editor, etc) that will cause it to freak out or whatever... at worst, it should just say "I'm sorry Dave, I'm afraid I can't do that."
</rant>

*SIGH*

I was going to cite a couple of examples with car manufacturers in similiar vain (ie. what would happen if they didn't ...) but I guess when you're dealing with people's lives, then... all bets are probably off.