Working Resources BadBlue 1.7.3 - GET Denial of Service



EKU-ID: 27105 CVE: CVE-2002-1023;OSVDB-8612 OSVDB-ID:
Author: Matthew Murphy Published: 2002-07-08 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/5187/info

Working Resources BadBlue is reportedly prone to a denial of service condition when handling malformed GET requests.

It has been discovered that BadBlue does not properly handle requests that do not adhere to RFC standards. When a user connects to BadBlue via the listening port, and issues a "GET HTTP/1.0" request without specifying a document, BadBlue becomes unstable. In most cases, the process will crash.

GET HTTP/1.0

GET HTTP/1.0