Links Malformed Table Denial Of Service Vulnerability
BID:11442
Info
Links Malformed Table Denial Of Service Vulnerability
| Bugtraq ID: | 11442 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2004-1616 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 18 2004 12:00AM |
| Updated: | Jul 12 2009 08:06AM |
| Credit: | Discovery is credited to Michal Zalewski. |
| Vulnerable: |
Twibright Labs Links 0.99 Twibright Labs Links 0.98 Twibright Labs Links 0.97 Twibright Labs Links 0.96 Twibright Labs Links 0.95 Twibright Labs Links 0.94 Twibright Labs Links 0.93 Twibright Labs Links 0.92 Twibright Labs Links 0.91 |
| Not Vulnerable: | |
Discussion
Links Malformed Table Denial Of Service Vulnerability
Links is prone to a denial of service vulnerability when handling HTML tables of excessive size. This issue may cause excessive resource consumption on the host computer.
Links is prone to a denial of service vulnerability when handling HTML tables of excessive size. This issue may cause excessive resource consumption on the host computer.
Exploit / POC
Links Malformed Table Denial Of Service Vulnerability
This issue was discovered with the mangleme Web fuzzer:
http://lcamtuf.coredump.cx/soft/mangleme.tgz
The following proof-of-concept is also available:
http://lcamtuf.coredump.cx/mangleme/gallery/links_die1.html
This issue was discovered with the mangleme Web fuzzer:
http://lcamtuf.coredump.cx/soft/mangleme.tgz
The following proof-of-concept is also available:
http://lcamtuf.coredump.cx/mangleme/gallery/links_die1.html
Solution / Fix
Links Malformed Table Denial Of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.