Weborf HTTP Header Processing Denial Of Service Vulnerability
BID:41064
Info
Weborf HTTP Header Processing Denial Of Service Vulnerability
| Bugtraq ID: | 41064 |
| Class: | Input Validation Error |
| CVE: |
CVE-2010-2435 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 23 2010 12:00AM |
| Updated: | Apr 13 2015 09:02PM |
| Credit: | Reported by the vendor |
| Vulnerable: |
Galileo Students Team Weborf 0.12.1 |
| Not Vulnerable: |
Galileo Students Team Weborf 0.12.3 |
Discussion
Weborf HTTP Header Processing Denial Of Service Vulnerability
Weborf is prone to a denial-of-service vulnerability.
Remote attackers can exploit this issue to cause the application to crash, denying service to legitimate users.
Weborf 0.12.1 is vulnerable; prior versions may also be affected.
Weborf is prone to a denial-of-service vulnerability.
Remote attackers can exploit this issue to cause the application to crash, denying service to legitimate users.
Weborf 0.12.1 is vulnerable; prior versions may also be affected.
Exploit / POC
Weborf HTTP Header Processing Denial Of Service Vulnerability
An attacker can use readily available network utilities to exploit this issue.
An attacker can use readily available network utilities to exploit this issue.
Solution / Fix
Weborf HTTP Header Processing Denial Of Service Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Weborf HTTP Header Processing Denial Of Service Vulnerability
References:
References:
- Weborf 0.12.2 Fix (Galileo Student Team)
- Weborf: Google Code (Galileo Student Team)