Multiple Vendor Algorithmic Complexity Denial of Service Vulnerability
BID:7756
Info
Multiple Vendor Algorithmic Complexity Denial of Service Vulnerability
| Bugtraq ID: | 7756 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | May 29 2003 12:00AM |
| Updated: | May 29 2003 12:00AM |
| Credit: | The discovery of these vulnerabilities has been credited to Scott A Crosby and Dan S Wallach. |
| Vulnerable: |
TCL/TK TCL/TK 8.4.3 Sun JRE (Windows Production Release) 1.4.1 _02 Sun JRE (Windows Production Release) 1.4.1 _01 Sun JRE (Windows Production Release) 1.4.1 Sun JRE (Solaris Production Release) 1.4.1 _02 Sun JRE (Solaris Production Release) 1.4.1 _01 Sun JRE (Solaris Production Release) 1.4.1 Sun JRE (Linux Production Release) 1.4.1 _02 Sun JRE (Linux Production Release) 1.4.1 _01 Sun JRE (Linux Production Release) 1.4.1 Sun Java 2 Standard Edition SDK 1.4.1 Python Software Foundation Python 2.3 b1 Mozilla Browser 1.3.1 Linux kernel 2.4.20 Larry Wall Perl 5.8 Larry Wall Perl 5.6.1 GNOME glib 2.2.1 fprobe fprobe 1.0.6 Bro Bro Intrusion Detection System 0.8 a20 |
| Not Vulnerable: | |
Discussion
Multiple Vendor Algorithmic Complexity Denial of Service Vulnerability
Multiple vendor applications have been reported prone to algorithmic complexity denial of service attacks. The problem occurs due to the known or predictable use of weak hashing algorithms. By calculating a specially constructed attack, using low amounts of data, an attacker may be capable of triggering a denial of service within a target application. This may be due to the algorithm experiencing its worst case scenario calculations for a large period of time.
** Sun Java 1.4.1 releases are reported to be affected by this issue. Deterministic hashing appears to be part of the language specification for 1.4.1 and possibly other releases.
Multiple vendor applications have been reported prone to algorithmic complexity denial of service attacks. The problem occurs due to the known or predictable use of weak hashing algorithms. By calculating a specially constructed attack, using low amounts of data, an attacker may be capable of triggering a denial of service within a target application. This may be due to the algorithm experiencing its worst case scenario calculations for a large period of time.
** Sun Java 1.4.1 releases are reported to be affected by this issue. Deterministic hashing appears to be part of the language specification for 1.4.1 and possibly other releases.
Exploit / POC
Multiple Vendor Algorithmic Complexity Denial of Service Vulnerability
A variety of proof of concepts have been made available. See the attached "Denial of Service via Algorithmic Complexity Attacks" reference for further details.
A variety of proof of concepts have been made available. See the attached "Denial of Service via Algorithmic Complexity Attacks" reference for further details.
Solution / Fix
Multiple Vendor Algorithmic Complexity Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.