[20620] in bugtraq
Personal Web Sharing remote stop
daemon@ATHENA.MIT.EDU (Jass Seljamaa)
Tue May 15 06:11:25 2001
To: BUGTRAQ@securityfocus.com
Message-ID: <989472763.3afa27fb231df@email.isp.ee>
Date: Thu, 10 May 2001 07:32:43 +0200 (EET)
From: Jass Seljamaa <jass@email.isp.ee>
MIME-Version: 1.0
Content-Type: text/plain
Content-Transfer-Encoding: 8bit
Personal Web Sharing Remote Stop.
Versions affected: Personal Web sharing v1.5.5, probably earlier.
Problem:
Personal Web Sharing extension, which ships with MacOS 9, can\'t handle
a request longer than 6000 characters. A request, which contains 6000 or
more characters seems to stop the file sharing, probably to avoid a
system freeze. Web sharing can easily be started up again in seconds.
Exploit:
http://fileserver/?aaaaaaaaa... [approx. 6000 characters]
Solution: Nothing. Vendor not contacted, I\'m sure he\'s aware of that.
Jass Seljamaa,
jass@isp.ee
-------------------------------------------------
This mail sent through IMP: email.isp.ee