[20620] in bugtraq

home help back first fref pref prev next nref lref last post

Personal Web Sharing remote stop

daemon@ATHENA.MIT.EDU (Jass Seljamaa)
Tue May 15 06:11:25 2001

To: BUGTRAQ@securityfocus.com
Message-ID: <989472763.3afa27fb231df@email.isp.ee>
Date: Thu, 10 May 2001 07:32:43 +0200 (EET)
From: Jass Seljamaa <jass@email.isp.ee>
MIME-Version: 1.0
Content-Type: text/plain
Content-Transfer-Encoding: 8bit

Personal Web Sharing Remote Stop.

Versions affected: Personal Web sharing v1.5.5, probably earlier.

Problem:	
Personal Web Sharing extension, which ships with MacOS 9, can\'t handle 
a request longer than 6000 characters. A request, which contains 6000 or 
more characters seems to stop the file sharing, probably to avoid a 
system freeze. Web sharing can easily be started up again in seconds. 

Exploit:
http://fileserver/?aaaaaaaaa... [approx. 6000 characters]

Solution: Nothing. Vendor not contacted, I\'m sure he\'s aware of that.




Jass Seljamaa,
jass@isp.ee


-------------------------------------------------
This mail sent through IMP: email.isp.ee


home help back first fref pref prev next nref lref last post