[35812] in bugtraq
Re: Denial of Service vulnerability in several Lexmark HTTP servers
daemon@ATHENA.MIT.EDU (Eric Sesterhenn / snakebyte)
Wed Jul 21 19:33:05 2004
From: Eric Sesterhenn / snakebyte <snakebyte@gmx.de>
To: pkr@csis.dk
Cc: bugtraq@securityfocus.com
In-Reply-To: <BAEFKJBBCIPAKCGNHICFGELGDDAA.pkr@csis.dk>
Content-Type: text/plain
Message-Id: <1090369546.4360.2.camel@alice>
Mime-Version: 1.0
Date: Wed, 21 Jul 2004 02:25:46 +0200
Content-Transfer-Encoding: 7bit
On Tue, 2004-07-20 at 22:46, Peter Kruse wrote:
> Denial of Service vulnerability in several Lexmark HTTP servers.
>
> Several Lexmark network printers is shipped with a build-in HTTP server for
> administrative tasks. The webserver software is vulnerable to a Denial of
> Service attack that will force the webserver to restart and/or stop taking
> requests.
This issue is known for quite some time now. Two months ago I released a
PoC on my page.
Greetings Eric
--
www.cobra-basket.de -- just my stuff