OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Medium level security hole in FreeProxy

From: Tim Brown (timbnth-dimension.org.uk)
Date: Tue Feb 06 2007 - 17:08:33 CST


The FreeProxy HTTP proxy server suffers from a denial of service condition
which causes the server to hang. This occurs when an attacker makes a
request for the hostname/portnumber combination in use by the server itself.
The vendor was notified on the 10th January 2007 and a fix was made available
on the 24th. Full details can be found in the attached advisory.
--
Tim Brown
<mailto:timbnth-dimension.org.uk>
<http://www.nth-dimension.org.uk/>