|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
From: Michal Zalewski (lcamtuf
coredump.cx)Date: Sat Jun 22 2002 - 20:27:48 CDT
On Sun, 23 Jun 2002, Alexander Yurchenko wrote:
> Nice bug and easy to exploit. I've attached a piece of code which
> creates an .htaccess file. Requesting a directory containing this file
> causes all httpd daemons to die. Works on my OpenBSD 3.1-current.
Check out what you get - file descriptors and other goodies - and perhaps
it is a good time to cc: bugtraq or at least Apache guys?;-)
Have fun,
-- _____________________________________________________ Michal Zalewski [lcamtufbos.bindview.com] [security] [http://lcamtuf.coredump.cx] <=-=> bash$ :(){ :|:&};: =-=> Did you know that clones never use mirrors? <=-= http://lcamtuf.coredump.cx/photo/
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]