Full Disclosure mailing list archives

Re: Apache Killer


From: "HI-TECH ." <isowarez.isowarez.isowarez () googlemail com>
Date: Wed, 24 Aug 2011 16:10:48 +0200

Hi Michal,
What do you think from where this originated ?
Was you outlining it a while back :)

/kc

2011/8/24 Michal Zalewski <lcamtuf () coredump cx>:
http://www.gossamer-threads.com/lists/apache/dev/401638

FWIW, I pointed out the DoS-iness of their Range handling a while ago:
http://seclists.org/bugtraq/2007/Jan/83

/mz


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: