[Full-disclosure] Medium level security hole in FreeProxy

Tim Brown timb at nth-dimension.org.uk
Tue Feb 6 23:08:33 GMT 2007


The FreeProxy HTTP proxy server suffers from a denial of service condition 
which causes the server to hang.  This occurs when an attacker makes a 
request for the hostname/portnumber combination in use by the server itself.  
The vendor was notified on the 10th January 2007 and a fix was made available 
on the 24th.  Full details can be found in the attached advisory.
-- 
Tim Brown
<mailto:timb at nth-dimension.org.uk>
<http://www.nth-dimension.org.uk/>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: NDSA20070206.txt.asc
Type: application/pgp-keys
Size: 1582 bytes
Desc: not available
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20070206/e9b923eb/attachment.bin 


Full-Disclosure is hosted and sponsored by Secunia.