Working Resources BadBlue 1.7.3 - GET Denial of Service
Author: Matthew Murphy
type: dos
platform: windows
port:
date_added: 2002-07-08
date_updated: 2016-09-29
verified: 1
codes: CVE-2002-1023;OSVDB-8612
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/5187/info
Working Resources BadBlue is reportedly prone to a denial of service condition when handling malformed GET requests.
It has been discovered that BadBlue does not properly handle requests that do not adhere to RFC standards. When a user connects to BadBlue via the listening port, and issues a "GET HTTP/1.0" request without specifying a document, BadBlue becomes unstable. In most cases, the process will crash.
GET HTTP/1.0
GET HTTP/1.0