[] NeoSense

Working Resources BadBlue 1.7.3 - GET Denial of Service

Author: Matthew Murphy
type: dos
platform: windows
port: 
date_added: 2002-07-08 
date_updated: 2016-09-29 
verified: 1 
codes: CVE-2002-1023;OSVDB-8612 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/5187/info

Working Resources BadBlue is reportedly prone to a denial of service condition when handling malformed GET requests.

It has been discovered that BadBlue does not properly handle requests that do not adhere to RFC standards. When a user connects to BadBlue via the listening port, and issues a "GET HTTP/1.0" request without specifying a document, BadBlue becomes unstable. In most cases, the process will crash.

GET HTTP/1.0

GET HTTP/1.0