[] NeoSense

Kojoney 0.0.4.1 - 'urllib.urlopen()' Remote Denial of Service

Author: Nicob
type: dos
platform: linux
port: 
date_added: 2014-06-21 
date_updated: 2014-06-21 
verified: 0 
codes:  
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/38395/info

Kojoney is prone to a remote denial-of-service vulnerability.

A remote attacker can exploit this issue to gain unauthorized access to local files and crash the affected application, resulting in a denial-of-service condition.

Versions prior to Kojoney 0.0.4.2 are vulnerable.

The following example URI is available:

file://localhost/dev/urandom