[ advisories | exploits | discussions | news | conventions | security tools | texts & papers ]
 main menu
- feedback
- advertising
- privacy
- FightAIDS
- newsletter
- news
 
 discussions
- read forum
- new topic
- search
 

 meetings
- meetings list
- recent additions
- add your info
 
 top 100 sites
- visit top sites
- sign up now
- members
 
 webmasters

- add your url
- add domain
- search box
- link to us

 
 projects
- our projects
- free email
 
 m4d network
- security software
- secureroot
- m4d.com
Home : Advisories : IBM HTTP Server 1.3.6 Remote Overflow

Title: IBM HTTP Server 1.3.6 Remote Overflow
Released by: Benjurry
Date: 17th November 2000
Printable version: Click here
Introduction:

IBM HTTP Server (IHS)powered by Apache is based on the Apache HTTP Server, which is the most popular server on the Web. This HTTP Server runs on AIX, Solaris, Windows NT, HP-UX, and Linux. 



IBM HTTP Server can be found on vendor IBM site,



http://www.ibm.com





Problem:



On IBM HTTP Server 1.3.6(Win2k Simplify Chinese version),if you Get

/......(in my computer,216 ".")aaa,that is to say ,if you get a rwquest whit

219 characters, the Server will be BSOD,and the server display the following

message"

***STOP:0x0000001e(0X00000005,0X804B3A51,0X00000000,0X00000000)KMODE_EXCEPTI

ON_NOT_HANDLED.

***Address 804B3A51 base at 80400000,Datastamp 384D9B17-ntoskrnl.exe

Then the server must to be restart by Administrator.







Solution:

Update to IBM HTTP Server (IHS)1.3.12







Benjurry



2000.11.17



Share what I konw,Learn what I don't








(C) 1999-2000 All rights reserved.