Lexmark Network Printer HTTP Server Denial Of Service Vulnerability

An exploit is not required to crash the printers web server. A proof-of-concept request sufficient to crash the device was provided:

GET / HTTP/1.0\r\nHost:AAAAAA[1024]\r\n\r\n

Another proof-of-concept perl script was provided by Eric Sesterhenn / snakebyte <snakebyte@gmx.de>.


 

Privacy Statement
Copyright 2010, SecurityFocus