Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

NT IIS4 Buffer Overflow Vulnerability

Solution:
Microsoft has made the following fix available:

ftp://ftp.microsoft.com/bussys/IIS/iis-public/fixes/usa/ext-fix/

This vulnerability was patched in NT Service Pack 6.

eEye has made available a filter patch that will limit .htr request to 255 bytes yet allow normal request to continue to work. The filter and source are available at:

http://www.eeye.com/database/advisories/ad06081999/ad06081999-ogle.html








 

Privacy Statement
Copyright 2009, SecurityFocus