Re: ee using 99% cpu after user ssh session terminates abnormaly

From: Brooks Davis (brooks_at_one-eyed-alien.net)
Date: 09/08/05

  • Next message: Craig Edwards: "Re: ee using 99% cpu after user ssh session terminates abnormaly"
    Date: Wed, 7 Sep 2005 15:37:48 -0700
    To: talonz <talonz@gmail.com>
    
    
    

    On Thu, Sep 08, 2005 at 08:27:13AM +1000, talonz wrote:
    > Recently i have been using a dialup 56k account to access the net
    > and have noticed that when my ssh session times out and I am editing
    > a file in ` ee ' the system goes to 99% cpu usage and stays like
    > this till the pid is killed.
    > This is a standard user account (not root/su)
    >
    > Would a user be able to create a denial of service condition
    > on the remote system using this bug?

    No more then they could with the ablity to run any other program that
    loops.

    > (sorry if this is posted to the incorrect list)
    >
    > Details:
    >
    > System - FreeBSD 5.4-RELEASE-p5
    >
    > ee using 99% cpu after user session terminates abnormaly
    > PID reported by top.
    >
    > The output from ps looks like this
    >
    > [root@blah][~]$ ps aux| grep 70464
    > someuser 70464 93.5 0.1 1920 1372 p1- R 7:09PM 687:07.27 ee file

    I can't seem to trigger this bug on a 7.0 machine either by killing the
    client or using tcpdrop to kill the tcp session.

    -- Brooks

    -- 
    Any statement of the form "X is the one, true Y" is FALSE.
    PGP fingerprint 655D 519C 26A7 82E7 2529  9BF0 5D8E 8BE9 F238 1AD4
    
    



  • Next message: Craig Edwards: "Re: ee using 99% cpu after user ssh session terminates abnormaly"

    Relevant Pages

    • Re: Please! Doesnt anyone know a better way to do this?
      ... account, they need to automatically be directed to the page to enter data ... session variable on the Account page. ... I assume here that you're checking a database when the user attempts to ... When a new user attempts to login or clicks to register, ...
      (microsoft.public.dotnet.framework.aspnet)
    • Re: Need to find-out improper sign-out
      ... is released & his account is ready to log-in again. ... the *old* session, ... Browser A searches on "motorcycle". ... server communication breaks off. ...
      (comp.lang.php)
    • Re: Fix: Error connecting to existing session
      ... Was your other account a member of the administrator group? ... Remote Networking Technology Support Site - ... >login session was created from the console or remotely, ... >login under an alternative admin account and kill the initial session ...
      (microsoft.public.windowsxp.work_remotely)
    • Re: [Full-disclosure] Google/Orkut Authentication Issue PoC
      ... and my account can still be hijacked. ... of session in 24 hours + expiry of session on logout + ... expire in 24 hours. ... I am posting a session cookie for my account. ...
      (Full-Disclosure)
    • Re: Need to find-out improper sign-out
      ... until he sign-out by updating in the login-table.At sign-out the flag ... is released & his account is ready to log-in again. ... the *old* session, ... As long as he's using the same browser, he will have the same session id, and it will still be considered one user serverside, even if the requests hit the server at exactly the same moment. ...
      (comp.lang.php)