Re[2]: [Full-disclosure] NUL Character Evasion

From: 3APA3A (3APA3A_at_SECURITY.NNOV.RU)
Date: 09/16/05

  • Next message: Martin Schulze: "[Full-disclosure] [SECURITY] [DSA 815-1] New kdebase packages fix local root vulnerability"
    Date: Fri, 16 Sep 2005 17:16:42 +0400
    To: Steffen Kluge <kluge@fujitsu.com.au>
    
    

    Dear Steffen Kluge,

    This is old news reported long time ago by ben moeckel (ben.moeckel at
    online.de), see http://www.security.nnov.ru/advisories/content.asp

    9. Bypassing filters with special characters

      There are some characters client application may ignore silently. For
      Example, for HTML browsers:

      0, 9, 10, 13, 173 for Opera
      13, 10, 9, 0 for Internet Explorer

      by inserting characters with this codes into document it's possible to
      hide some dangerous tags from content filter.

      Reported by ben.moeckel at online.de

    --Friday, September 16, 2005, 10:25:06 AM, you wrote to full-disclosure@lists.grok.org.uk:

    SK> On Tue, 2005-09-13 at 23:24 +0200, ju@heisec.de wrote:
    >> Internet Explorer ignores NUL characters
    >> -- i.e. ascii characters with the value 0x00 -- most
    >> security software does not.

    SK> Interesting. Did you test this with Outlook as well?

    SK> Cheers
    SK> Steffen.

    -- 
    ~/ZARAZA
    Есть там версии Отелло, где Дездемона душит Мавра. (Лем)
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/
    

  • Next message: Martin Schulze: "[Full-disclosure] [SECURITY] [DSA 815-1] New kdebase packages fix local root vulnerability"

    Relevant Pages

    • Re: Open Office Suite
      ... has been used as page layout program with lots of graphics or lots of special ... Powerpoint compatibility depends upon the ... and special characters in the type. ...
      (comp.sys.mac.advocacy)
    • Re: VBScript String Replace - Remove / Replace Characters in String
      ... uses the RegExp object to replace characters from the input string. ... I am trying to remove all special characters detailed in the pattern, ... Dim objRegExp, strOutput ...
      (microsoft.public.scripting.vbscript)
    • Re: Troubles with Special Characters using Shorthand for Windows 10 in Word 2010 under Windows 7
      ... Shorthand 10 and Windows 7 running Word 2010. ... special characters such as the "e" with a circumflex accent in the ... problem is a function of Word's autocorrect feature somehow? ...
      (sci.med.transcription)
    • Re: A
      ... the characters 'fn_name' become the ... They will not form two separate tokens of '', ... parentheses are not special characters (that is, ...
      (comp.unix.shell)
    • Re: Special Characters in AD Fields
      ... I typically recommend that MVP's not use any special characters, ... As Paul notes with the search syntax RFC, ... But you should follow them for LDAP as well as ...
      (microsoft.public.windows.server.active_directory)