Remote Apache 1.3.x Exploit

From: gobbles@hushmail.com
Date: 06/19/02


From: gobbles@hushmail.com
To: vulndev@vulndev.org, submissions@packetstormsecurity.org, bugs@securitytracker.net, bugtraq@securityfocus.com, vuln-dev@securityfocus.com
Date: Wed, 19 Jun 2002 12:45:24 -0700



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

This is for immediate release. This may not be sent to any "advanced warning system", such as ARIS. This was written for the community, and not just a few companies with deep pockets full of the big dollar.

Attached is a remote Apache 1.3.X exploit for the "chunking" vulnerability. This version of the exploit works only on OpenBSD. "Experts" have argued as to why this is not exploitable on x86/*nix. This version of the exploit has been modified to convince these "experts" that they are wrong. Further, it is very ./friendly and all scriptkids/penetration testers should be able to run it without any trouble.

My God have mercy on our souls.

- -GOBBLES Security

-----BEGIN PGP SIGNATURE-----
Version: Hush 2.1
Note: This signature can be verified at https://www.hushtools.com

wlwEARECABwFAj0Q3g8VHGdvYmJsZXNAaHVzaG1haWwuY29tAAoJEBzRp5chmbAP7R0A
nRyuMq0D8z0T6bg++HH27mGXyPqlAJ9l6Qv8h/5+2pvnn6nJ+sUUZdeebw==
=5v5m
-----END PGP SIGNATURE-----









Relevant Pages

  • Re: Chabad Hurricane Relief Efforts
    ... Chabad representatives are able to assist with food, ... > They talk about rebuilding the Jewish community, ... Food, medicine, etc, are the immediate needs, and every ... > donated for 9/11 relief and adding it to a general fund. ...
    (soc.culture.jewish.moderated)
  • Re: General / Syntax Questions
    ... Thank you all very much for your fast replies. ... That answers all of my (immediate) questions. ... This is a great community, I wish I had have found this earlier when I first started with MATLAB last year. ...
    (comp.soft-sys.matlab)