Strange IE / Windows Behaviour

From: Paul Brereton (paul.brereton@it-security-audit.com)
Date: 02/13/03

  • Next message: uk2sec@oakey.no-ip.com: "Bash Blues."
    Date: 13 Feb 2003 00:03:09 -0000
    From: Paul Brereton <paul.brereton@it-security-audit.com>
    To: vuln-dev@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is)

     Guys,

     I noticed that when you request a long url using IE in wither windows
     2000 or windows XP for example:
     http://www.somehost.com/exisingfile.htm?
     aaaaaaaaaaaaaaaaaaaaa[about 256 times or so], the webpage takes on a
     different name when saving to disk such as QUFOU28S.htm . This also
     happens when you attemp to download a file with a long url ie: .gif?
     aaaaaaaaaaaaaaaaaaaaaaa etc,....

     Also, the more aaaaaa's that are appended, the different the response
     is.

     My questions are :

     1.) Is this a small hashing functionality built into windows to
     prevent long filenames from being downloaded and causing problems.

     or

     2.) Is it a screw up in windows? Possibly a buffer overflow?. I have
     noticed that this type of naming is used for some temprorary files.
     What is going on.

     RFCP (Request for comments please) :-)

     Regards,

     Paul.



    Relevant Pages

    • Re: Windows Server Referral Problem
      ... EN> Markus I have a request out to Microsoft to get more information ... When Windows ... and returns a referral to the specified realm if there's a match. ... EN> I have a problem with server referrals in my Windows environment. ...
      (comp.protocols.kerberos)
    • IPSEC with certificates on Windows XP (Certificate donīt have a private key )
      ... I have a question for the Microsoft CSP and IPSEC. ... I have installed a small network of 4 computers. ... computers and two windows 2000 computers. ... The program certreq.exe generate a certificate request. ...
      (microsoft.public.platformsdk.security)
    • Re: call is blocked in recvfrom() and no further proceedings in Wi
      ... For transmitting UDP packets through emulator, ... >> In windows CE, I'm able to send a request but I'm unable to receive it. ... >>> My program has to send request to service through port 5070(in this port ...
      (microsoft.public.windowsce.embedded)
    • .net user permissions in IIS
      ... We have a windows 2003 domain with 4 web servers in. ... (Exception from HRESULT: 0x80070005 ... the current web request. ...
      (microsoft.public.dotnet.framework.aspnet)
    • [NT] Invalid Universal Plug and Play Request Can Disrupt System Operation
      ... Invalid Universal Plug and Play Request Can Disrupt System Operation ... Windows ME and XP include native UPnP ... manufacturers do, however, install it on the systems they sell) ...
      (Securiteam)