27
PHP version 5.3.1 was just released. This release contains a patch for a denial of service condition we’ve reported on 27 October 2009. The problem is related with PHP’s handling of RFC 1867 (Form-based File upload in HTML).
Source: http://www.securityfocus.com/archive/1/507982
Exploit already on PacketStorm…
tagged with : , consultant, labsphoenix, php, security, sysadmin | permalink
3 Responses to “PHP MultiPart Form-Data Denial of Service proof of concept”
-
s4m2u Says:
December 9th, 2009 at 5:47 pmDear Author blog.pacharest.com !
I can suggest to come on a site on which there are many articles on this question. -
hammer5088 Says:
December 25th, 2009 at 9:12 amI want to quote your post in my blog. It can?
And you et an account on Twitter? -
finance charge Says:
August 30th, 2010 at 8:46 amI really enjoyed this post, especially the “examples in this post” portion which made it really easy for me to SEE what you were talking about without even having to leave the article. Thanks
