Follow up:

I can verify the image is able to be previewed and edited using fireworks. I
can't see anything unusual about it.

I have to say if it's a something that is reproducible, it's going to be an
attack vector. I can think of 3 or 4 servers I manage that need a fix for
this pretty quickly if it becomes common knowledge.

-Mark 


Mark A. Kruger, CFG, MCSE
(402) 408-3733 ext 105
www.cfwebtools.com
www.coldfusionmuse.com
www.necfug.com

-----Original Message-----
From: Mark Kruger [mailto:mkru...@cfwebtools.com] 
Sent: Tuesday, June 09, 2009 10:27 AM
To: cf-talk
Subject: RE: Image killing server


Adrian,

I verified your results on an 8.01 dev server running on my local XP box.
Sure enough the service restarts.

-Mark 


Mark A. Kruger, CFG, MCSE
(402) 408-3733 ext 105
www.cfwebtools.com
www.coldfusionmuse.com
www.necfug.com

-----Original Message-----
From: Adrian Lynch [mailto:cont...@adrianlynch.co.uk]
Sent: Tuesday, June 09, 2009 9:43 AM
To: cf-talk
Subject: Image killing server


Hey all, got a bit of a strange one here. A user is uploading an image which
GIMP is reporting to have an embedded colour profile of "".

When I use any of the image functions on this image, CF dies.

I posted a while ago but because it was only one user we converted it
manually and re-uploaded, now we're getting more of them.

Could I ask for a sanity check by someone confirming that this image is
killing their server too?

http://www.halestorm.co.uk/images/killer.jpg

Download it, create a .cfm page and do ImageRead(ExpandPath("./killer.jpg"))

I get a blank page back then on refresh a message saying CF is starting up.

I'm on the bug report page at the moment but I thought I would get someone
else to test this also.

Thanks.

Adrian Lynch | www.halestorm.co.uk








~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Want to reach the ColdFusion community with something they want? Let them know 
on the House of Fusion mailing lists
Archive: 
http://www.houseoffusion.com/groups/cf-talk/message.cfm/messageid:323275
Subscription: http://www.houseoffusion.com/groups/cf-talk/subscribe.cfm
Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.4

Reply via email to